Hey @VOXI_UK! There’s a security #vulnerability in your website. An attacker can (a) exfiltrate mobile numbers and (b) authenticate bypassing OTP.
Not sure who to talk to about ethical disclosure. Let me know?
Dan Q
Hey @VOXI_UK! There’s a security #vulnerability in your website. An attacker can (a) exfiltrate mobile numbers and (b) authenticate bypassing OTP.
Not sure who to talk to about ethical disclosure. Let me know?
Hey Dan. Thanks for bringing this to our attention, can you please drop us a DM so we can take a further look into this? This can also be reported on the link here – vodafone.com/about-vodafone… 🙂 Liam
Read more →
Thanks; I’ve filed a report now.