h1-202 leaderboard photo discloses local wifi password

Disclosed: 2018-03-25 21:33:50 By 0x0g To security
Medium
Vulnerability Details
**Summary:** the h1-202 event took several photos for the event that rotate on the *public* leaderboard. One of these photos disclosed the local wifi SSID and Password. **Description:** SSID: HackerOne Password: █████████ ### Steps To Reproduce 1. Look at the photo attached ### Remediation Have your staff photographer revie the background for photos to not disclose passwords. ## Impact Local attackers could connect to the wifi and sniff any unencypted traffic, as well as DoS the network (potentially).
Actions
View on HackerOne
Report Stats
  • Report ID: 329798
  • State: Closed
  • Substate: resolved
  • Upvotes: 144
Share this report