February 25th, 2012

AT&T.com Security Vulnerability Discovered; Customer Phone Numbers Revealed (Update)

att_avail_front

A vulnerability has been discovered on AT&T’s website which allows anyone to look up the phone numbers of AT&T subscribers, provided they have the subscriber’s email address. The issue involves a form on AT&T’s site where a subscriber can input their email address in order to recover their forgotten AT&T User ID. Except instead of simply emailing the User ID to the email address… → Read More