Insurance website's buggy API leaked Office 365 password
Briefly

"This caught my eye because this was a client-side email sending mechanism," he wrote in a post describing his findings.
"Not only did the email successfully send, it came back with a server error that revealed an email sending log."
Read at Theregister
[
add
]
[
|
|
]