Forty billing system passwords published

By

Brisbane company named in list.

Thirty nine hosting providers including Brisbane based company Chombo have had what appears to be login details to the WHMCS billing and client management system publicly disclosed.

The anonymous dump affected 40 providers around the world, many based in the United States.

The post did not say how the log in details were obtained.

Forty billing system passwords published

SC understands other companies not named in the release were compromised through a vulnerability in WHMCS that had been patched, but not applied by the victims.

A Norwegian website named in the hacked was also defaced - twice.

Got a news tip for our journalists? Share it with us anonymously here.

Copyright © SC Magazine, Australia

Tags:

Most Read Articles

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

"VoidProxy" PhishKit targets Google and Microsoft users

"VoidProxy" PhishKit targets Google and Microsoft users

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

VicRoads to phase out passwords in favour of passkeys

VicRoads to phase out passwords in favour of passkeys

Log In

  |  Forgot your password?