https://timesofmalta.com/articles/view/we-wanted-help-students-arrested-exposing-freehour-security-flaw.1024757

24 comments
  1. IMV this was a case of responsible disclosure as they did not share the information with third parties and shouldn’t be charged.

  2. Freehour should be ashamed and reimburse the students for their time and all they went through.

    Should have thanked them and given them a token prize instead of showing us how stupid they are publicly.

  3. I’m not a student anymore but if I still were, the app would get instantly deleted and would encourage my peers to do the same. Disgusting.

  4. strip searched – what in the everlasting fuck are you expecting to find crammed up their poop hole in an open/shut case case like this – where the owner is clearly shifting the spotlight instead of owning the breach. Come down hard on the little guy while the pigs are out making a right old mess. They wonder why our youth are leaving this pig sty of a country – there you go.

  5. I am glad i don’t use their app. Having people work on their own free time. Figuring out problems and then reporting them and your reward to them is calling the police. That is just a new type of idiocy.

  6. “can we get a reward for helping finding this issue please”

    “CrImInAlS”

    What the heck. They tried to help. I find their request to be reasonable imo. They just asked for a reward

  7. Malta Police Force Reaction to reports:

    Car bombs, Smuggling of drugs, oil and people, corruption at highest level – Uejja come on.

    Vulnerability disclosure to private company – xinu? Alla, GO GO GADGET

  8. We’re talking about students that found a potential data leak and they told them. I don’t understand why Freehour reported on it, they coupd have helped potentially fix the issue. But I don’t think Freehour spoke anything about it yet, it’s certainly not their fault that they got strip searched, I blame that on the police and government.

    All I can think of is how an app that “serves” mostly students are so improper to their own target audience. Maybe students should boycott the app, at the end of the day their data could have been leaked, or already happened even prior to the students finding out.

    Hopefully Freehour tries to free their name, but that’s how I see it at the moment.

    Hopefully Freehour tries to free their name, but that’s how I see it at the moment.

  9. With the way these students have been treated I’ve deleted my account and removed this app from my phone.

    A serious data breach could have happened if these guys didn’t point out the vulnerability. Given that this app is used by post-compulsory education students, both minors and adults were at risk.

    This company is a disgrace. The vulnerability could have easily been exploited for a good sum of money by giving this information to someone with ill intentions. However these students did the right thing and approached the company about it to bring it to their attention. They had every right to ask for compensation, especially considering that there’s a team of developers out there who are being paid a salary and aren’t doing their job properly!

    This ‘CEO’ guy has potentially ended any form of career for them. They did the right thing, you FreeHour are in the wrong! Shame on you.

  10. The police are fucking retards, it’s a private security firm at this point. Keep proving all the venom against you true. Zach Ciappara, however, deserves to have an external harddrive shoved up his ass.

    These reactions shape how people will behave in the future. The more you prosecute people with good intentions, the more people will think twice about being good in the future. Thank you Zach for making Malta just that little bit worse through your idiocy or arrogance.

  11. Meanwhile, pricks who siphoned off millions of taxpayers’ money are running scot-free. A murderer gets time off from prison to attend a family function. You couldn’t make it up even if you wanted to!

  12. I’m glad I don’t follow them anymore. After that dystopian “event” they did with the money balloon at Campus Hub and now this, not to mention their super stale “comedy” posts.

  13. Maybe a class action lawsuit against Freehour should be opened for recklessly endangering thousands of users’ data.

  14. Just uninstall the app in a show of solidarity with these students. They did not deserve this treatment and the situation could have been handled much better. The CEO could have at least replied to them and expressed his thanks for finding such a flaw and informing his company about it but I am not aware that this happened, which shows that they were not grateful for the act

Leave a Reply