Hacking a pharmacy to get free prescription drugs and more
Summary
The article recounts a security research disclosure of insecure super admin APIs in Dava India Pharmacy’s website, which could have allowed full back-end access, data exposure, and manipulation of products and coupons. It notes CERT-IN involvement, a fix timeline, and emphasizes the importance of secure admin endpoints and responsible disclosure in healthcare-related e-commerce platforms.