Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…

Minha rede social é segura?

0
Medium
Security-newscybersecurityreddit
Published: Sat Jun 13 2026 (06/13/2026, 23:08:17 UTC)
Source: Reddit Cybersecurity

Description

This is a discussion post on Reddit linking to a personal project: a rudimentary social network called FakeCity hosted at javanunes.com/social. The project is in beta and the author requests security advice. The site stores login credentials in cookies and publicly displays user IP addresses. No specific vulnerabilities or exploits are detailed.

Reddit Discussion

r/cybersecurity·posted by u/JavaNunes
00

Boa noite amigos!
Estou fazendo um trabalho para a apresentar na minha faculdade sobre segurança em sites, decidi construir uma rede social rústica do zero e gostaria de saber que dicas sobre segurança para vocês me darem, o projeto está no ar aqui.
A rede ainda está em fase beta e está hospedada em https://www.javanunes.com/social/

Obrigado!

Links cited in this discussion

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 06/13/2026, 23:39:23 UTC

Technical Analysis

The provided information describes a personal, beta-stage social network project named FakeCity. The author seeks community input on security best practices but does not disclose any concrete security flaws or incidents. The site uses cookies to store login credentials and publicly reveals user IP addresses, which may raise privacy concerns. No technical vulnerability or exploit data is presented.

Potential Impact

No explicit security vulnerabilities or exploits are reported. The public display of IP addresses and storage of login credentials in cookies could pose privacy and security risks if not properly secured, but no confirmed impact or exploitation is described.

Mitigation Recommendations

No official patch or remediation is indicated. Since this is a personal project seeking advice, recommended mitigations would be to avoid storing sensitive credentials in cookies without proper security flags, and to reconsider publicly displaying user IP addresses. However, no urgent action is mandated by a vendor advisory.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Source Type
reddit
Subreddit
cybersecurity
Reddit Score
0
Discussion Level
minimal
Content Source
reddit_link_post
Post Type
link
Domain
null
Newsworthiness Assessment
{"score":27,"reasons":["external_link","established_author","very_recent"],"isNewsworthy":true,"foundNewsworthy":[],"foundNonNewsworthy":[]}
Has External Source
true
Trusted Domain
false

Threat ID: 6a2dea26e617e2d8345928c4

Added to database: 6/13/2026, 11:39:18 PM

Last enriched: 6/13/2026, 11:39:23 PM

Last updated: 6/14/2026, 4:46:31 AM

Views: 9

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses