Forum Moderators: open
Developer Paul Price revealed a massive security vulnerability in Moonpig's API this week, but before blowing the whistle Price claims to have contacted Moonpig about the problem way back in August 2013 -- and yet the company did nothing for 17 months. The vulnerability is likely to have been open to attack for even longer.Online Greeting Card Company Exposes Details of 3.6 Million Customers [cnet.com]