AfterDawn: Tech news

Hacker releases Amazon Kindle user data after company fails to respond

Written by Andre Yoskowitz @ 13 Jul 2016 10:06 User comments (3)

Hacker releases Amazon Kindle user data after company fails to respond

A hacker going by the name Ox2Taylor released sensitive information about 80,000 Amazon Kindle users earlier this week after Amazon did not respond his warnings of a significant security risk within their servers.
Ox2Taylor says he tried to contact Amazon last week to tell them of the vulnerability but did not receive any response. He was seeking a $700 bounty from Amazon for revealing the vulnerability as well as an explanation on how to fix it. "They're a big company and they should have enough money to have the proper security defenses," he added.

In the database are usernames, passwords, address, phone number and IP address of over 80,000 users.

After a few days in which Amazon did not even acknowledge the bug, he released the whole list via a zipped file on the cyberlocker Mega. It has since been taken down. "I was trying to prove them privately but they were ignoring my warnings," he said.

Source:
DailyDot

Tags: Amazon Hacker
Previous Next  

3 user comments

115.7.2016 21:27

"He was seeking a $700 bounty" Not getting the money so throw a fit and compromise everyone elses information? Wish black hats like this could simply be disposed of, we could use a lot less of them.

217.7.2016 15:03

Perhaps, but the idiot(s) who brushed him off are also part of the equation. Oops!

323.7.2016 15:23

Tough issue. I wonder who and how he contacted that people at Amazon. Working in Redmond, a lot of people i know moved from Microsoft over to Amazon. I know many Amazon developers and if then knew anything about a security hole, they would normally drop everything and ensure it is fixed/patched asap. Also in general i've know a few people if/when they find security holes in a MS product, and they handle the issue properly, as this guy said he tried to do, in the end the least amount i've heard people receiving was 2K US, for finding and reporting. I can't think Amazon would be different in this regard either. The couple of incidences I knew involving MS, the people never even asked to get paid at all, it was MS that wanted to say thanks and took it upon themselves to say thanks and reward the people.

So it leaves me to wonder who this guy tried contacting, one of the outsource customer service reps in the Philippines?

Comments have been disabled for this article.

Latest news

VLC hits milestone: over 5 billion downloads VLC hits milestone: over 5 billion downloads (16 Mar 2024 4:31)
VLC Media Player, the versatile video-software powerhouse, has achieved a remarkable feat: it has been downloaded over 5 billion times.
1 user comment
Sideloading apps to Android gets easier, as Google settles its lawsuit Sideloading apps to Android gets easier, as Google settles its lawsuit (19 Dec 2023 11:09)
Google settled its lawsuit in September 2023, and one of the settlement terms was that the way applications are installed on Android from outside the Google Play Store must become simpler. In the future, installing APK files will be easier.
8 user comments
Roomba Combo j7+ review - Clever trick allows robot vacuum finally to tackle home with rugs and carpets Roomba Combo j7+ review - Clever trick allows robot vacuum finally to tackle home with rugs and carpets (06 Jun 2023 9:19)
Roomba Combo j7+ is the very first Roomba model to combine robot vacuum with mopping features. And Roomba Combo j7+ does all that with a very clever trick, which tackles the problem with mopping and carpets. But is it any good? We found out.
Neato, the robot vacuum company, ends its operations Neato, the robot vacuum company, ends its operations (02 May 2023 3:38)
Neato Robotics has ceased its operations. American robot vacuum pioneer founded in 2005 has finally called it quits and company will cease its operations and sales. Only a skeleton crew will remain who will keep the servers running until 2028.
5 user comments
How to Send Messages to Yourself on WhatsApp How to Send Messages to Yourself on WhatsApp (20 Mar 2023 1:25)
The world's most popular messaging platform, Meta-owned WhatsApp has enabled sending messages to yourself. While at first, this might seem like an odd feature, it can be very useful in a lot of situations. ....
18 user comments

News archive