Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
|
Many have businesses in both adult and mainstream. Come here to discuss your mainstream business, find new traffic opportunities, new programs to promote, and more! Whether you are in the FOREX, dating, gambling, gaming, herbal products, blogging, or any other mainstream business this forum will take your business to the next level! |
|
Thread Tools |
07-27-2023, 04:43 PM | #1 |
Confirmed User
Industry Role:
Join Date: Oct 2014
Posts: 15
|
epoch security breach
today we received a nice letter from an "independent cyber security researcher" and the person informed us about "a vulnerability" in our "payment gateway" which leaks the full information of db, ftp etc.
the person also told us that there is an "idor vulnerability" / "PII leak" on epoch website which leaks explicit data "because they didn't have an audit on their web apps and now this major data leak because of not following security standards", data are simply not encrypted. we can consider ourselves lucky because the data concerning us was for a test system that does not contain any real data. the person also provided us a proof of concept with all the explicit data to this test system which we had entered on the epoch merchant backend. it is certainly conceivable that not only merchant/platform data is/was visible here, but also end customer data that process their bookings with epoch payment methods. good luck |