Your Web News in One Place

Help Webnuz

Referal links:

Sign up for GreenGeeks web hosting
July 26, 2011 05:54 am GMT

Zaarly Security Glitch Exposes Private Messages, Phone Numbers

Another day, another startup security glitch.This time the startup affected is Zaarly, the service that lets you buy or sell anything with people nearby.A bug in a recent code push created a security hole that revealed usernames, phone numbers, email addresses, and private messages between buyers and sellers.To exploit the bug, you'd need only access Zaarly'slistings.JSON file, specifying the lat and long coordinates for the area you wanted to view. The site would spit out its listings as usual ("Used iPhone 4", "Mechanic to do a Saab engine swap", and so on) along with relevant descriptions.

Original Link: http://feedproxy.google.com/~r/Techcrunch/~3/EuJxkhnjrpo/

Share this article:    Share on Facebook
View Full Article

Techcrunch

TechCrunch is a leading technology blog, dedicated to obsessively profiling startups, reviewing new Internet products, and breaking tech news.

More About this Source Visit Techcrunch