中立但有态度
不炒作不忽悠

Name.Com发现安全漏洞,要求所有用户重置密码

米米地一早打开邮箱整理邮件,发现Name.Com发来一封标题为“Name.com – Security Notice: Password Reset”的邮件,里面还附带一个重置密码的链接,第一反应就是可能有人试图进入我的账户,或者是钓鱼网站,因为我没做过重置的操作,甚至这两天都没有登陆过Name.Com。但是仔细看了一下邮件头信息及其它细节,都不像有问题的,于是把邮件内容慢慢看了遍,原来真不是开玩笑,是Name.Com自己发现了安全漏洞,不得已强制让所有的用户重置密码。

在Name.Com有账户的童鞋注意了,既然是官方不得已而为之,想必这个安全漏洞是挺严重的,要不然官方也不会做这样让人感觉很不靠谱的事,赶快改一下你的密码吧。注意,米米地试过,是不能重置为原来的密码的,会提示错误。

官方的通知邮件内容如下:

We are writing to inform you of a security measure we have taken to protect the integrity of the domain names and information associated with your account.

Name.com recently discovered a security breach where customer account information including usernames, email addresses, and encrypted passwords and encrypted credit card account information may have been accessed by unauthorized individuals. It appears that the security breach was motivated by an attempt to gain information on a single, large commercial account at Name.com.

Name.com stores your credit card information using strong encryption and the private keys required to access that information are stored physically in a separate remote location that was not compromised. Therefore, we don’t believe that your credit card information was accessed in a usable format. Additionally, your EPP codes (required for domain transfers) were unaffected as they are also stored separately. We have no evidence to suggest that your data has been used for fraudulent activities.

As a response to these developments, and as a precautionary measure, we are requiring that all customers reset their passwords before logging in. If you use your previous Name.com password in other online systems, we also strongly recommend that you change your password in each of those systems as well.

Please click the link below to reset your password:
https://www.name.com/XXXXXXXXXXXXXXXXXXXXXX

We take this matter very seriously. We’ve already implemented additional security measures and will continue to work diligently to protect the safety and security of your personal information.

We sincerely apologize for the inconvenience. If you need any additional assistance or have any questions please email [email protected] We’ll continue to be as open and honest with you as possible as additional important information becomes available, so keep your eye out for a blog post or additional emails.

Thanks,
The Name.com Team

Smilie Vote is loading.

转载请注明来源:米米地域名 » Name.Com发现安全漏洞,要求所有用户重置密码

分享到:更多 ()

评论 1

  • 昵称 (必填)
  • 邮箱 (必填)
  • 网址
  1. #1

    文章很好,很受教,拜读了,以后会常来。期待更新呀。

    SaiBoDY5年前 (2013-06-12)回复

中立但有态度 不炒作 不忽悠

联系我们爆料投稿