9.8 Document for Analysis: Hackers Hijack E-Mail Addresses
To: Kara Khalial <kkhalial@coastal.net>
From: Janice Small <jsmall@princetonpayment.org>
Subject: Customer Security Incident at Princeton Payment Systems
Cc:
Bcc:
You are receiving this e-mail because of a recent incident at Princeton Payment Systems
resulting in the release of some customer e-mail addresses.
On November 12 we learned that computer “hackers” maliciously exploited a function designed
to make our log-in process faster. The hackers deliberately went to great lengths to extract
customer e-mail addresses. However, within hours we disabled the mechanism and established a
new procedure that requires users to enter both their e-mail addresses and their passwords. I want