Australian teen exposes flaw in public transit site

Share this article:

The actions of an Australian teen, who exposed a website vulnerability affecting the Public Transport Victoria (PTV) website, are currently being investigated by police.

According to a Wednesday article in Melbourne daily The Age, 16-year-old Joshua Rogers alerted PTV on Dec. 26 of the flaw, but received no response until nearly a week later, after a media outlet inquired about the issue.

While the specific flaw that afflicted the site has yet to be divulged, the vulnerability has been deemed one that commonly affects websites. By exploiting the flaw, Rogers was able to gain access to a database of customers of the Metlink public transport online store. Information in the database included names, addresses, phone numbers, dates of birth, partial credit card numbers and senior card ID numbers, The Age found.

Share this article:
You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters

TOP COMMENTS

More in News

President signs Executive Order to improve payment security

President signs Executive Order to improve payment security

President Obama signed an Executive Order at the Consumer Financial Protection Bureau calling for enhanced security measures, including microchips and PINs.

Security, tech firm coalition fights Hikit actors, other advanced groups

Security, tech firm coalition fights Hikit actors, other ...

The coalition began as an effort to stop the spread of the Hikit trojan, previously known for targeting U.S. defense contractors.

Phishing email delivers keylogger malware, also takes screenshots

Phishing email delivers keylogger malware, also takes screenshots

The malware has various features, including the ability to start persistently, take screenshots and bypass user access controls.