Armitage Archive

Highlight from ServiceNow Quietly Addresses Unauthenticated Data Exposure Flaw From 2015

After the research started attracting attention last week, ServiceNow quietly released a second fix for the issue that set all blank ACLs to disallow public access by default.