API Misuse: Hacker Leaks 2.6M Duolingo Users' Emails & Names

111@zerobytes.monster to Technology@lemmy.ml – 133 points –
API Misuse: Hacker Leaks 2.6M Duolingo Users' Emails & Names
hackread.com
11

You are viewing a single comment

I'd call this API misdesign instead

The worst is they paint it as "not a real leak" or "not a security issue" when it's even worse than that.