
Just tried it by entering random numbers (4 &5 digits) no surprise that most of the names that appear are Kenyans with Asian origin :) It is easily possible to whip out a script and harvest out all the phone numbers + the names from the results. I hope someone from Zuku is listening. On 26 February 2015 at 01:26, Brian Ngure via skunkworks < skunkworks@lists.my.co.ke> wrote:
So no reprieve for those on R50 :)
By the way, anyone used their free wifi spots? I checked out the sign up page and smiled. They ask you to enter your account number (someone can guess any account number, I tried) and then display some information with the phone number hashed out 07xxxxx000. They then display a form clearly showing the full phone number. Can you spell pointless??? Clearly whoever designed this site/page for Zuku has no clue about security.
-- Regards, @njukey