@[email protected] to [email protected]English • 1 year agoAPI Misuse: Hacker Leaks 2.6M Duolingo Users' Emails & Nameswww.hackread.comexternal-linkmessage-square11fedilinkarrow-up1128arrow-down11cross-posted to: duolingotechnology
arrow-up1127arrow-down1external-linkAPI Misuse: Hacker Leaks 2.6M Duolingo Users' Emails & Nameswww.hackread.com@[email protected] to [email protected]English • 1 year agomessage-square11fedilinkcross-posted to: duolingotechnology
minus-square@[email protected]linkfedilink16•1 year agoThe worst is they paint it as “not a real leak” or “not a security issue” when it’s even worse than that.
I’d call this API misdesign instead
The worst is they paint it as “not a real leak” or “not a security issue” when it’s even worse than that.
No no no. It’s a public API so it doesn’t count!