this post was submitted on 17 Jun 2026
42 points (100.0% liked)
Technology
85539 readers
3144 users here now
This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
- Only tech related news or articles.
- Be excellent to each other!
- Mod approved content bots can post up to 10 articles per day.
- Threads asking for personal tech support may be deleted.
- Politics threads may be removed.
- No memes allowed as posts, OK to post as comments.
- Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
- Check for duplicates before posting, duplicates may be removed
- Accounts 7 days and younger will have their posts automatically removed.
Approved Bots
founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
If the organisation does not respond to the issue for over 100 days, then advising users of how insecure the system is, and that the organisation refuses to fix it, seems like a fairly responsible thing to do.
Yes. But he also disclosed HOW to abuse it. Which means everyone on the Internet now has access to all that information on everyone currently in Frontier’s system.
He could have just published the general type of exploit they were sitting on and notified their payment processor and the government with the details.
Instead he outlined to everyone how to access the information and what information was available, and how it could all be chained together.
they'll have this cleaned up in no time, stuff like this happens frequently in cybersecurity. I guarantee you that now this has gone viral, they've probably secured the API on their end