Man, Father of Zero, Work with computers.
TL;DR: Falta de configurações de segurança permite enviar emails de domínios .gov.pt entre outros. Situação mantém-se 149 dias depois do primeiro contato a reportar o problema.
TL;DR: Uploading a specially crafted image (Lottapixel.jpg) throws an error that exposes AWS credentials from Asana!
First of all I’m a skid! Most of the tools I use to find bugs aren’t made by me! But I keep a good archive of those tools!
A couple days ago I was on twitter and lot’s of people were talking about open MongoDB instances that were hijacked and the hackers were demanding bitcoins!