Github Security Flaw 221
Posts 1,467
Rep 184
Vouches: 32
Credits: 1,305
Bronze MedalToilet PaperSilver MedalGold MedalEarthHeartDemonVoid
Offline
OP01-26-2020, 09:26 PM
#1

So recently i have come accross a security flaw in githubs repositories system where it allows you to view ones personal account information such as real names/emails/onedrive users.
I am not going to disclose how to do such but i thought i would warn you guys.
It only affects people who have created their own repositories and this excludes forking someones repositories, so to stay safe make sure your github account is on an email you dont care about if it got leaked and remove all private/personal information on your account as it could leaked.

@Staff sorry if this is the wrong section idk where else you can put community alert prefixes

Posts 1,729
Rep 1,139
Vouches: 116
Credits: 2,325
Red NinjaTwitterInstagramBronze MedalGold MedalPalm TreeBronze CoinSilver CoinHalloweenSilver MedalGiftChocolate BunnyGold CoinRichestHustlerHigh RollerSilver NinjaCandy CaneApolloSun
Offline
01-26-2020, 09:27 PM
#2
this has been known for years its nothing new



dont have disc or any other social just pm onsite


dont have disc or any other social just pm onsite


dont have disc or any other social just pm onsite


dont have disc or any other social just pm onsite
Liked by: IRLDG, jukki
Posts 1,467
Rep 184
Vouches: 32
Credits: 1,305
Bronze MedalToilet PaperSilver MedalGold MedalEarthHeartDemonVoid
Offline
OP01-26-2020, 09:38 PM
#3
(01-26-2020, 09:27 PM)Callum Wrote:this has been known for years its nothing new

still useful for people to know if they already didnt

Posts 1,467
Rep 184
Vouches: 32
Credits: 1,305
Bronze MedalToilet PaperSilver MedalGold MedalEarthHeartDemonVoid
Offline
OP01-26-2020, 09:46 PM
#5
(01-26-2020, 09:39 PM)bird Wrote:.patch ?

thats it

Posts 1,467
Rep 184
Vouches: 32
Credits: 1,305
Bronze MedalToilet PaperSilver MedalGold MedalEarthHeartDemonVoid
Offline
OP01-26-2020, 09:54 PM
#7
(01-26-2020, 09:53 PM)bird Wrote:It's not a security flaw, it's an intended feature.

still lets you view users personal information



Users browsing this thread: 1 Guest(s)