• Auth@lemmy.world
    link
    fedilink
    English
    arrow-up
    10
    ·
    2 days ago

    yeah i know the risk, but the headline implies the data was exposed to a hacker who tried the password 123456 but thats not the case. A security researcher was investigating the application and accessed a test application with the password 123456 then found an API call which exposed the data and then he instantly reported it.