Yahoo! hacked in New Zealand through WordPress vulnerability
Monday, February 11, 2013/
New Zealand-based online media portal Yahoo!Xtra, a joint-venture between Yahoo!7 and Telecom New Zealand, has revealed its email service has been hacked, with some victims now receiving spam emails from dead relatives.
The New Zealand Heard reports Telecom has confirmed the service has been the victim of two separate, but potentially related “malicious” attacks.
In one of the attacks, which began on Saturday morning, emails sent to everyone on the contact lists of compromised accounts asked them to click on a link directing them to an online advertisement.
The telco initially downplayed reports of a major attack, claiming that some of its users had lost access to their accounts through hackers “phishing” their passwords.
“I got spam from my dead brother’s account. He obviously hasn’t been clicking any links, and for Telecom to blame him for this is just insulting,” one user said.
Telecom New Zealand outsources its Xtra email service to Yahoo!, which in turn uses an old and unpatched version of WordPress to host the service.
It subsequently emerged the company had suffered a “significant breach” of their email system, with up to 450,000 accounts potentially compromised as a result.
Amantha Imber runs a successful business — but she still has impostor syndrome Amantha Imber Inventium founder
Social media isn't about numbers, it's about connection Carlii Lyon Carlii Lyon PR founder
"My early decisions were rooted in fear": How good hires can set small business owners free Nancy Youssef Classic Finance founder
"No staff turnover": Business success hinges on a thriving company culture David Fazio Mate co-founder
Five ways to mentally prepare for the brutal capital-raising process Stacey Fisher Minnow Designs co-owner
In the age of online shopping, it's retail staff that make or break businesses Cal Doggett Properties & Pathways director