February 10, 2023
Sin comentarios
The affected infrastructure is called GSPIMS and is a web application that allows employees and suppliers to manage the supply chain globally. A researcher, who wishes to remain anonymous, has discovered a backdoor in these systems that allows access to the portal with, simply, an email account.
En sus pruebas, The investigator has managed to access numerous confidential documents, internal projects, supplier data and more critical information. Toyota, for its part, confirms that they solved this last 23 November.
The worrying thing about the matter is that a malicious actor could have accessed critical Toyota information and copied the information without altering it.
Fountain: Bleeping Computer