Bug on the Domino website won the hackers free pizza

A security consultant from the UK named Paul Price found a bug in the UK version of it of Pizza Domino that allowed him to order a pizza and not pay for it.

pizza dominoes

Price found that the application's API for processing the δεν λειτουργούσε σωστά, επιτρέποντας σε χρήστες με αρκετή τεχνογνωσία να ξεγελάσουν την εφαρμογή ώστε αυτή να αποδεχθεί άκυρες πληρωμές, κατ ‘ουσίαν, επιτρέποντάς τους να παραγγείλουν πίτσα .

The app accepted the invalid payments as paid and so did the rest continued to deliver your order to your door.

The investigator of course did not take advantage of the security gap and informed the company Domino which directly corrected the error.

But the moral lesson of the story is that there are many applications out there with defective APIs.

Τα bugs στα APIs ήταν εν μέρει υπεύθυνα για το μαζική παραβίαση της εταιρείας παιχνιδιών VTech , η οποία άφησε εκτεθειμένα τα προσωπικά million parents.

But just a few weeks ago, security researchers Troy Hunt and Scott Helme showed that hackers could cause chaos in Nissan's electric cars by activating AC and draining the battery of the car. The company was forced to disable the app to fix the bug.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).