Welcome to the Proxy Update, your source of news and information on Proxies and their role in network security.

Tuesday, April 12, 2011

Another security vendor gets hacked - this time Barracuda

After the news of the McAfee website getting attacked, comes news that Barracuda's website got hacked, and leaked sensitive company information including partner info, and employee credentials.

It appears the breach came from an SQL injection attack. It's especially troubling because Barracuda sells something called a Web Application Firewall (WAF), basically a souped up reverse proxy designed to protect websites from attacks like this one. In a recent followup the CMO of Barracuda acknowledged their WAF was offline during the attack, during a maintenance window.

The latest attack just continues to prove you can't be too paranoid about security in this day and age.

No comments: