Get the latest tech news

How a mistakenly published password exposed Mercedes-Benz source code


Mercedes accidentally exposed a trove of sensitive data after a leaked security key gave “unrestricted access” to company’s source code.

Mercedes-Benz accidentally exposed a trove of internal data after leaving a private key online that gave “unrestricted access” to the company’s source code, according to the security research firm that discovered it. The London-based cybersecurity company said it discovered a Mercedes employee’s authentication token in a public GitHub repository during a routine internet scan in January. Mittal provided TechCrunch with evidence that the exposed repositories contained Microsoft Azure and Amazon Web Services (AWS) keys, a Postgres database, and Mercedes source code.

Get the Android app

Or read this on TechCrunch

Read more on:

Photo of Mercedes-Benz

Mercedes-Benz

Photo of published password

published password

Photo of Benz source code

Benz source code

Related news:

News photo

Luminar teams with Mercedes-Benz and debuts automated emergency steering

News photo

Mercedes-Benz taps Will.i.am to create an ‘interactive musical experience’ for its cars

News photo

Mercedes-Benz debuts turquoise exterior lights to indicate the car is self-driving | A visual indicator for other drivers