Rage at Autodesk

@OP - since you made this discovery - why not drop a few brief e-mails to tech journalists at UK newspapers. The press do seem to like exposing organisations which have been slack with looking after personal data - it might also provide a strong motivation for them to fix the problem and for enforcement action to be taken against them.
 
I think people would be suprised at how insecure computers are in general.
Only a few months ago one of the largest certificate authorities got hacked and lost certificates for hotmail, google ect. They hosted about 1/5th of the websites certificates.

This means any website could impersonate one of those and youd be none the wiser. The whole certificate system is broken really as 75% of people click "Add exception" when they see a certificate error, when infact they could be passing on all data they send to somebody else before its then relayed to the correct server.
 
I think people would be suprised at how insecure computers are in general.
Only a few months ago one of the largest certificate authorities got hacked and lost certificates for hotmail, google ect. They hosted about 1/5th of the websites certificates.

This means any website could impersonate one of those and youd be none the wiser. The whole certificate system is broken really as 75% of people click "Add exception" when they see a certificate error, when infact they could be passing on all data they send to somebody else before its then relayed to the correct server.

All that coming from the person who couldn't type autodesk into google correctly!
 
They will be fined for this... no way to stop it tbh. Unless they manage to shut the hole now without it getting to media.
 
Some times it hard to tell if your just trolling.

Check the directory there is a massive amount of data left open to the public, which shouldn't be.

That means you're a moron.

Or trolling, I prefer to think it is the latter. :p

On topic: I'm finding it quite shocking the lack of security from these companies.

I wasn't trolling, I genuinely had no idea what everyone was getting so worked up about. And yes I could have googled it but given that everyone was so uptight I thought I'd ask what was going on. Thanks for the input.

Anyway, back on topic :)
 
But I wouldn't let someone breach data laws when they invest that much in IT infrastructure.
 
Last edited:
[FnG]magnolia;19987564 said:
I wasn't trolling, I genuinely had no idea what everyone was getting so worked up about. And yes I could have googled it but given that everyone was so uptight I thought I'd ask what was going on. Thanks for the input.

Anyway, back on topic :)

My mistake, I meant no offence. :)

Basically, couple thousand personal credentials are open to anyone with a computer/internet. A billion dollar company that has such lax security with personal details, it's worrying really.

Just like the Sony fiasco.
 
Back
Top Bottom