Remix.run Logo
▲ helterskelter2 4 hours ago

> distinguish between compromising a network and using public apis in a way that might be counter to their intent.

I believe weev got in legal trouble under the CFAA for this very thing with his 2010 AT&T escapade. AT&T had all that data sitting on a public server with no authentication necessary, just a SIM ID to get that customer's PII. Truthfully AT&T should have been hit with negligence...you don't secure a bank vault with a screen door, but we don't hold anyone accountable for other people's data in America.