Bug in jury systems used by several US states exposed sensitive personal data | TechCrunch
News Source : TechCrunch
News Summary
- Security researcher identified at least a dozen juror websites made by government software maker Tyler Technologies that appear to be vulnerable.
- The sites are all over the country, including California, Illinois, Michigan, Nevada, Ohio, Pennsylvania, Texas, and Virginia.
- To log into these platforms, a juror is provided a unique numerical identifier assigned to them, which could be brute-forced since the number was sequentially incremental.
- The platform also did not have any mechanism to prevent anyone from flooding the login pages with a large number of guesses.
Several public websites designed to allow courts across the United States and Canada to manage the personal information of potential jurors had a simple security flaw that easily exposed their sensit [+3858 chars]
Never miss a story from us, subscribe to our newsletter