您现在的位置是:綜合 >>正文
【】
綜合78258人已围观
简介Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a r ...
Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a really bad mess-up.
That's reportedly what happened with the U.S. airline CommuteAir. The Daily Dot reported that a Swiss hacker known as "maia arson crimew" found the unsecured server while using the specialized search engine Shodan. There was apparently a lotof sensitive information on the server, including a version of the no-fly list from four years ago. Somewhat hilariously that was reportedly found via a text file labeled "NoFly.csv." That is...not hard to guess.
A blog post from crimew titled "how to completely own an airline in 3 easy steps" cited boredom as the reason for finding the server. They were just poking around and found it.
"At this point, I've probably clicked through about 20 boring exposed servers with very little of any interest, when I suddenly start seeing some familiar words," crimew says in their blogpost. "'ACARS', lots of mentions of 'crew' and so on. Lots of words I've heard before, most likely while binge-watching Mentour Pilot YouTube videos. Jackpot. An exposed jenkins server belonging to CommuteAir."
Tweet may have been deleted
CommuteAir, a regional US airline headquartered in Ohio, confirmed the info on the server was authentic to the Daily Dot. The server has been taken offline.
Related Stories
- Delta Airlines to offer free WiFi on most domestic flights by February
- Chinese government-linked hackers stole millions in COVID funds
- Southwest Airlines is offering 25,000 rewards points to inconvenienced passengers. How to claim them.
- Kickstart a career in cybersecurity with this ethical hacking and pen testing bundle
- Hacker steals $100 million from crypto project Mango, then things get weird
"The server contained data from a 2019 version of the federal no-fly list that included first and last names and dates of birth," CommuteAir Corporate Communications Manager Erik Kane told the Daily Dot. "In addition, certain CommuteAir employee and flight information was accessible. We have submitted notification to the Cybersecurity and Infrastructure Security Agency and we are continuing with a full investigation."
The info from the server has already been poured over, with some researchers saying it shows how the list is heavily biased against Muslim people. According to Daily Dot, while there is no official number to how many names are on the no-fly list, Sen. Dianne Feinstein (D-Calif.) suggested in 2016, that over 81,000 people were on the list.
TopicsCybersecurity
Tags:
转载:欢迎各位朋友分享到网络,但转载请说明文章出处“夫榮妻貴網”。http://new.maomao321.com/news/42c58699371.html
相关文章
Man stumbles upon his phone background in real life
綜合Life imitates tech. Or, perhaps it's the other way around.Reddit user xbshooterwas traveling near Sa ...
【綜合】
阅读更多QAnon content is no longer welcome on Twitter. Cue the conspiracy theories.
綜合Twitter announced on Tuesday that accounts and content linked with or promoting the QAnon conspiracy ...
【綜合】
阅读更多Watch 'Zenimation' on Disney+ to beat lockdown fatigue: Review
綜合Like a lot of us right now, I was frazzled and bored and fed up with TV the night I clicked on Zenim ...
【綜合】
阅读更多
热门文章
- Xiaomi accused of copying again, this time by Jawbone
- QAnon content is no longer welcome on Twitter. Cue the conspiracy theories.
- John Krasinski tells Rainn Wilson why he sold 'Some Good News'
- 2021 Oscars pushed back due to coronavirus
- The U.S. will no longer have the final say on internet domain names
- Guy Fieri loves John Krasinski and 'The Office' as much as you do
最新文章
Balloon fanatic Tim Kaine is also, of course, very good at harmonica
What it would take for a big box chain like Walmart to go package
How to file for a piece of that $117.5 million Yahoo data
The 11 best video games to play with your significant other
Dramatic photo captures nun texting friends after Italy earthquake
Tinder is making its 'Orientation' feature global and you can list up to 3