The company behind the Signal clone used by at least one Trump administration official was breached earlier this month. The hacker says they got in thanks to a basic misconfiguration.

    • @[email protected]
      link
      fedilink
      English
      52 months ago

      Because they want to archive their messages assumedly, and because they’re clownishly incompetent of course

  • @[email protected]M
    link
    fedilink
    English
    72 months ago

    «When they loaded this URL, the server responded with a Java heap dump, which is a roughly 150-MB file containing a snapshot of the server’s memory at the moment the URL was loaded.»

    Comedy gold, the whole article…

    • Raltoid
      link
      fedilink
      English
      12 months ago

      Client side md5 password hashing, JSP, having public facing links to dump the heap due to default configuration…

      Either this was made by someone who took a programming course twenty years ago and haven’t touched it since. Or it was intentionally made to be insecure.