• Taldan@lemmy.world
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    1
    ·
    1 day ago

    At least some of the negligence is on Google, for the atrocious default security settings in Firebase

    The vulnerability is called hospital gown because they leave the back end wide open by design. It’s not even a traditional vulnerability, since it’s technically working as intended

    • Echo Dot@feddit.uk
      link
      fedilink
      English
      arrow-up
      7
      ·
      24 hours ago

      In fairness if you leave Firebase in its default settings it won’t shut up about it.

      You get warnings on the website, and constant emails telling you that you’re being a pillocked.