Slashdot Mirror


Snapchat Update Addresses Security Hole

Snapchat has released an update to address the security problems exposed recently by Gibson Security and subsequently (and quickly) exploited. From the article: "Snapchat also said researchers could email the firm at security@snapchat.com for any vulnerability discoveries. 'We want to make sure that security experts can get a hold of us when they discover new ways to abuse our service so that we can respond quickly to address those concerns. The best way to let us know about security vulnerabilities is by emailing us: security@snapchat.com,' Snapchat said."

4 of 58 comments (clear)

  1. Big lesson by Anonymous Coward · · Score: 5, Informative

    Pity that it took such a brutal action by GRC to change this companies point of view.

  2. NSA email by Anonymous Coward · · Score: 5, Funny

    To: security@snapchat.com
    From: NSAops@langly.gov

    Subject: Latest Snapchat security update

    We were using that you bastards!

  3. Caveat by StikyPad · · Score: 5, Funny

    ...adding that emails sent to that address would be deleted after 10 seconds.

  4. Re:Still one of the stupidest things of 2013. by cbhacking · · Score: 5, Insightful

    Don't be too sure of that. Purchasers routinely hire security experts to review the security of major acquisitions prior to the buy-out, with various stipulations in the agreement as to what types of findings will be the responsibility of which party. Such a review would likely have found the issue before it was announced publicly.

    So few companies are smart enough to bring in security experts *before* they need them.

    --
    There's no place I could be, since I've found Serenity...