Uninformed: Informative Information for the Uninformed

Vol 7» 2007.May


Case Study: Paris Hilton Screwed by Dog

A well publicized user context attack[3] was recently executed against the Hollywood celebrity Paris Hilton in which her cellular phone was compromised. The account password recovery question that she selected for use with her cellular provider's web site was "What is your favorite pet's name?" Many fans can most likely recollect from memory the answer to this question, not to mention fan web sites, message boards, and tabloids that likely have this information available to anyone that wishes to gather it. The attacker simply "failed stupid" and reset Hilton's online account password which then allowed access to her cellular device and its data.