您现在的位置是:綜合 >>正文

【】

綜合1人已围观

简介Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a r ...

Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a really bad mess-up.

That's reportedly what happened with the U.S. airline CommuteAir. The Daily Dot reported that a Swiss hacker known as "maia arson crimew" found the unsecured server while using the specialized search engine Shodan. There was apparently a lotof sensitive information on the server, including a version of the no-fly list from four years ago. Somewhat hilariously that was reportedly found via a text file labeled "NoFly.csv." That is...not hard to guess.

A blog post from crimew titled "how to completely own an airline in 3 easy steps" cited boredom as the reason for finding the server. They were just poking around and found it.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

"At this point, I've probably clicked through about 20 boring exposed servers with very little of any interest, when I suddenly start seeing some familiar words," crimew says in their blogpost. "'ACARS', lots of mentions of 'crew' and so on. Lots of words I've heard before, most likely while binge-watching Mentour Pilot YouTube videos. Jackpot. An exposed jenkins server belonging to CommuteAir."

CommuteAir, a regional US airline headquartered in Ohio, confirmed the info on the server was authentic to the Daily Dot. The server has been taken offline.


Related Stories
  • Delta Airlines to offer free WiFi on most domestic flights by February
  • Chinese government-linked hackers stole millions in COVID funds
  • Southwest Airlines is offering 25,000 rewards points to inconvenienced passengers. How to claim them.
  • Kickstart a career in cybersecurity with this ethical hacking and pen testing bundle
  • Hacker steals $100 million from crypto project Mango, then things get weird

"The server contained data from a 2019 version of the federal no-fly list that included first and last names and dates of birth," CommuteAir Corporate Communications Manager Erik Kane told the Daily Dot. "In addition, certain CommuteAir employee and flight information was accessible. We have submitted notification to the Cybersecurity and Infrastructure Security Agency and we are continuing with a full investigation."

The info from the server has already been poured over, with some researchers saying it shows how the list is heavily biased against Muslim people. According to Daily Dot, while there is no official number to how many names are on the no-fly list, Sen. Dianne Feinstein (D-Calif.) suggested in 2016, that over 81,000 people were on the list.

TopicsCybersecurity

Tags:

相关文章

  • Cat gets stuck in the most awkward position ever

    綜合

    Anyone with a cat can tell you that although their cat's claws are impressive scratching and hunting ...

    綜合

    阅读更多
  • 胎兒雙腎回聲強嚴重嗎

    綜合

    胎兒即使是在做檢查的時候發現雙腎回聲非常的強烈 ,也不要過於的緊張,因為孕婦們情緒波動太大反而是會讓胎兒受到巨大的影響 ,最終導致不可挽回的後果 ,要先保持平靜 ,有的時候並非是由於病理因素所導致,具體要等到 ...

    綜合

    阅读更多
  • 環自己掉出來了怎麽辦

    綜合

    性生活是夫妻或是情侶之間必不可少的調味劑,但為了避免懷孕,男女都會做一些保護措施 。避孕套雖然是很常見的避孕方式 ,但是使用起來不是很方便 ,而且也會讓性生活的體驗變差,所以很多女性會采用節育環來避孕的方法 ...

    綜合

    阅读更多