Hi,
Quite an interesting read and really shows you where people are looking nowadays to breach companies that hold sensitive data.
Due to such wide notice that passwords just be secure, guessing passwords is no longer really worth anyone's time as you would need some serious kit to crunch the numbers and get to a point in which a password can be viewed.
I think it's also easier for the people out their to do a quick scan of a website, view the version of applications they are using whether it be apache or SQL.
A quick Google search later, I'm sure that a list of known vulnerabilities would be brought up and then it's game on.
Great article and really shows light on where administrators need to focus on patching and updating public facing systems
Thanks
Sam
Thanks
Sam
(Comptia Sec +, Net +, A+, SSCP, MTA Sec, CCNA)