Leaking sensitive files on Github leads to internal files (python scripts,SQL files)
Critical
S
Starbucks
Submitted None
Team Summary
Official summary from Starbucks
@samidrif discovered a source repository containing sensitive and internal development information including Starbucks code and documentation. @samidrif delivered a quality report detailing his find, suspected impact, and suggestions for remediation. The repository was removed and necessary remediations performed quickly, however the ticket remained open while we completed additional work. Thank you @samidrif for the solid research!
Actions:
Reported by
xsam
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Information Disclosure