
Auth Problems from Parsing, Slack's Password Hashes, Twitter's Info Breach - ASW #207
adilassil
41 min•0 plays•0 favorites
News
Description
<p>Nextauth.js account takeover due to parsing flaw, URL parsing flaw in Go's net/url, another path traversal, Slack exposes password hashes (whaaat!?), Twitter exposes 5.4 million accounts, ransomware and research against PyPI and GitHub, videos from fwd:cloudsec 2022.</p> <p> </p> <p>Visit <a href= "https://www.securityweekly.com/asw">https://www.securityweekly.com/asw</a> for all the latest episodes!</p> <p>Show Notes: <a href= "https://securityweekly.com/asw207">https://securityweekly.com/asw207</a></p>