We noticed some websites at work have thousands of bogus registered users. There shouldn’t be any but the sign up box was only hidden with some code, technically it’s still there.
Presumably some spambot is signing up these addresses.
What reason would there be to do this? They can’t sign in, we don’t send emails, data doesn’t seem to be at risk.
[link] [comments]
from hacking: security in practice https://ift.tt/ZhaYvQe
Comments
Post a Comment