3 ms·
Yea not sure who approved the PRs that got merged exposing those auth fields... Its not really a data breach like the CEO claims but simply their in house API t
by BandButcher 3y ago
Yea not sure who approved the PRs that got merged exposing those auth fields... Its not really a data breach like the CEO claims but simply their in house API that exposes auth fields for any and all users.
Either this was done intentionally by a employee, a huge oversight in a code review, or possibly a junior engineer's poc that got pushed to prod by mistake
- tobiasfuenke 3y agoTheir website is just the CEO and some upwork freelance devs working on a $50 codecanyon social media boilerplate Source: https://www.wired.com/story/christopher-bouzy-spoutible-race-to-unseat-twitter/ https://www.wired.com/story/christopher-bouzy-spoutible-race...