UK-based telecommunication firm EE, endured recurrent flaws in its online system. In one week, EE fixed two security vulnerabilities that could potentially impact their customers. In the first instance, a bug that let a customer add free unlimited data to their accounts data plan could let an attacker gift free data to other linked accounts as well. A researcher with the alias Spider on Twitter discovered the bug and reported it to Tech Crunch who later brought the matter to the notice of EE authorities. Fortunately, both the vulnerabilities were fixed before any malicious exploitation.”]
Source: https://hackercombat.com/uk-based-firm-ee-hit-by-two-security-vulnerabilities/

