? 78x FINNAIR WORKER DATA ?
by Fumentazo - Saturday June 8, 2024 at 10:38 PM
#1
A year ago, I discovered a security vulnerability in the sales personnel panel of Finnair, a Finnish airline company. The flaw was in the authentication logic, where several sales personnel panel sites failed to enforce proper login checks. Using this, I was able to access the sales administrator panel and extract information for 78 employees, including their First Name, Last Name, Email Address, Work Level, and Password Hash. The passwords were stored as easily crackable MD5 hashes.
Samples:
Thibaud;Rohmer;thibaud.rohmer@finnair.com;sysadmin;90a3ed9e32b2aaf4c61c410eb925426119e1a9dc53d4286ade99a809

Heidi;Pajari;heidi.pajari@finnair.com;sales;90a3ed9e32b2aaf4c61c410eb925426119e1a9dc53d4286ade99a809
(Some passwords are the same for some reason)

Link:
Hidden Content
You must register or login to view this content.


This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Self-Ban | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you wish to be unbanned in the future.
Reply
#2
Thanks a lot for the post
Reply
#3
Nice work bud, thank you.
Reply
#4
Thx, just gonna look up for some.
Reply
#5
post for the content
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  COLLECTION 14M Facebook.com ULP rennn 14 848 2 hours ago
Last Post: AlexDoe
  DOCUMENTS SANS Institute - SEC670 Red Teaming Tools - Developing Custom Tools for Windows Tamarisk 28 3,583 3 hours ago
Last Post: hexaagent00
  DOCUMENTS [USA] CONFIDENTIAL Lockheed Martin / US ARMY RFID/WIRELESS CONNECTION MANUALS jrintel 41 4,279 3 hours ago
Last Post: hexaagent00
  COLLECTION [exploitpack.com] ALL Exploit Leaked ! Spearr 509 27,971 3 hours ago
Last Post: evil_quiddity
  NEAR EAST UNİVERSİTY SMTP karahanli31 1 693 3 hours ago
Last Post: FEETENJOYER237

Forum Jump:


 Users browsing this forum: 1 Guest(s)