
veritas
@blastbots
founder @nullpt_rs š³ļøāš
ID: 981038096585314304
http://nullpt.rs 03-04-2018 05:18:03
6,6K Tweet
4,4K Followers
929 Following







IT support software is often exposed on the ext. internet. Auditing the code of Halo ITSM, we found a sink that led to a critical pre-authentication SQLi. We reflect on how loose typing led to this vuln when compared to the rest of the codebase. Read more: slcyber.io/assetnote-secuā¦










When applying for a job at McDonald's, over 90% of franchises use "Olivia," an AI-powered chatbot. We (Ian Carroll and I) discovered a vulnerability that could allow an attacker to access the over 64 million chat records using the password "123456". ian.sh/mcdonalds


