Comment Great article (Score 1) 5
I agree that the bug could have allowed an attacker to generate an account authorization token for any user with just their last name and rewards number. Therefore, we should have effective solutions to prevent hackers