Hacker News new | ask | show | jobs
by YeBanKo 1952 days ago
This should absolutely be an end of this company.

1. They did not just give unauthorized access, they gave admin access.

2. It’s been going on for 6 years.

3. It seems very basic.

4. Not using HTTPS is another big red flag

5. Having this secure access feature is one of their selling points, by not providing it they essentially defrauded the public.

Mistakes happen, and it worse when it happens in security field. But this is not an honest mistake, this is negligence.