# One Empty Header to Admin: How an Auth Bypass Breaks OpenBullet2 Page: https://stenobird.com/podcast/cybersecurity-tech-brief-by-hackernoon-6365646/one-empty-header-to-admin-how-an-auth-bypass-breaks-openbullet2 Text version: https://stenobird.com/podcast/cybersecurity-tech-brief-by-hackernoon-6365646/one-empty-header-to-admin-how-an-auth-bypass-breaks-openbullet2.md Podcast: [Cybersecurity Tech Brief By HackerNoon](https://stenobird.com/podcast/cybersecurity-tech-brief-by-hackernoon-6365646) Published: 2026-06-07T16:00:31+00:00 Episode link: https://share.transistor.fm/s/e24042d3 Audio file: https://media.transistor.fm/e24042d3/a231cb20.mp3 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/cybersecurity-tech-brief-by-hackernoon-6365646/episodes/one-empty-header-to-admin-how-an-auth-bypass-breaks-openbullet2 Duration seconds: 517 ## Resource This story was originally published on HackerNoon at: https://hackernoon.com/one-empty-header-to-admin-how-an-auth-bypass-breaks-openbullet2 . Five vulnerabilities in OpenBullet2: an empty API key, path traversal, RCE, and an NTLM hash leak. Check more stories related to cybersecurity at: https://hackernoon.com/c/cybersecurity . You can also check exclusive content about #ethical-hacking , #rce , #exploit , #openbullet2 , #what-is-openbullet2 , #openbullet2-explained , #vulnerabilities , #cybersecurity-awareness , and more. This story was written by: @vognik . Learn more about this writer by checking @vognik's about page, and for more stories, please visit hackernoon.com . This article walks through 5 CVEs: an empty X-Api-Key header that bypasses authentication by default, arbitrary C# and script-file execution, a wordlist path traversal granting arbitrary file read/write/delete as root, and an NTLMv2 hash leak on Windows. ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/cybersecurity-tech-brief-by-hackernoon-6365646/episodes/one-empty-header-to-admin-how-an-auth-bypass-breaks-openbullet2/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/cybersecurity-tech-brief-by-hackernoon-6365646/one-empty-header-to-admin-how-an-auth-bypass-breaks-openbullet2.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.