Backend Vulnerabilities of Snype Expose User Information - Alleged Probstein Shill Bidding

From the other thread, the issues I found and have talked about were limited to the email and phone number of people who did certain actions on the site or are in certain positions. The data came back through the HTTP calls made by the app itself which is then visible to me because the data is stored on my browser, “client-side”, so it’s as passive as it can be, they sent me this data themselves.

However, the data from this thread is much more expansive than what I found. I’m aware of certain techniques that could have potentially been utilized to get this expanded data set but I am not willing to verify myself as that may turn my passive position to an active one. Actively intruding onto their systems may carry different ramifications which I am not risking.

This is a big block of text to essentially just say “I also don’t make any direct claim about the validity of this information”.

2 Likes