So the .env file was in the electron desktop app which the hacker extracted and exploited the token?

Sign up to discover human stories that deepen your understanding of the world.

Free

Distraction-free reading. No ads.

Organize your knowledge with lists and highlights.

Tell your story. Find your audience.

Membership

Read member-only stories

Support writers you read most

Earn money for your writing

Listen to audio narrations

Read offline with the Medium app

Muneeb Alam Khan
Muneeb Alam Khan

Written by Muneeb Alam Khan

Testing web & mobile applications.

Responses (3)

Write a response

Yea, he found the token in .env file

Yea, he found the token in .env file

Can you tell how he extracted a desktop app? I am interested to know the tool or method