Monday, January 5, 2015

Moonpig's poor security

Their API allowed blind queries to lookup data, no authentication required.