Virgin Mobile USA - Account Security

Account Security

In September, 2012, media outlets began reporting on the findings of Kevin Burke, a software developer and Virgin Mobile USA customer. Burke's experimentation led him to claim that Virgin Mobile USA's account security practices do not adequately protect customer account information.

To access their account via the Virgin Mobile USA website, a customer must enter their ten-digit telephone number and a six-digit password. The maximum possible number of six-digit password is one million, a relatively small number. According to Burke, Virgin Mobile USA did not employ security techniques that would prevent an attacker from rapidly cycling through all possible password permutations, allowing a brute force attack to succeed in twelve days or less.

In response to the wide media coverage, Virgin Mobile updated its online account access system, limiting users to 20 attempts from one IP address.

Read more about this topic:  Virgin Mobile USA

Famous quotes containing the words account and/or security:

    An inquiry about the attitude towards the release of so-called political prisoners. I should be very sorry to see the United States holding anyone in confinement on account of any opinion that that person might hold. It is a fundamental tenet of our institutions that people have a right to believe what they want to believe and hold such opinions as they want to hold without having to answer to anyone for their private opinion.
    Calvin Coolidge (1872–1933)

    I think the girl who is able to earn her own living and pay her own way should be as happy as anybody on earth. The sense of independence and security is very sweet.
    Susan B. Anthony (1820–1906)