Jump to content

[mini] Popular Anonymous Prank/Revenge Delivery Service Hacked, Customer Details Leaked

rcmaehl

Summary

Shit Express, a Popular Prank/Revenge Delivery Service, had it's Databases leaked via an SQL Injection.

 

Quotes

Quote

ShitExpress... which bills itself as "a simple way to send a piece of shit in a box around the world," was recently breached. Data taken from the site... includ[es] customer email addresses paired with the messages... has been made public. The data was taken from a ShitExpress database by a hacker known as "Pompompurin." If that sounds familiar, it's probably because in November 2021, the same hacker exploited a flaw in the FBI's website to send emails from the "eims@ic.fbi.gov" domain. ShitExpress has reportedly addressed the vulnerability. It's also continuing to process orders, and at time of writing, it says on its website that someone used its services just 16 minutes ago.

 

My thoughts

How shitty, I can only imagine what went through the webmaster's head when shit hit the fan... "Oh shit" probably. Okay okay I'm done. Regardless, I would think that in this day and age, normal SQL Injection attacks would be protected against as it's webmaster 101, but I guess not. I'm sure this will cause some drama for those who have sent packages in the past.

 

Sources

PCMag (Quote source)

Tech Radar

Bleeping Computer

 

PLEASE QUOTE ME IF YOU ARE REPLYING TO ME

Desktop Build: Ryzen 7 2700X @ 4.0GHz, AsRock Fatal1ty X370 Professional Gaming, 48GB Corsair DDR4 @ 3000MHz, RX5700 XT 8GB Sapphire Nitro+, Benq XL2730 1440p 144Hz FS

Retro Build: Intel Pentium III @ 500 MHz, Dell Optiplex G1 Full AT Tower, 768MB SDRAM @ 133MHz, Integrated Graphics, Generic 1024x768 60Hz Monitor


 

Link to comment
Share on other sites

Link to post
Share on other sites

1 hour ago, Sauron said:

would be funny if the attackers used a bot to commission a "gift" to everyone in the database

I think it would be an absolute shit show.

Link to comment
Share on other sites

Link to post
Share on other sites

Good on them,  I'd never heard of this "service"  but that's what you get for being a shitty person.   

Link to comment
Share on other sites

Link to post
Share on other sites

1 hour ago, Heliian said:

Good on them,  I'd never heard of this "service"  but that's what you get for being a shitty person.   

Well TBH i know quite a few ppl that deserves the kind of package this service sent out.....

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×