Security researcher Seif Elsallamy discovered a flaw in Uber’s systems that enables anyone to send emails on behalf of Uber.
These emails, sent from Uber’s servers, would appear legitimate to an email provider (because technically they are) and make it past any spam filters.
The researcher who discovered this flaw warns this vulnerability can be abused by threat actors to email 57 million Uber users and drivers whose information was leaked in the 2016 data breach.
Bijay Pokharel
Bijay Pokharel is the Founder and Editor-in-Chief of Abijita, an independent technology and cybersecurity news publication established in 2017. A specialist in cybersecurity journalism, Bijay covers vulnerability research, malware analysis, enterprise data breaches, digital privacy, and emerging technologies. His work translates complex technical threats into precise, accessible, and actionable intelligence for security professionals and general readers alike. His reporting and investigative coverage are routinely cited and republished across leading technology and security media.



