I Could Have Hacked All Uber Accounts- But I Chose to Report it Insteadby@appsecure
2,373 reads

I Could Have Hacked All Uber Accounts- But I Chose to Report it Instead

tldt arrow
Read on Terminal Reader🖨️

Too Long; Didn't Read

This is being published with the permission of Uber under the responsible disclosure policy. The vulnerability detailed in this blog post is being disclosed by Anand Prakash of AppSecure. This was plugged quickly by the security team at Uber. This issue is similar to Facebook’s access token leak which was discovered last year https://techcrunch.com/2018/09/28/facebook-says-50-million-accounts-affected-by-account-takeover-bug/

People Mentioned

Mention Thumbnail

Companies Mentioned

Mention Thumbnail
Mention Thumbnail
featured image - I Could Have Hacked All Uber Accounts- But I Chose to Report it Instead
Anand Prakash HackerNoon profile picture

@appsecure

Anand Prakash

About @appsecure
LEARN MORE ABOUT @APPSECURE'S EXPERTISE AND PLACE ON THE INTERNET.
react to story with heart

RELATED STORIES

L O A D I N G
. . . comments & more!
Hackernoon hq - po box 2206, edwards, colorado 81632, usa