Mak Man on Gaana.com hack Says, Just wanted to highlight the issue
Mak Man, a Lahore-based hacker, gave a virtual scare to Gaana.com Thursday by executing a Proof of Concept (POC) hack on the Indian streaming music site. After a stand-off that lasted several hours, the matter was resolved late Thursday evening. In an exclusive chat, Mak Man answers Business Standard queries over Facebook Messenger. Edited excerpts:
Can you explain in layman terms what exactly did you do? What did you plan to demonstrate by this act?
I just highlighted an issue in a very controlled environment. The issue was that an end user had the privileges to execute SQL commands on their back end server, giving him/her access to all the details stored in their database including user details.
A: Yes, I’m totally satisfied with the response.
A: It was a targeted hack.
A: I’m not sure.
Q: Will you take the offer given by Satyan?