Not a Hack: Lahore Electric Supply Companies (LESCO) Website Privacy Leaks不是一個哈克:拉合爾的電力供應公司( lesco )網站隱私外洩

Lahore Electric Supply Companies (LESCO) is a major electricity power provider in Lahore region of Pakistan.拉合爾電力供應公司( lesco )是一個重大的電力供應商在拉合爾地區的巴基斯坦。 LESCO’s main official website which is used for public access is located at lesco的主要官方網站是用來供市民查閱,是位於 http://www.lesco.gov.pk/ , but apparently LESCO has another web site probably for support staffs and personnels or for training purpose, which allowed everybody from public to ‘hack’ into, and access supposedly private and confidential data. ,但顯然lesco有另一個網站可能是工作人員和支持人員,或作訓練用途,從而使每個人都從市民'黑客'到,並獲得理應私人和機密數據。 (But who cares about privacy in Pakistan?) (但誰關心的隱私在巴基斯坦? )

The website of Lahore Electric Supply Companies that has major security flaw and privacy leaks is located at網站拉合爾電力供應公司,具有重大的安全漏洞和隱私洩漏的是位於 http://www.lesco.info/ . To ‘hack’ the website, simply browse to LESCO Human Resource Management System via Customer Service link at '黑客'的網站,只要瀏覽到lesco的人力資源管理系統通過客戶服務連結 http://www.lesco.info/mc/default.htm . You don’t even need any skill to hack the website.你甚至不需要任何技巧,黑客網站。 The login page has User ID (which is Guest) and password nicely filled in. Just hit “Enter Now !” button to log in to the system.登錄頁有用戶ID (即客戶)和密碼,很好的填補英寸只需點擊“進入現在! ”按鈕,登錄到該系統。

LESCO Lahore Backend System Hack Login

After logging in, ‘hacker’ can find various LESCO customers’ information from database (looks like is MySQL) such as name, address and phone number.登錄後, '黑客'可以在網上找到各種lesco客戶的資料從資料庫(看起來象是MySQL的) ,如姓名,地址和電話號碼。 Also available is application for electricity connection, date of application, status, next course of action and electricity load.還有是應用電力方面,申請日期,地位,在未來的行動過程和用電負荷。 (If you apply to LESCO and heard no news, this hack for you!) Best of all, search functions is provided. (如果您申請lesco ,並聽取了沒有消息,這個技巧為您服務! )最重要的是,搜索功能是提供。

LESCO Customer Details

LESCO Consumers Search

From the design of the website, with failed MySQL commands and broken links which link to ClickSoft.com.pk, which probably is the developer for the site, LESCO.info is probably still in construction, and not mean for public access.從設計的網站,與失敗的MySQL命令和斷開的鏈接鏈接到clicksoft.com.pk ,這可能是開發商為網站, lesco.info可能是仍然在施工,而不是意味著,供市民查閱。 We inclined to believe that the website is mainly used by LESCO staffs for training purpose and not as their back-end system, in view of the poor security measure.我們傾向於認為,該網站主要是用來由lesco人員培訓的目的,而不是作為他們的後端系統,鑑於對窮人的保安措施。 But why the true live data of customers is been used as the sample is out of comprehension, which conveniently provide backdoor access for those want to gather these information.但為何真正的實時數據的客戶是被用來作為該樣本是出於理解,方便地提供後門進入對於那些想收集這些資料。

Probably this is the style of doing work in South Asia part of the world, but does Pakistan has nuclear weapon?也許,這是作風,是做人的工作,在南亞地區是世界的一部分,但巴基斯坦是否已核武器呢? Can nuclear weapon of mass destruction be trusted to someone who can’t even protect personal data, albeit only name, address and phone of its own citizens?可以核大規模殺傷性武器信任誰,有人甚至不能保障個人資料,雖然只有姓名,地址及電話,自己的公民?

IMPORTANT : You're reading a machine translated page which is provided "as is" without warranty. 重要說明:您正在閱讀的機器翻譯網頁是“按原樣”提供的擔保。 Unlike human translation, machine translation does not understand the grammar, semantics, syntax, idioms of natural language, thus often produce inaccurate and low quality text which is misleading and incomprehensible.不像人類翻譯,機器翻譯不明白的語法,語義,語法,成語自然語言,因此,往往產生不準確的和低品質的文字,是具誤導性的和難以理解的。 Thus, please refer to因此,請參閱 original English article原來的英語文章 when in doubt.有疑問時。



6 Responses to “Not a Hack: Lahore Electric Supply Companies (LESCO) Website Privacy Leaks” 6反應“ ,而不是哈克:拉合爾的電力供應公司( lesco )網站隱私外洩”

  1. Jav jav
    May 8th, 2008 16:52 2008年5月8日16時52分
    1

    “”"Probably this is the style of doing work in South Asia part of the world, but does Pakistan has nuclear weapon? Can nuclear weapon of mass destruction be trusted to someone who can’t even protect personal data, albeit only name, address and phone of its own citizens?”" “ ” “大概這是作風,是做人的工作,在南亞地區是世界的一部分,但巴基斯坦是否已核武器?可以核大規模殺傷性武器信任誰,有人甚至不能保障個人資料,雖然只有姓名,地址電話和其本國公民“ ? ”

    why does everything has to finish on pakistan atomic power.為什麼一切都以完成對巴基斯坦的原子發電站。 Even if a rat dies in Pakistan the conclusion of the debate will end on Pakistan atomic power.即使老鼠死亡,在巴基斯坦的辯論結束時將結束對巴基斯坦的原子發電站。 what about other countries like UK for instance lost 2 cd’s containing more than 100 thousand people’s benefit details containing bank account details as well as personal data.如何看待其他國家,如英國,例如失去了二裁談會的載有100多萬人的利益的詳情載有銀行帳戶的詳情,以及個人資料。

  2. johndoe
    May 9th, 2008 03:25 2008年5月9日3時25分
    2

    judging by the content of the post and the grammar used, i’d be highly suspicious it was gw bush posting that message從內容的郵政和語法使用的,我願意非常可疑,這是毛重,布什發布了這一信息 : d

    “but does Pakistan has nuclear weapon?” “但巴基斯坦是否有核武器” ? : d :D : d : d

  3. Jav jav
    May 9th, 2008 10:51 2008年5月9日10時51分
    3

    Oh yes after having a look on this article on other sources, it looks like someone added the last bit(paragraph) by him/her self.哦是後一看就這條對其他來源的,它看起來像有人說,過去位元(段) ,由他/她的自我。 And after reading this article and having a look on that data, I don’t think SO it may cause any harm on large scale.及後讀此文章後看看就這一數據,我不這麼認為,它可能會造成任何傷害,在大尺度上。

  4. Jav jav
    May 9th, 2008 10:51 2008年5月9日10時51分
    4

    : d

  5. SAF水浸報告
    May 9th, 2008 15:30 2008年5月9日15時30分
    5

    Shows great Narrow mindedness of the website.表明,偉大的狹隘意識的網站。
    Bad display of Writing.壞的展示寫作。

  6. Fahd Murtaza法赫德穆爾塔扎
    May 13th, 2008 18:49 2008年5月13日18時49分
    6

    Mr Bush says Usama is in Pakistan.布什說,烏薩馬是在巴基斯坦。 The article is too BUSHY lol.文章過於濃密lol 。 The quality of the Protection given to Weapons of Mass destruction and Nuclear resources can’t be measured by a security given to a website which is in Beta Mode.質量給予的保障,以大規模殺傷性武器和核資源不能衡量一個安全考慮到一個網站上,是在測試模式。

    I strictly disagree to the last para of your artcle. i ,嚴格不同意到最後第您的artcle 。

Leave a Reply離開的答复

You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> 您可以使用這些標籤:的<a href="" title=""> <abbr title=""> <acronym title="">的<b> <blockquote cite=""> <cite>的<code> <刪除日期時間= “ ” >的<em>的<i> <q cite=""> <strike>的<strong>

Subscribe without commenting訂閱無評論


Custom Search

Incoming Search Terms for the Article傳入的搜索條件文章

www.lesco.gov.pk www.lesco.gov.pk - - www.lesco.gov.com www.lesco.gov.com - - www.lesco.gov.com.pk www.lesco.gov.com.pk - - Lesco.gov.com.pk lesco.gov.com.pk - - lesco.gov.com lesco.gov.com - - lesco.gov.pk lesco.gov.pk - - hack electricity 哈克電力 - - lesco pakistan lesco巴基斯坦 - - Companies in Lahore 公司在拉合爾 - - lesco lesco - - lesco lahore lesco拉合爾 - - electricity hack 電力哈克 - - lahore pakistan electricity 巴基斯坦拉合爾電力 - - lahore electric supply co pakistan 拉合爾電力供應合作巴基斯坦 - - http/www.lesco.gov.pk 的HTTP / www.lesco.gov.pk - - hacking electricity 黑客電力 - - how does electrical supply used for mobile phone function 請問電力供應用於移動電話的功能 - - lescoinfo lescoinfo - - http://www.lesco.gov.pk http://www.lesco.gov.pk - - lesco.info lesco.info - - turkish electric supply companies 土耳其電力供應公司 - - lesco power pk lesco權力的PK - - phone hack 電話哈克 - - Lesco Web Site lesco網站 - - pak hacker to rapidshare accounts hacking 白沙黑客rapidshare帳戶黑客入侵 - - Lahore Electrical Firms 拉合爾電氣公司 - - lesco lahore lesco拉合爾 - - electrical power supply for lahore pakistan 電力供應為巴基斯坦拉合爾 - - www lesco.gov.pk WWW的lesco.gov.pk - - lahore board 8th 2008 拉合爾董事會第八2008年 - - dsm-210 hacking 用電需求管理- 210黑客 - - lahore electricity demand 拉合爾的電力需求 - - lahore electric supply company 拉合爾電力供應公司 - - lahore electric supply hack 拉合爾電力供應哈克 - - logging electrical data on website 測井電器的數據網站 - - pakistan web cam hacks 巴基斯坦的Web凸輪的竅門 - - how to hack electricity 如何哈克電力 - - password for lesco.gov.pk 密碼lesco.gov.pk - - lahore electric supply co. 拉合爾電力供應合作。 - - fahd murtaza 法赫德穆爾塔扎 - - ELECTRIC SUPPLY COMPANY IN lahore 電力供應公司在拉合爾 - - lahore electric supply company official site 拉合爾電力供應公司的官方網站 - - lesco gov pk lesco政務的PK - - companies phone numbers in lahore 公司的電話號碼在拉合爾 - - companies addresses and phone numbers in lahore 公司地址和電話號碼在拉合爾 - - lesco sell to the public lesco出售給市民 - - pakistani electric supply companies 巴基斯坦的電力供應公司 - - How to Hack Lahore Electric Supply Company Website 如何哈克拉合爾電力供應公司網站 - - Laser Flashlight Hack dansk 激光手電筒哈克dansk - - power provider in lahore 電力供應商在拉合爾 - -