In major goof, Uber stored sensitive database key on public GitHub page

Status
You're currently viewing only Dachannien's posts. Click here to go back to viewing the entire thread.
Not open for further replies.

Dachannien

Ars Scholae Palatinae
1,147
Subscriptor
[url=http://meincmagazine.com/civis/viewtopic.php?p=28583919#p28583919:2awj4m55 said:
Iphtashu Fitz[/url]":2awj4m55]
Ride-sharing service subpoenas GitHub for IP addresses that accessed security key.

Yeah, lot of good that will do. If it was posted to a public github repo then it was likely downloaded by hundreds, if not thousands, of people. On top of that the culprit who likely used this to access their database probably connected from a server in China or Russia, or through a Tor exit node.

Exactly. Either the perp was foolish enough to use fewer than seven proxies both when accessing GitHub and the Uber server, in which case Uber already has the information they need without the subpoena, or they were smart enough to use the requisite number of proxies, in which case this is a wild goose chase that could result in some poor innocent being sued or charged.
 
Upvote
16 (19 / -3)
Status
You're currently viewing only Dachannien's posts. Click here to go back to viewing the entire thread.
Not open for further replies.