Toots for Elephant@mastodontech.de account

Written by Markus G on 2024-12-29 at 08:13

On the surface it may seem that a cloud storage solution, a so called S3 bucket from the provider AWS was left unprotected. Yet, if I understand what happened correctly, it wasn’t a misconfigured S3 bucket but unforgivable bad development practices and really bad data handling (non-anonymized, unencrypted, over too long in time, and too specific in location). (1/2)

=> More informations about this toot | View the thread

Written by Markus G on 2024-12-29 at 08:13

They should’ve turned off the analytics endpoint, they should’ve used non-persistent credentials, they should’ve used passwords for their tokens, they should’ve encrypted the data, but mostly they should not have collected and stored all that data in that form for that long to begin with.

[#]volkswagen #vw #cybersecurity #databreach #aws (2/2)

=> More informations about this toot | View the thread

=> This profile with reblog | Go to Elephant@mastodontech.de account

Proxy Information
Original URL
gemini://mastogem.picasoft.net/profile/110964101694077360
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
260.082623 milliseconds
Gemini-to-HTML Time
0.942708 milliseconds

This content has been proxied by September (ba2dc).