Auth Problems from Parsing, Slack's Password Hashes, Twitter's Info Breach - ASW #207

Published: Aug. 10, 2022, 9 a.m.

b'

Nextauth.js account takeover due to parsing flaw, URL parsing flaw in Go\'s net/url, another path traversal, Slack exposes password hashes (whaaat!?), Twitter exposes 5.4 million accounts, ransomware and research against PyPI and GitHub, videos from fwd:cloudsec 2022.

\\xa0

Visit https://www.securityweekly.com/asw for all the latest episodes!

Show Notes: https://securityweekly.com/asw207

'