Telesign the maker of a voice-based authentication software got what it asked for when it challenged hackers to break into its webmail site. Hackers were asked to report back on the June 26 calendar entry of CEO Darren Berkovitz.
The StrongWebmail site uses Telisign’s telephone authentication system as an additional layer of security to protect its users. In addition to the standard username and password to log into a site a two-factor authentication system is implemented to customers entering a secret code transmitted via a telephone call which they have a key in for access.
But of course, someone was able to get in. The hacker found multiple cross site attacks that allowed him to attack other users. He said that he first had to register an account before being able to do tha attack.
So what do you think about this.. Initially it sounds like a good idea “Just TRY to hack into my network! Just try! It is so darn secure yo!!” And then to up the anty give them a $10,000 prize.. really? I mean I have done silly things before like putting out a job & getting 3498230482308 resumes that I have no time to go through so I just cancel the job but I created all of that work for myself. Telesign is not even a security company? Why try to invite all of these hackers into your network? Do they really know how many hackers are going to try to get in? Before AND after the contest? They are creating soooo much extra work for themselves & for what point? I am/was secure YO! Really? It seems nuts. Hackers will continue to try for hope of getting a job there or adding to their resume of talents they have because it is suppose to be tough to do. Really.. do you want to be advertising to so many people..? It sounds nuts to me.