Showing posts from July, 2012

UFO Nepal Compromised, Hackers Posts Member's Detail Online

UFO Nepal one of the leading clothing brand of Nepal and one of the very first to start website in this section has been hacked. Its member details like name, address, phone number, username and password has been posted online . The website allowed members to browse their collection of clothes and accessories. Members also used to get email on new arrivals.(But I'd rather call it spam as it used to send 4 or 5 same email). What hurts most is the website is claimed to be powered by dreams and ideas . The company behind Nepal's most popular portal . There are many websites created under this company. I wonder how secure are all of them. Lesson to be learnt here would be to use different password for different websites. And web developers what happened to digest based password with random salting and iteration? Now it will be interesting to see UFO Nepal and/or Dreams and Ideas response. Update After more than two weeks of this incident, UFO  Nepal has