Reply to post:

Equifax's malvertising scare, Chromebook TPM RSA key panic, Cuban embassy sonic weapon heard at last – and more

patrickstar

"By switching up some of the parameters in the GET request, and supplying a stranger's valid T-Mobile US number, he could pull up their account details, such as their email address and handset's unique IMEI number."

This, of course, is more 'hacking' than what weev did against AT&T (he just enumerated id's in the request if I'm not mistaken). And he got thrown in jail for it.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon