Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

They were the one's to first report on DeepSeek's recent data leak, and they've found a few others.

One exploit I remember Wiz finding was "ChaosDB". A flaw in Microsoft's Cosmos DB allowed anyone to use the default-enabled Jupyter Notebook to basically dump and modify anyone's databases, without authentication. Full admin access.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: