💻
💻 Technology

MOL app flaw gave anyone employee-level access — company ignored the report

A security researcher found a serious flaw in the MOL fuel company's mobile app that allowed anyone to impersonate a petrol station employee. A responsible-disclosure report sent to the company was ignored. The vulnerability is especially concerning given EU NIS2 and Polish KSC2 regulations, which require companies to maintain effective vulnerability reporting channels.

Comments

No comments yet