Aaron Costello (@conspiracyproof) 's Twitter Profile
Aaron Costello

@conspiracyproof

🇮🇪 ✝️
SaaS Security.
Opinions may be that of James Joyce or Samuel Beckett who occasionally channel their spirits through me.

ID: 464038723

linkhttp://enumerated.ie calendar_today14-01-2012 19:30:59

306 Tweet

1,1K Followers

307 Following

Aaron Costello (@conspiracyproof) 's Twitter Profile Photo

For those who haven't read my research, it's not too late. It's making waves! 🌊🌊 enumerated.ie/servicenow-dat… #saas #bugbountytips #CyberSecurity #servicenow

Aaron Costello (@conspiracyproof) 's Twitter Profile Photo

140k+ URLs, that's the potential blast wave of this issue. Tonnes of the Fortune 500 affected and I've got many open dialogues with Fortune 50 companies that are leaking data such as: - Entire CMDB - Email Content - File Content - Internal KB articles - Internal tickets #saas

Aaron Costello (@conspiracyproof) 's Twitter Profile Photo

Fantastic coverage of my ServiceNow research by .The Register ! A great explanation for individuals whom may not be super technical but wish to gain a basic understanding of how thousands of organisations were exposing sensitive data in #ServiceNow. #saas #cybersecurity

Aaron Costello (@conspiracyproof) 's Twitter Profile Photo

Check out my analysis and timeline of the changes made by ServiceNow, topped with my own skepticism regarding the comprehensiveness of the fixes, and a final dash of data security recommendations for the future. appomni.com/blog_post/a-te… #saas #servicenow #cybersecurity #sspm

Aaron Costello (@conspiracyproof) 's Twitter Profile Photo

It really concerns me that the HSE are claiming it requires 'deep technical expertise'. They'd be right...if I hadn't published a step-by-step guide on how to manually find, exploit, and secure these kinds of issues in Salesforce systems a year prior: enumerated.ie/index/salesfor…

James Cox (@jamescox91) 's Twitter Profile Photo

Spoke to Aaron Costello about his discovery of the HSE vaccine data of one million people being exposed, and how he published a warning on the vulnerability one year before.

CRN (@crn) 's Twitter Profile Photo

More than 1,000 ServiceNow instances have been discovered to be exposing potentially sensitive Knowledge Base data, according to Aaron Costello, chief of SaaS security research at AppOmni. bit.ly/3B6Bn01

Aaron Costello (@conspiracyproof) 's Twitter Profile Photo

Want to know how you can hack Microsoft Power Page websites? How I was able to access (and later secure) PII of 1.1 MILLION #NHS employees? With my latest blog post, you can learn how to pentest a Power Page site for data leaks in as little as 2 minutes. Check it out below:

James Cox (@jamescox91) 's Twitter Profile Photo

Spoke to Aaron Costello about his discovery of 1.1 million NHS employees' records being leaked online, Aaron previously discovered a HSE data breach that left the data of 1 million people vulnerable.