2009-01-27, 11:04 AM
Judgment Wrote:I think they were able to obtain MSEA passwords because their rankings page was exploitable to display the characters log-in info or something. (That explains why their Rankings page is unavailable.)
they used an sql injection exploit through the rankings. im still shocked that such a big company didnt care to fix sql injections, which is the most basic method of hacking websites.

