Compaq site exposes customer details
Source: The Register
Compaq has taken its customer tracking site offline today after the Register alerted it to a security issue that left sensitive customers details exposed on an insecure server.
The site, athome.compaq.com, was set up in a way that allowed anyone who fancied playing around with the order ID number in the URL to gain ready access to customer names, addresses, phone numbers and billing addresses. Credit card or bank details weren't exposed but Compaq has made an elementary security mistake.