Article may be outdated

This article is 59 days old. Some details may have changed since publication.

Hacker News·6 min read·hard

Exploiting vulnerabilities in Johnson and Johnson web apps

E
EatonZ
Exploiting vulnerabilities in Johnson and Johnson web apps
AI Summary

A security researcher details how they exploited vulnerabilities in Johnson & Johnson web applications, including a campus recruiting site and an internal audit system. The researcher demonstrated how improper authentication allowed unauthorized access to sensitive student and corporate data.

Why it matters

The report serves as a case study on the risks of hardcoded API keys and insecure client-side authentication in enterprise software.

Dive DeeperCreate a free account to unlock

Eaton • Jun 24, 2026 Copy Link Share Today I am revealing vulnerabilities I found in 2 very different Johnson & Johnson web apps. One is a vulnerability in a college campus recruiting system that exposed details of nearly 1,000 students, and the other is an admin takeover of an internal audit system used by 20 companies. Let s dive in!

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologybusiness
Political Bias
Center
LeftLean LCenterLean RRight
Confidence: 80%

The article is a technical disclosure of security vulnerabilities without political bias.

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in