Virgin Mobile USA - Account Security

Account Security

In September, 2012, media outlets began reporting on the findings of Kevin Burke, a software developer and Virgin Mobile USA customer. Burke's experimentation led him to claim that Virgin Mobile USA's account security practices do not adequately protect customer account information.

To access their account via the Virgin Mobile USA website, a customer must enter their ten-digit telephone number and a six-digit password. The maximum possible number of six-digit password is one million, a relatively small number. According to Burke, Virgin Mobile USA did not employ security techniques that would prevent an attacker from rapidly cycling through all possible password permutations, allowing a brute force attack to succeed in twelve days or less.

In response to the wide media coverage, Virgin Mobile updated its online account access system, limiting users to 20 attempts from one IP address.

Read more about this topic:  Virgin Mobile USA

Famous quotes containing the words account and/or security:

    The nineteenth century is a turning point in history, simply on account of the work of two men, Darwin and Renan, the one the critic of the Book of Nature, the other the critic of the books of God. Not to recognise this is to miss the meaning of one of the most important eras in the progress of the world.
    Oscar Wilde (1854–1900)

    Thanks to recent trends in the theory of knowledge, history is now better aware of its own worth and unassailability than it formerly was. It is precisely in its inexact character, in the fact that it can never be normative and does not have to be, that its security lies.
    Johan Huizinga (1872–1945)