7 ms·
Yes. More than one. This one was especially "interesting", a security researcher was tasked by a company to evaluate the ERP (I believe would be the acronym) so
by sdoering 2mo ago
Yes. More than one. This one was especially "interesting", a security researcher was tasked by a company to evaluate the ERP (I believe would be the acronym) software. Diiscovered an external database connection, looked at it, discovered this external DB contained sensitive information from other clients of that vendor - reported it, got sued, lost.
In German: https://ht-strafrecht.de/blog/strafrecht/it-sicherheitsluecke-entdeckt-und-verurteilt-der-fall-eines-it-experten-und-die-grenzen-des-hacker-paragraphen/ https://ht-strafrecht.de/blog/strafrecht/it-sicherheitslueck...
- RamblingCTO 1mo agoOuch, that's pathetic. Hm, maybe I'll leave it then. Not worth the hassle. Although I don't really think someone would hunt me for random non-prod github repos