Campaign Gaffe: How a Voter Contact App Exposed Credentials and Code

Cybersecurity firm UpGuard has identified publicly-exposed access codes for Campaign Sidekick, a current Republican Party voter contact, survey, and canvassing app. The codes were within a .git directory, configured for public access and sited on Campaign Sidekick’s website. The compromised information dates back to November 2016, and includes access codes for another political firm, Voter Gravity.