时间:2026-04-07 20:00:47 来源:网络整理编辑:時尚
Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a r
Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a really bad mess-up.
That's reportedly what happened with the U.S. airline CommuteAir. The Daily Dot reported that a Swiss hacker known as "maia arson crimew" found the unsecured server while using the specialized search engine Shodan. There was apparently a lotof sensitive information on the server, including a version of the no-fly list from four years ago. Somewhat hilariously that was reportedly found via a text file labeled "NoFly.csv." That is...not hard to guess.
A blog post from crimew titled "how to completely own an airline in 3 easy steps" cited boredom as the reason for finding the server. They were just poking around and found it.
"At this point, I've probably clicked through about 20 boring exposed servers with very little of any interest, when I suddenly start seeing some familiar words," crimew says in their blogpost. "'ACARS', lots of mentions of 'crew' and so on. Lots of words I've heard before, most likely while binge-watching Mentour Pilot YouTube videos. Jackpot. An exposed jenkins server belonging to CommuteAir."
Tweet may have been deleted
CommuteAir, a regional US airline headquartered in Ohio, confirmed the info on the server was authentic to the Daily Dot. The server has been taken offline.
"The server contained data from a 2019 version of the federal no-fly list that included first and last names and dates of birth," CommuteAir Corporate Communications Manager Erik Kane told the Daily Dot. "In addition, certain CommuteAir employee and flight information was accessible. We have submitted notification to the Cybersecurity and Infrastructure Security Agency and we are continuing with a full investigation."
The info from the server has already been poured over, with some researchers saying it shows how the list is heavily biased against Muslim people. According to Daily Dot, while there is no official number to how many names are on the no-fly list, Sen. Dianne Feinstein (D-Calif.) suggested in 2016, that over 81,000 people were on the list.
TopicsCybersecurity
Here's what 'Game of Thrones' actors get up to between takes2026-04-07 19:49
中超賽季引援交易額不足3千萬歐元 巔峰期曾達到5億2026-04-07 19:15
國足官方發布12強賽海報:踏上衝刺世界杯之旅 力爭出線2026-04-07 19:15
曝國足12強賽單場贏球獎稅前600萬 主力球員每人五六萬2026-04-07 19:03
Mall builds real2026-04-07 18:39
國足演練定位球防高空轟炸 首戰主力暫“保密” ?2026-04-07 18:34
國足首戰或沿用40強賽體係 武磊艾克森雙前鋒出擊2026-04-07 18:30
澳大利亞入“亞”後麵對國足平分秋色 頭號射手成雙刃劍2026-04-07 17:55
Donald Trump's tangled web of Russian influence2026-04-07 17:50
不被亞足聯看好+晉級幾率個位數 國足12強賽優勢到底在哪?2026-04-07 17:42
Give your kitchen sponge a rest on this adorable bed2026-04-07 19:47
吳曦:希望上屆12強賽最後勝利帶好運 平穩心態勇敢麵對2026-04-07 19:30
武磊祝賀C羅創造新紀錄 :111球!真是一個裏程碑的時刻 !2026-04-07 19:26
“核武7”戰前發聲 :任何對手想贏我們都不容易2026-04-07 18:18
PlayStation Now game streaming is coming to PC2026-04-07 18:17
海港主帥 :對爭冠組比賽很有信心 在上海就像在家2026-04-07 18:11
中超世界第6大聯賽的夢該醒了 國企參與俱樂部改革利大於弊2026-04-07 18:07
國足已測兩次核酸均呈陰性 全隊隔離生活流行“養生”2026-04-07 17:44
Two astronauts just installed a new parking spot on the International Space Station2026-04-07 17:34
國足兩道“減法”選首戰23人 技戰術和人員用熟悉的那套2026-04-07 17:30