Comment Re:Boycott (Score 1) 297
Please mod this up as it was the first post to cut through the sensationalism and get to the crux of the problem:
The information was returned with the simple use of the frequent flier number with no further credential check. If the site had better password protection, the author of this article would have had no story (Not to imply that this is an actual story :)). External information requirements have nothing to do with this gaffe. BA needs to take better care of their sensitive information. Even without the post 9/11 requirements they have had to deal with personal information such as credit card numbers. They should know better.
The information was returned with the simple use of the frequent flier number with no further credential check. If the site had better password protection, the author of this article would have had no story (Not to imply that this is an actual story