Security boffin claims airport group left API keys in client-side Jav… | HappeningNow.news

Technology · 62 views

Security boffin claims airport group left API keys in client-side JavaScript for four years

Researcher believes overprivileged Iterable creds exposed 8.8M customer records – and could have enabled mass deletion Security researcher Scott Helme says his analysis supports FulcrumSec's claim that Manchester Airports Group (MAG) exp…

Source AI Summary Published 3h 01m ago Brief Under 1 min brief
Story intelligence
Coverage Single outlet Single-outlet story
Views 62 Community interest
Brief read Under 1 min brief 49 words

AI Summary

Security researcher Scott Helme says his analysis backs FulcrumSec’s claim that Manchester Airports Group left privileged API keys in client‑side JavaScript, exposing the credentials for four years. The over‑privileged keys, tied to the Iterable service, could have allowed access to 8.8 million customer records and potentially enabled mass deletion.

AI summaries can be wrong sometimes—always verify important details using the source article.

How AI & Automation are used
Read original at The Register

Coverage Context

Part of Javascript coverage 47 tracked stories

More from Technology

Continue reading recent Technology coverage

Support HappeningNow

Independent AI-powered news analysis is reader-supported. Your contribution helps cover infrastructure, summaries, and continued platform development.

Support HappeningNow

Report an issue with this page