Bug on the Domino website won the hackers free pizza

A security consultant from the UK, with the Paul Price, found an error in its British version of Pizza Domino that allowed him to order a pizza and not pay for it.

pizza dominoes

Price found that the application's API for processing the was malfunctioning, allowing savvy users to trick the app into accepting invalid payments, essentially allowing them to order pizza for free.

The application accepted as invalid the invalid payments and so the rest of the process continued, so that your order arrived at your door.

The investigator of course did not take advantage of the security gap and informed the company Domino which directly corrected the error.

But the moral of the story is that there are many out there with broken APIs.

APIs bugs were partly responsible for the massive violation of the VTech game company, which left millions of people's personal data exposed.

But also just a few weeks ago, the researchers Troy Hunt and Scott Helme showed that hackers could wreak havoc on Nissan's electric cars by turning on the AC and draining the car's battery. The company was forced to disable the app to fix the bug.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).