• luciferofastora@feddit.org
    link
    fedilink
    English
    arrow-up
    5
    ·
    1 hour ago

    It’s exploiting a vulnerability (unsecured API) without permission of the gym running the software, to the detriment of whoever arrives and finds their reservation cancelled and probably also of the gym who now (unjustly) has to deal with the (justly) upset customer.

    The gym’s software should be secured better, but that doesn’t make it less of a hack.