Get the latest tech news

How a mistakenly published password exposed Mercedes-Benz source code


Mercedes accidentally exposed a trove of sensitive data after a leaked security key gave “unrestricted access” to company’s source code.

Mercedes-Benz accidentally exposed a trove of internal data after leaving a private key online that gave “unrestricted access” to the company’s source code, according to the security research firm that discovered it. Shubham Mittal, co-founder and chief technology officer of RedHunt Labs, alerted TechCrunch to the exposure and asked for help in disclosing to the car maker. Mittal provided TechCrunch with evidence that the exposed repositories contained Microsoft Azure and Amazon Web Services (AWS) keys, a Postgres database, and Mercedes source code.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Mercedes-Benz

Mercedes-Benz

Photo of published password

published password

Photo of Benz source code

Benz source code

Related news:

News photo

Mercedes-Benz accidentally shared its source code and business secrets with the whole world | A perplexing human error put the German carmaker's IT security at risk

News photo

A mishandled GitHub token exposed Mercedes-Benz source code

News photo

Mistakenly Published Password Exposes Mercedes-Benz Source Code