6

Vulnerability Mediation – When Things Go Wrong and Who Can Help

In the summer of 2021, German researcher Lilith Wittmann found herself entangled in a criminal investigation after disclosing security findings. The ruling political party of Germany at the time, the Christian Democratic Union (CDU), was using mobile applications to collect public opinion information for an upcoming election. With her organization, the Chaos Computer Club (CCC), Wittmann responsibly disclosed the vulnerability to the CDU, the Federal Office of Information Security, and the Berlin Data Protection Commissioner. Wittmann claimed that the vulnerability was so simple it was difficult to even call it a hack. The vulnerability exposed data on half a million German citizens ...

Get The Vulnerability Researcher's Handbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.