Vatican Prayer App Left 700,000 Faithful Exposed Through Basic Security Flaw
Executive Briefing
- Leaked data includes names and email addresses of over 700,000 registered users worldwide.
- Discovered by white hat hacker 'BobDaHacker' in January via an insecure API endpoint vulnerability.
- Exposed an IDOR flaw allowing any internet user to query personally identifying information freely.
- Affected users span nearly every country, plus active employees of the Pope's Worldwide Prayer Network.
Sponsored