Slack wants you you know this privacy exploit is fine
Last week, after a call with the engineers on my team I wanted to send a message to two of the engineers at the same time - little did I know I’d find what I believe to be a nasty privacy exploit in Slack • one that made me ask “Why is this even a feature?”
Like any good responsible software engineer, instead of taking to social media or forums to post about the exploit - I opted to report it to HackerOne • where Slack accepts reports of potential security exploits. After giving a detailed list of instructions on how to achive it (Report #2171907).
评论
?
参与讨论