TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Hackers steal 3.4 million SSNs, 387k Credit Cards from SC Dept of Revenue

1 点作者 ktavera超过 12 年前

1 comment

ktavera超过 12 年前
So i'm an independent contractor and as such make quarterly estimated payments to the SC Department of Revenue. Luckily they have this ancient payment platform that is constantly throwing classic ASP errors. I noticed one when I did a payment the other day that made me suspect that the whole system was vulnerable to SQL injection. I decided not to poke much further and to warn them about it.<p>I've sent them two messages over the last few months warning them that a system likely created over 10 years ago that is vital to process hundreds of millions of dollars in tax payments shouldn't be throwing visible SQL errors and ASP errors and that this stuff is a huge security risk... never heard anything back.