Avon Server Leaks User Info and Administrative Data

A research team at SafetyDetectives has discovered an unprotected server for direct-sales beauty company Avon and found more than 7GB of data, including more than 19 million records, open and available with no authorization required. The information on the server included both critical details about individuals and administrative data, such as OAuth tokens and administrative user names.

Read full article on Dark Reading



