While potentially damaging to the bank execs, the data was less critical than other information held by the central bank, such as sensitive financial data or confidential policy communications.
“While it may not seem so to the bankers whose information was compromised, when you put it into perspective — we are talking about the Federal Reserve — this data is really the low-hanging fruit,” said Al Pascual, security analyst for Javelin Strategy & Research.
Unconfirmed, media speculation had the flaw as a known vulnerability in Adobe ColdFusion software, which is used by some Federal Reserve websites. The data that was stolen from the Fed and posted on the Web could likely become a headache for the bank execs. Hackers could use the information to craft email that would be more likely to trick recipients into clicking on an attachment or a link to a malicious website.
Link: http://www.networkworld.com/news/2013/020713-fed-hack-highlights-software-patching-266497.html