Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
"Hackers broke into the database which handles the information system for our switchboard. There they installed a password sniffer that located the password to someone in operations. With his password they accessed other machines and from there they pulled out the university's central password file," said Oslo University IT director Arne Laukholm.
Laukholm said the university was not aware that an SQL-database automatically installs with a Windows 2000 server. This led to the switchboard database not being properly upgraded with security patches.
This contains entire article
The link for this article located at Aftenposten is no longer available.