时间:2025-08-02 07:45:05 来源:网络整理编辑:綜合
Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a r
Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a really bad mess-up.
That's reportedly what happened with the U.S. airline CommuteAir. The Daily Dot reported that a Swiss hacker known as "maia arson crimew" found the unsecured server while using the specialized search engine Shodan. There was apparently a lotof sensitive information on the server, including a version of the no-fly list from four years ago. Somewhat hilariously that was reportedly found via a text file labeled "NoFly.csv." That is...not hard to guess.
A blog post from crimew titled "how to completely own an airline in 3 easy steps" cited boredom as the reason for finding the server. They were just poking around and found it.
"At this point, I've probably clicked through about 20 boring exposed servers with very little of any interest, when I suddenly start seeing some familiar words," crimew says in their blogpost. "'ACARS', lots of mentions of 'crew' and so on. Lots of words I've heard before, most likely while binge-watching Mentour Pilot YouTube videos. Jackpot. An exposed jenkins server belonging to CommuteAir."
Tweet may have been deleted
CommuteAir, a regional US airline headquartered in Ohio, confirmed the info on the server was authentic to the Daily Dot. The server has been taken offline.
"The server contained data from a 2019 version of the federal no-fly list that included first and last names and dates of birth," CommuteAir Corporate Communications Manager Erik Kane told the Daily Dot. "In addition, certain CommuteAir employee and flight information was accessible. We have submitted notification to the Cybersecurity and Infrastructure Security Agency and we are continuing with a full investigation."
The info from the server has already been poured over, with some researchers saying it shows how the list is heavily biased against Muslim people. According to Daily Dot, while there is no official number to how many names are on the no-fly list, Sen. Dianne Feinstein (D-Calif.) suggested in 2016, that over 81,000 people were on the list.
TopicsCybersecurity
New Zealand designer's photo series celebrates the elegance of aging2025-08-02 07:32
頂級流量 !C羅回歸曼聯社媒熱度遠超梅西加盟巴黎2025-08-02 07:28
銀河三期 !報價姆巴佩鎖死哈蘭德 皇馬要重新上天2025-08-02 07:21
特評 :遠行的遊子歸家 C羅重回夢想開始之地再啟航2025-08-02 07:13
This app is giving streaming TV news a second try2025-08-02 07:05
武磊 :陳主席等我到淩晨十分感動 前兩場非常關鍵2025-08-02 06:50
巴黎主席談姆巴佩轉會:我們立場很明確 不會改變2025-08-02 06:31
C羅發文告別尤文 :我付出了一切 永遠是你們的一員2025-08-02 06:04
Florida hurricane forecast remains uncertain, but trends in state's favor2025-08-02 05:48
好事多磨!C羅回歸曼聯首秀還得等 兩周後迎戰紐卡2025-08-02 05:39
This company is hiring someone just to drink all day2025-08-02 07:42
銀河三期!報價姆巴佩鎖死哈蘭德 皇馬要重新上天2025-08-02 07:24
阿萊格裏:C羅說他不想留在尤文了 他周末不會出戰2025-08-02 07:14
特評 :遠行的遊子歸家 C羅重回夢想開始之地再啟航2025-08-02 07:11
This German startup wants to be your bank (without being a bank)2025-08-02 07:03
澳大利亞對陣國足名單:海港外援穆伊入選 26人來自海外2025-08-02 06:51
C羅已同曼城談妥2年短約 尤文將獲3000萬歐轉會費2025-08-02 06:34
C羅已與瓜帥有過溝通 25萬鎊周薪僅排曼城隊內第32025-08-02 06:10
Hiddleswift finally followed each other on Instagram after 3 excruciating days2025-08-02 05:57
巴黎主席談姆巴佩轉會:我們立場很明確 不會改變2025-08-02 05:02