Microsoft confirms security issues in Xbox Live
Microsoft has confirmed security problems with the Xbox Live online service. The system is still technically sound and has not been hacked. However programming director Larry Hryb from Xbox Live has admitted in his blog that there are social engineering problems.
Security expert Kevin Finisterre found that numerous player accounts have been compromised, using classic "social engineering" tactics such as talking Microsoft’s support people into redirecting an account to another console for "Account Recovery". The Xbox group "Infamous" has published hints and tactics on their web site how to get an account redirected without knowing the password or the right answer to the security question.
Hryb wrote that support staff received new instructions with regard to the security problems. "This situation shouldn’t have happened. Our customers deserve better," Hryb wrote. Meanwhile, Microsoft in the USA has updated its support website and is asking players to contact the hotline if they are no longer able to log into their account.
Copyright note : This story was provided by Heise Security. You can visit Heise Security directly for more stories on security topics.
- Electronic Arts establishes Artwerk music label
- New Jersey considering driver text messaging ban
- Samsung unveils 1.8" 64 GB flash hard drive
- Sprint to slash mobile music downloads to 99 cents
- Sanyo intros rugged phone with advanced GPS
- Peakstream intros beta stream processing platform for Windows
- Ringback tones and mobile streaming projected to cut ringtones in 2007
- Sun puts AMD Opteron processors into Netra server line
- Plantronics expands Bluetooth stereo headset offering
- British government suggests fingerprint-activated iPod's to help reduce crime
- Sony Unveils High Capacity Storage Tape
- Moving Data with Seagate Freeagent
- Motorola Helps Mobile Workers Work
- SANYO Turns Loose Hard Core Mobile Phone
- Sun Introduces New AMD-based Level 3 Rack Server
- Circuit City pulls the plug on more than 3400 jobs
- Amp'd Mobile slammed with $100,00 fine
- Viacom strikes mobile video ad deal with Intel, Pepsi




