The Internet Archive hackers still have access to its internal emailing tools

    3
    0
    The Internet Archive hackers still have access to its internal emailing tools


    It’s dispiriting to see that even after being made aware of the breach 2 weeks ago, IA has still not done the due diligence of rotating many of the API keys that were exposed in their gitlab secrets.

    As demonstrated by this message, this includes a Zendesk token with perms to access 800K+ support tickets sent to info@archive.org since 2018.

    Whether you were trying to ask a general question, or requesting the removal of your site from the Wayback Machine—your data is now in the hands of some random guy. If not me, it’d be someone else.

    Here’s hoping that they’ll get their shit together now.



    Source link

    LEAVE A REPLY

    Please enter your comment!
    Please enter your name here