Get a Pentest and security assessment of your IT network.

Cyber Security

Starbucks Abandons Azure Site, Exposed Subdomain to Hijacking

An oversight from Starbucks exposed one of its subdomains to takeover threat. A security researcher found that a Starbucks subdomain had a DNS pointer to an Azure cloud host that had been abandoned. The problem is that anyone registering the cloud host would receive data intended for the subdomain. An attacker could use the Starbucks sub domain to carry out XSS and session hijacking attacks. The issue was discovered on August 1 by a Berlin-based hacker, and reported to Starbucks through its bug bounty program on HackerOne platform.

Source: https://www.bleepingcomputer.com/news/security/starbucks-abandons-azure-site-exposed-subdomain-to-hijacking/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security