Hacker News new | ask | show | jobs
by JamesonNetworks 1065 days ago
Seems like they are assuming the same key was used to forge tokens and jump from that assumption to the conclusion that they found all instances of requests. If more keys were used to generate more tokens, isn’t it possible this attack had a much wider surface area?
2 comments

As a rule of thumb, hacks are always worse than initially thought. See https://circles.page/5680a56b5c28af0998656e09/Hacks-worse-th...
Absolutely. Maybe Louisiana and Oregon DMV hacks?