juvodu.bsky.social
@juvodu.bsky.social
Scary to see the impact a wrong Java Spring configuration. A heap dump endpoint was exposed publicly by Volkswagen (VQ), which basically means everything that is temporary stored in memory can be accessed by the attacker as well, including AWS credentials and geo location of million of cars.
38C3 - Wir wissen wo dein Auto steht - Volksdaten von Volkswagen
Bewegungsdaten von 800.000 E-Autos sowie Kontaktinformationen zu den Besitzern standen ungeschützt im Netz. Sichtbar war, wer wann zu Hause parkt, beim BND o...
www.youtube.com
January 4, 2025 at 8:53 AM
🚀 From zero Python knowledge to a working app in hours.

Check out my experience and the lessons learned about AI-assisted development and why the outcome is useful to other Substack readers too.

open.substack.com/pub/juriadam...

#AI #programming #Windsurf #Python
From Substack Overflow to Smart Insights
How AI helped me build an article summarizer in a programming language I had never used before
open.substack.com
December 30, 2024 at 7:01 PM