this post was submitted on 28 Jul 2025
18 points (95.0% liked)
Hacker News
2200 readers
300 users here now
Posts from the RSS Feed of HackerNews.
The feed sometimes contains ads and posts that have been removed by the mod team at HN.
founded 10 months ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Identifying and responsibly disclosing security flaws is legal; publicly exploiting them is not.
The app is dumb and whoever developed it was beyond irresponsible, but the people involved in leaking the images & info they found aren’t innocent either.
"Security Flaws" implies that there was some attempt to restrict access that could have been considered "security". They made no such attempt. Everything was openly provided to the general public.
Putting a big bowl of candy on your front porch during Halloween is an "invitation", not a "security flaw".