Hacker News new | ask | show | jobs
by wouldbecouldbe 662 days ago
It wasn’t an sql injection in their code. It was a third party issue.

So internally the question would probably how can you open it up responsibly.

Closing the api is probably a support nightmare; they probably gave too many rights and too little safety checks.