30 September 2021

Vaccine Passport App Not Secured

Is anybody Shocked that an app built quickly didn't consider security? Portpass app may have exposed hundreds of thousands of users' personal data

Private proof-of-vaccination app Portpass exposed personal information, including the driver's licences, of what could be as many as hundreds of thousands of users by leaving its website unsecured.

On Monday evening, CBC News received a tip that the user profiles on the app's website could be accessed by members of the public.

First the CEO said, "there was no breach, you lying criminals." Then it was, "The breach only lasted minutes." It lasted long enough for people to find it, and report it to them.

OK then. I totally believe him when he says that. Not really.

Hat tip to Don Surber.

1 comment:

  1. Yep. It isn't as if a "secure" document database was never done before.

    Somehow, I think I know where all the failed "Die Versa Tee" employees went.

    ReplyDelete

Comment Moderation is in place. Your comment will be visible as soon as I can get to it. Unless it is SPAM, and then it will never see the light of day.

Be Nice. Personal Attacks WILL be deleted. And I reserve the right to delete stuff that annoys me.