Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar Mark Forums Read
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Many have businesses in both adult and mainstream. Come here to discuss your mainstream business, find new traffic opportunities, new programs to promote, and more! Whether you are in the FOREX, dating, gambling, gaming, herbal products, blogging, or any other mainstream business this forum will take your business to the next level!

 
Thread Tools
Old 07-27-2023, 04:43 PM   #1
yens
Registered User
 
Industry Role:
Join Date: Oct 2014
Posts: 15
epoch security breach

today we received a nice letter from an "independent cyber security researcher" and the person informed us about "a vulnerability" in our "payment gateway" which leaks the full information of db, ftp etc.

the person also told us that there is an "idor vulnerability" / "PII leak" on epoch website which leaks explicit data "because they didn't have an audit on their web apps and now this major data leak because of not following security standards", data are simply not encrypted.

we can consider ourselves lucky because the data concerning us was for a test system that does not contain any real data. the person also provided us a proof of concept with all the explicit data to this test system which we had entered on the epoch merchant backend.

it is certainly conceivable that not only merchant/platform data is/was visible here, but also end customer data that process their bookings with epoch payment methods.

good luck
yens is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks

Tags
data, epoch, person, security, leaks, system, leak, explicit, test, vulnerability, payment, breach, proof, concept, entered, provided, real, received, merchant, process, customer, bookings, methods, luck, conceivable
Thread Tools



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright 2000- Jelsoft Enterprises Limited.