Everybody makes mistakes at work but, leaving the no-fly list exposed on the internet seems like a really bad mess-up.
That's reportedly what happened with the U.S. airline CommuteAir. The Daily Dot reported that a Swiss hacker known as "maia arson crimew" found the unsecured server while using the specialized search engine Shodan. There was apparently a lotof sensitive information on the server, including a version of the no-fly list from four years ago. Somewhat hilariously that was reportedly found via a text file labeled "NoFly.csv." That is...not hard to guess.
A blog post from crimew titled "how to completely own an airline in 3 easy steps" cited boredom as the reason for finding the server. They were just poking around and found it.
"At this point, I've probably clicked through about 20 boring exposed servers with very little of any interest, when I suddenly start seeing some familiar words," crimew says in their blogpost. "'ACARS', lots of mentions of 'crew' and so on. Lots of words I've heard before, most likely while binge-watching Mentour Pilot YouTube videos. Jackpot. An exposed jenkins server belonging to CommuteAir."
Tweet may have been deleted
CommuteAir, a regional US airline headquartered in Ohio, confirmed the info on the server was authentic to the Daily Dot. The server has been taken offline.
"The server contained data from a 2019 version of the federal no-fly list that included first and last names and dates of birth," CommuteAir Corporate Communications Manager Erik Kane told the Daily Dot. "In addition, certain CommuteAir employee and flight information was accessible. We have submitted notification to the Cybersecurity and Infrastructure Security Agency and we are continuing with a full investigation."
The info from the server has already been poured over, with some researchers saying it shows how the list is heavily biased against Muslim people. According to Daily Dot, while there is no official number to how many names are on the no-fly list, Sen. Dianne Feinstein (D-Calif.) suggested in 2016, that over 81,000 people were on the list.
TopicsCybersecurity
(责任编辑:娛樂)
Olympian celebrates by ordering an intimidating amount of McDonald's
Dude tries to crowdfund a $15,000 engagement ring. Internet says, 'Nope!'
There's been a big victory for LGBTQ workers in the fight against discrimination
Blind 'Street Fighter' player wins his first tournament match
PlayStation Now game streaming is coming to PCPlane makes emergency landing after engine rips apart during flight
A Southwest Airlines flight bound for Orlando, Florida, made an emergency landing Saturday morning d
...[详细]Calvin Harris, Ariana Grande, Young Thug and Pharrell demand you have fun on 'Heatstroke'
Calvin Harris is a pragmatist, and that why he has crafted a technically perfect Song of the Summer
...[详细]I made an exact replica of Donald Trump in 'The Sims 3' and a lot of wild things happened
Donald Trump is nothing if not unpredictable. Does he love Paul Ryan? Does he want the Speaker of th
...[详细]One lonely filmgoer helped Shia LaBeouf's movie make a record $8 at the UK box office
Hands up: Who's seen the latest Shia LaBeouf movie Man Down? You know, the messy war drama that the
...[详细]Nate Parker is finally thinking about the woman who accused him of rape
Nate Parker is getting a crash course in male privilege after, in his own words, not thinking about
...[详细]
Being diagnosed as cancer-free is absolutely something to celebrate, so why not honor this milestone
...[详细]If you want to listen to hot new albums on Spotify, it's time to pay up
All good things must come to long, brutal, contractually negotiated end.Spotify announced on Tuesday
...[详细]Tesla delivered a record number of cars as demand for Model X rises
Tesla's Model X SUV is catching up to its sedan-sized sibling, the Model S.According to Tesla's prod
...[详细]'The Flying Bum' aircraft crashes during second test flight
Airlander 10, the world's largest aircraft, on Wednesday crashed at its Cardington Airfield base in
...[详细]A big challenger is about to change the way you use Facebook to log in on websites
There are two ways to log in on websites: try to recall the email address and password you registere
...[详细]We asked linguists if Donald Trump speaks like that on purpose

Couple announces pregnancy in a perfect Bob Ross
