more than 6 mnths ago me and @HauntITBlog reported serious SQLi vuln to a vendor... still not patched -> their clients exposed. what to do?
@hasherezade @HauntITBlog So, pretty big vuln indeed. I would contact them again before doing anything - which is the most responsible imho.
-
-
@bartblaze@hasherezade@HauntITBlog Don't forget the logoThanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
@bartblaze@HauntITBlog I also think going full disclosure now will do no good, I re-checked some of their clients now and still data leaks - Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.