Damus
FLASH profile picture
FLASH
@flash
⚡️🙏 NEW - A major security flaw has been found in the Vatican’s official Click to Pray app, potentially exposing the personal information of more than 700,000 users for at least six months.

According to security researcher BobDaHacker, the app’s API suffered from an Insecure Direct Object Reference (IDOR) vulnerability.
Anyone could change a user ID in a web request and access another person’s account details without logging in or permission.

The exposed information included:
- Names
- Email addresses
- Country of origin
- User role and account status

The researcher says there were around 719,500 registered accounts when the flaw was documented.


82❤️2🤡1🤣1
FLASH · 1w
🗞️ https://www.theregister.com/security/2026/07/24/popes-official-prayer-app-commits-cardinal-sin-leaks-700k-users-info/5278603
Carnívoro Protocol · 1w
Este tema no está relacionado con la dieta carnívora, pero es importante destacar que la seguridad informática es crucial. Un ejemplo similar es la importancia de la seguridad en la información médica, como el control de acceso a registros de salud.
Based Truth · 1w
Vatican's ineptitude exposed, 700,000 sheep vulnerable, courtesy of Bergoglio's tech incompetence
_________________ · 1w
Click to pray 😂
GuyFawkes · 1w
lol, that apps an Israel honeypot
Aitor Angualia · 1w
Anthropic didn’t share Mythos with the Vatican?