? 78x FINNAIR WORKER DATA ?
by Fumentazo - Saturday June 8, 2024 at 10:38 PM
#1
A year ago, I discovered a security vulnerability in the sales personnel panel of Finnair, a Finnish airline company. The flaw was in the authentication logic, where several sales personnel panel sites failed to enforce proper login checks. Using this, I was able to access the sales administrator panel and extract information for 78 employees, including their First Name, Last Name, Email Address, Work Level, and Password Hash. The passwords were stored as easily crackable MD5 hashes.
Samples:
Thibaud;Rohmer;thibaud.rohmer@finnair.com;sysadmin;90a3ed9e32b2aaf4c61c410eb925426119e1a9dc53d4286ade99a809

Heidi;Pajari;heidi.pajari@finnair.com;sales;90a3ed9e32b2aaf4c61c410eb925426119e1a9dc53d4286ade99a809
(Some passwords are the same for some reason)

Link:
Hidden Content
You must register or login to view this content.


This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Self-Ban | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you wish to be unbanned in the future.
Reply
#2
Thanks a lot for the post
Reply
#3
Nice work bud, thank you.
Reply
#4
Thx, just gonna look up for some.
Reply
#5
post for the content
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  CHINA NSCC SUPERCOMPUTING BREACH – 10+ PETABYTES OF CLASSIFIED MILITARY LEAK - 2026 BerryMark 11 2,177 1 hour ago
Last Post: L0giQ
  NEAR EAST UNİVERSİTY SMTP karahanli31 0 278 6 hours ago
Last Post: karahanli31
  DOCUMENTS Bank customers in France (IBAN) Slayy 20 3,409 Yesterday, 04:19 PM
Last Post: sensitivefr
  +250 IP CAM DUMP Noaharnaut 9 996 Yesterday, 03:23 PM
Last Post: hiritad448
  SOURCE CODE Brazilian IPTV Panel Source & Database MisterSam 40 5,877 Yesterday, 01:59 PM
Last Post: asaltro09

Forum Jump:


 Users browsing this forum: 1 Guest(s)