Virgin Mobile USA - Account Security

Account Security

In September, 2012, media outlets began reporting on the findings of Kevin Burke, a software developer and Virgin Mobile USA customer. Burke's experimentation led him to claim that Virgin Mobile USA's account security practices do not adequately protect customer account information.

To access their account via the Virgin Mobile USA website, a customer must enter their ten-digit telephone number and a six-digit password. The maximum possible number of six-digit password is one million, a relatively small number. According to Burke, Virgin Mobile USA did not employ security techniques that would prevent an attacker from rapidly cycling through all possible password permutations, allowing a brute force attack to succeed in twelve days or less.

In response to the wide media coverage, Virgin Mobile updated its online account access system, limiting users to 20 attempts from one IP address.

Read more about this topic:  Virgin Mobile USA

Famous quotes containing the words account and/or security:

    The supreme satisfaction is to be able to despise one’s neighbour and this fact goes far to account for religious intolerance. It is evidently consoling to reflect that the people next door are headed for hell.
    Aleister Crowley (1875–1947)

    The three great ends which a statesman ought to propose to himself in the government of a nation, are,—1. Security to possessors; 2. Facility to acquirers; and, 3. Hope to all.
    Samuel Taylor Coleridge (1772–1834)