New fancy restaurant opened in my neighborhood that's impossible to get reservations at, and they disabled their wait-list.
I found the API for the wait-list and a few curl commands later we've got dinner plans this evening
@chiproytx how is the suit that CFPB filed against SoLo any different from the spirit of the junk fees and Ticketmaster example you gave in the past?
The point of the suit was there were hidden fees by design despite saying the loans are free, which they werenβt.
I switched a button and removed the disabled flag, then I opened the network tab to copy as curl, then changed a few arguments and boom I was done.
Ezpz
Fantastic story here and hats off to the security team who are a part of it. Really great folks working over a Rippling on the engineering and security side of the house.
Rippling sued @Deel today. Our lawsuit alleges Deel cultivated a spy at Rippling & orchestrated a long-running trade-secret theft. The spy searched βdeelβ in our systems 23 times per day on avg, letting him spy on Deelβs own customers who were considering a switch to Rippling.
This Okta breach is notable because BeyondTrust, Cloudflare, and 1Password all detected this before Okta did.
How though? It looks like the threat actor may have been triggering Okta emails that tipped off the victims.
Maybe we'll hear from more?
blog.1password.com/files/okta-incβ¦