Endless Supplies Corporation ships worldwide, provides same day quotes, and carries CPUs, Storage Devices, Notebooks, Servers, Monitors, Office Equipment, Computers, Motherboards, Graphics Cards, Displays, Wireless Networking, Cases, Consumer Electronics, Software, and more. E-procurement systems for B2B, B2G, and B2C sales. Email us today.
Thursday, May 10, 2018
PSA: Saving passwords in public Trello boards is a really, really bad idea
If you put something on a publicly-accessible webpage, you should assume that it can (and eventually will) be read by another person. By that, I mean don’t put things you’d want to keep secret — like passwords and API credentials — in places where someone might eventually find them. Sounds obvious, right? That’s because it is. That said, one security researcher stumbled upon a troubling trend of organizations storing sensitive credentials in Trello documents, no less. An attacker could easily find these with little more than a Google query. The researcher, Kushagra Pathak, found a veritable treasure-trove of credentials. These…
This story continues at The Next Web
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment