时间:2025-12-27 16:38:12 来源:网络整理编辑:綜合
Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a r
Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a really bad mess-up.
That's reportedly what happened with the U.S. airline CommuteAir. The Daily Dot reported that a Swiss hacker known as "maia arson crimew" found the unsecured server while using the specialized search engine Shodan. There was apparently a lotof sensitive information on the server, including a version of the no-fly list from four years ago. Somewhat hilariously that was reportedly found via a text file labeled "NoFly.csv." That is...not hard to guess.
A blog post from crimew titled "how to completely own an airline in 3 easy steps" cited boredom as the reason for finding the server. They were just poking around and found it.
"At this point, I've probably clicked through about 20 boring exposed servers with very little of any interest, when I suddenly start seeing some familiar words," crimew says in their blogpost. "'ACARS', lots of mentions of 'crew' and so on. Lots of words I've heard before, most likely while binge-watching Mentour Pilot YouTube videos. Jackpot. An exposed jenkins server belonging to CommuteAir."
Tweet may have been deleted
CommuteAir, a regional US airline headquartered in Ohio, confirmed the info on the server was authentic to the Daily Dot. The server has been taken offline.
"The server contained data from a 2019 version of the federal no-fly list that included first and last names and dates of birth," CommuteAir Corporate Communications Manager Erik Kane told the Daily Dot. "In addition, certain CommuteAir employee and flight information was accessible. We have submitted notification to the Cybersecurity and Infrastructure Security Agency and we are continuing with a full investigation."
The info from the server has already been poured over, with some researchers saying it shows how the list is heavily biased against Muslim people. According to Daily Dot, while there is no official number to how many names are on the no-fly list, Sen. Dianne Feinstein (D-Calif.) suggested in 2016, that over 81,000 people were on the list.
TopicsCybersecurity
Fake news reports from the Newseum are infinitely better than actual news2025-12-27 16:35
生活不易!林皇需照顧抑鬱症母親和家人 索帥體諒他2025-12-27 16:13
滬媒:國足戰越南必須拿3分 若有閃失或成中國足球罪人2025-12-27 16:04
國足右路王剛出現新傷情 隊內對抗幾乎無人可用2025-12-27 16:03
Plane makes emergency landing after engine rips apart during flight2025-12-27 15:26
許家印中秋致信恒大員工:堅信一定能走出至暗時刻2025-12-27 15:21
科曼:瘋狂傳中因為需要這麽做 巴薩必須隨機應變2025-12-27 15:06
大仇得報?梅西受傷因與博阿滕相撞 周末繼續缺陣2025-12-27 15:05
MashReads Podcast: What makes a good summer read?2025-12-27 14:24
切爾西當紅鐵衛已談妥4年續約合同 周薪12萬英鎊2025-12-27 14:17
Old lady swatting at a cat ends up in Photoshop battle2025-12-27 16:29
澎湃:越南媒體反複製造假新聞 國足需警惕對手心理戰2025-12-27 16:27
曼城太子歸來 !扳平助攻+殺死比賽 轟無解世界波2025-12-27 16:05
曝梅西和波切蒂諾之間沒任何問題 賽後已進行交流2025-12-27 15:46
These glasses hide a fitness tracker on your face2025-12-27 15:20
沙特兩大主力因傷缺戰國足 隊長或亦不具備參賽條件2025-12-27 14:42
不愧是你!巴神進球後嘲諷對方沒腦子 險引發暴亂2025-12-27 14:17
沈夢露社媒送祝福 :中秋快樂 !完美幸福的一天!2025-12-27 14:12
Singapore gets world's first driverless taxis2025-12-27 14:05
萊萬曬歐洲金靴獎 :今天你們可以叫我LewanGOLDski2025-12-27 13:57