More stories

  • in

    Bayern Munich reward fan with signed Thomas Muller shirt… for HACKING their club website

    BAYERN MUNICH have rewarded a hacker with a signed Thomas Muller shirt after he pointed out security flaws on their website.Bayern fan Daniel “Ghost” Martins found users’ details like names and financial information were at risk.
    Daniel “Ghost” Martins exposed flaws on the website of his beloved Bayern
    The information security expert was rewarded by Bayern for sending them a report detailing problems with their website
    The “ethical hacker” says the German giants didn’t reply to his concerns at first – but in the end were so grateful they gave him a top from their legendary Germany ace Muller.
    Martins, 24, an expert in information security, alerted Bayern when he spotted weaknesses in their official website portal.
    Personal data could have been exposed by the problem.
    Not only that, a configuration flaw in the website servers meant commercial and confidential information about the club could have been breached.
    READ MORE IN FOOTBALL
    Martins wrote to Bayern, explaining how vulnerable their website was.
    He said: “As soon as I found the fault, immediately, at dawn, I made a report and sent it to them. 

    “They took a while to fix and didn’t even respond to me at first. 
    “But a journalist from Globo (Daniel Mundim) saw this fact and helped me get in touch with them. Successfully. 
    Most read in Bundesliga
    JOIN SUN VEGAS: GET A FREE £10 BONUS WITH 100s OF GAMES TO PLAY AND NO DEPOSIT REQUIRED (Ts&Cs apply)
    “They corrected it, and as a way of thanking me they sent me a shirt signed by the club’s biggest idol, Thomas Muller.”
    Bayern thanked Daniel for his “true” information and asked to send a gift.
    “Ghost” insisted he hacked their website purely to see if he could help them.
    He said: “Because it is a team that I admire a lot and because I do what I do, I decided to explore the site to somehow help the team. 
    “I explored, and found a vulnerability of the ‘information disclosure’ type, which roughly speaking is a kind of information leak due to bad configuration.
    “Basically it occurs when a site unintentionally reveals confidential information to its users. Depending on the context, sites can leak all kinds of information to a potential attacker.” More

  • in

    Mafia bosses offering top UEFA referees £25k bungs online in bid to fix footie matches

    MAFIA bosses are targeting top UEFA referees with cyber-crime hits to try to fix footy matches.Officials are offered up to £25,000 to swing matches, according to a leaked memo seen by The Sun.
    Mafia bosses are targeting top UEFA referees with cyber-crime hits to try to fix footie matchesCredit: Reuters
    Criminals are using the phishing techniques fine-tuned during the pandemic to tempt refs to throw European clashes.
    The memo, which was sent to the FA and other governing bodies, warns: “The corrupters made use of cyber-crime tactics not previously seen in reported corrupter messages, possibly pointing to a bleed-over in tactics from more sophisticated groups or even the potential for collaboration with such groups.”
    It talks of “incidents in which a suspected match-fixer attempted to recruit referees to manipulate matches via social media”.
    It reads: “This evolution may have been accelerated by the Covid lockdown, during which cyber criminals both diversified and intensified their criminal activities, according to Europol.”
    The memo adds: “We assess corrupters will likely continue to attempt contact with players, referees and other officials via social media and the use of more sophisticated messages, including personalised content and manipulation techniques.”
    The messages are understood to have originated from Asian crime gangs and were sent in English — but it’s not thought British refs were targeted.
    @font-face{font-family:’The Sun’;src:url(‘/assets/fonts/the-sun/TheSun-Regular.woff2’) format(‘woff2’),url(‘/assets/fonts/the-sun/TheSun-Regular.woff’) format(‘woff’),url(‘/assets/fonts/the-sun/TheSun-Regular.ttf’) format(‘truetype’),url(‘/assets/fonts/the-sun/TheSun-Regular.svg#’) format(‘svg’);font-style:normal;font-weight:400;font-display:swap;}@font-face{font-family:’The Sun’;src:url(‘/assets/fonts/the-sun/TheSun-Medium.woff2’) format(‘woff2’),url(‘/assets/fonts/the-sun/TheSun-Medium.woff’) format(‘woff’),url(‘/assets/fonts/the-sun/TheSun-Medium.ttf’) format(‘truetype’),url(‘/assets/fonts/the-sun/TheSun-Medium.svg#’) format(‘svg’);font-style:normal;font-weight:500;font-display:swap;}@font-face{font-family:’The Sun’;src:url(‘/assets/fonts/the-sun/TheSun-HeavyNarrow.woff2’) format(‘woff2’),url(‘/assets/fonts/the-sun/TheSun-HeavyNarrow.woff’) format(‘woff’),url(‘/assets/fonts/the-sun/TheSun-HeavyNarrow.ttf’) format(‘truetype’),url(‘/assets/fonts/the-sun/TheSun-HeavyNarrow.svg#’) format(‘svg’);font-style:normal;font-weight:400;font-stretch:semi-condensed;font-display:swap;}@font-face{font-family:’The Sun’;src:url(‘/assets/fonts/the-sun/TheSun-Bold.woff2’) format(‘woff2’),url(‘/assets/fonts/the-sun/TheSun-Bold.woff’) format(‘woff’),url(‘/assets/fonts/the-sun/TheSun-Bold.ttf’) format(‘truetype’),url(‘/assets/fonts/the-sun/TheSun-Bold.svg#’) format(‘svg’);font-style:normal;font-weight:700;font-stretch:normal;font-display:swap;}@font-face{font-family:’The Sun’;src:url(‘/assets/fonts/the-sun/TheSun-HeavyNarrow.woff2’) format(‘woff2’),url(‘/assets/fonts/the-sun/TheSun-HeavyNarrow.woff’) format(‘woff’),url(‘/assets/fonts/the-sun/TheSun-HeavyNarrow.ttf’) format(‘truetype’),url(‘/assets/fonts/the-sun/TheSun-HeavyNarrow.svg#’) format(‘svg’);font-style:normal;font-weight:700;font-stretch:condensed;font-display:swap;}.css-qu9fel{border-top:1px solid #dcdddd;}.css-b9nmbi{margin-bottom:16px;border-top:1px solid #dcdddd;}.css-1qsre5o{display:-webkit-box;display:-webkit-flex;display:-ms-flexbox;display:flex;height:100%;-webkit-align-items:flex-start;-webkit-box-align:flex-start;-ms-flex-align:flex-start;align-items:flex-start;-webkit-align-content:flex-start;-ms-flex-line-pack:flex-start;align-content:flex-start;-webkit-box-flex-wrap:nowrap;-webkit-flex-wrap:nowrap;-ms-flex-wrap:nowrap;flex-wrap:nowrap;-webkit-flex-direction:column;-ms-flex-direction:column;flex-direction:column;-webkit-box-pack:justify;-webkit-justify-content:space-between;justify-content:space-between;}.css-q8gelu{margin-bottom:24px;}.css-7ysxcx{padding:0;text-transform:uppercase;-webkit-text-decoration:none;text-decoration:none;}.css-7ysxcx:hover:not(:disabled){-webkit-text-decoration:none;text-decoration:none;}.css-jkwlot{display:-webkit-box;display:-webkit-flex;display:-ms-flexbox;display:flex;height:100%;-webkit-align-items:center;-webkit-box-align:center;-ms-flex-align:center;align-items:center;-webkit-flex-direction:row;-ms-flex-direction:row;flex-direction:row;-webkit-box-pack:justify;-webkit-justify-content:space-between;justify-content:space-between;padding:0;text-transform:uppercase;-webkit-text-decoration:none;text-decoration:none;}.css-jkwlot:hover:not(:disabled){-webkit-text-decoration:none;text-decoration:none;}.css-zkaekv{font-family:The Sun;font-size:24px;line-height:1.1666666666666667;font-weight:400;letter-spacing:0%;font-stretch:semi-condensed;padding:1px 0px;}.css-zkaekv::before{content:”;display:block;height:0;width:0;margin-bottom:calc(-0.24520833333333342em + -1px);}.css-zkaekv::after{content:”;display:block;height:0;width:0;margin-top:-0.2333333333333334em;}.css-1lobn43{display:inline;font:inherit;margin:0;color:rgba(0,0,0,1);}.css-1lobn43 svg{fill:rgba(0,0,0,1);}Most read in Football.css-1gojmfd{margin-bottom:16px;}.css-zdjvqv{display:-webkit-box;display:-webkit-flex;display:-ms-flexbox;display:flex;height:100%;-webkit-align-items:flex-start;-webkit-box-align:flex-start;-ms-flex-align:flex-start;align-items:flex-start;-webkit-align-content:flex-start;-ms-flex-line-pack:flex-start;align-content:flex-start;-webkit-box-flex-wrap:nowrap;-webkit-flex-wrap:nowrap;-ms-flex-wrap:nowrap;flex-wrap:nowrap;-webkit-flex-direction:column;-ms-flex-direction:column;flex-direction:column;-webkit-box-pack:space-around;-ms-flex-pack:space-around;-webkit-justify-content:space-around;justify-content:space-around;margin-top:calc(-12px/2);margin-bottom:calc(-12px/2);}.css-zdjvqv:before,.css-zdjvqv:after{content:”;display:block;}.css-1meuhfk{display:-webkit-inline-box;display:-webkit-inline-flex;display:-ms-inline-flexbox;display:inline-flex;margin-top:calc(12px/2);margin-bottom:calc(12px/2);}
    Jude Bellingham slapped with £34k fine over match-fixing comments about referee after Dortmund defeat to Bayern More

  • in

    Man Utd hit by cyber attack as hackers target club’s IT systems in ‘sophisticated operation by organised criminals’

    MANCHESTER United have been hit by a cyber attack as hackers targeted the club’s IT systems.
    The Red Devils confirmed they were the victims of a “sophisticated operation by organised criminals”.

    The club said it was not aware any personal data had been affectedCredit: Alamy

    But they are confident no personal data has been breached and today’s Premier League game against West Bromwich Albion at Old Trafford will go ahead.
    A club statement read: “Manchester United can confirm that the club has experienced a cyber attack on our systems.
    “The club has taken swift action to contain the attack and is currently working with expert advisers to investigate the incident and minimise the ongoing IT disruption.
    “Although this is a sophisticated operation by organised cyber criminals, the club has extensive protocols and procedures in place for such an event and had rehearsed for this eventuality.

    “Our cyber defences identified the attack and shut down affected systems to contain the damage and protect data.
    “Club media channels, including our website and app, are unaffected and we are not currently aware of any breach of personal data associated with our fans and customers.

    “We are confident that all critical systems required for matches to take place at Old Trafford remain secure and operational and that tomorrow’s game against West Bromwich Albion will go ahead.”
    A spokesman for United added: “These type of attacks are becoming more and more common and are something you have to rehearse for.”

    United have informed the Information Commissioner’s Office and the club say forensic tracing is being carried out in a bid to establish further detail about the attack.

    The Red Devils admitted they had suffered a cyber attack on Friday eveningCredit: Alamy

    Man Utd set to offload four outcasts in January transfer window including Jones and Fosu-Mensah to lower wage bill More