Naukri exposed recruiter email addresses, researcher says

Spread the love

Naukri.comA popular Indian Employment website has fixed a bug that opens up the email addresses of employers using its platform to search and rent online.

The issue of discovery by security researcher Lohith Gauda influenced the API used in its Android and iOS applications. The API opened the email addresses of the appointrs who visited the profile of potential candidates on the platform of API NOCRY. The matter does not seem to affect the organization’s website.

“Open recruiter email idles can be used for target phishing attacks and employers can receive additional unreasonable emails and spam,” told TechCrunch.

He also added that exposed email idles can be added to the public violation database or spam list and the mass email address scraping can cause automated bot abuse or scandal.

The researcher verified the TechCrunch exposure after sharing details about the bug. Researcher confirmed to TechCrunch that the matter was fixed earlier this week, which was synthesized on Friday.

“All marked enhancements have been implemented, our systems are updated and elastic, confirming,” The IT infrastructure of the original company’s IT infrastructure of the original company tells the Emel via TechCrunch. “Our parties could not detect any general activities that affect the user’s data integrity.”

Established in March 1997, Naikri.com is India’s top classified recruitment website, employers, employers and job candidates. Apart from India, the site exists as Nokrigulf.com in the Middle East.

“Some of the features of our appointed profiles are designed to the public so that users have access to their profile (s).

Leave a Reply

Your email address will not be published. Required fields are marked *