Browsing tag

Leaks

Telegram leaked IP addresses of its desktop app users

The vulnerability affected Telegram’s desktop app for Windows, Mac, and Linux OS. Telegram, a popular privacy-focused instant messaging application, reportedly contained a bug that can leak the IP addresses of users. Known for providing end-to-end encryption, Telegram’s desktop app has been discovered to be leaking not just public but private IP addresses of its users […]

11 million personal unprotected MongoDB records leaked online

Another day, another trove of sensitive data exposed online. This time, a MongoDB database containing a whopping 43.5GB of the dataset used in marketing campaigns has been left exposed for public access. The data was discovered by Bob Diachenko, an independent security researcher who noted that the database was available on an unprotected MongoDB hosted on Grupo-SMS hosting and […]

Medical records & patient-doctor recordings of thousands of people exposed

Another day, another trove of medical records leaked online, thanks to a misconfigured AWS S3 bucket. Medical records are considered to be sensitive documents and when a malicious third party has access to them it is a bad news as these records can be used for fraud, blackmailing and marketing purposes against patients’ will. However, […]

Misconfigured Tor sites using SSL certificates exposing public IP addresses

Tor is a browser known to keep the IP addresses of its users private and confidential due to which users can surf the web anonymously. However, according to RiskIQ’s threat researcher Yonathan Klijnsma, it is possible to identify the IP addresses of Tor users. Klijnsma states that misconfigured Dark Web servers are mainly responsible for […]

Sensitive data on 31,000 GoDaddy servers exposed online

All thanks to Unsecure AWS S3 Bucket. GoDaddy is the latest victim of cybercriminals and has joined the league of companies that got confidential data leaked due to unsecure Amazon S3 buckets. The world’s leading domain name registering platform, GoDaddy, boasts of more than 18m customers, which makes cyber-attack on this organization a high-profile feat. […]

Hacker leaks Snapchat’s source code on Github

Pakistani Hacker Posted Authentic Snapchat Source Code on GitHub – Snapchat’s source code is stolen…can there be a piece of bigger news than that? Perhaps there is! Not only that the source code has been stolen but also posted on Microsoft-owned GitHub of all the platforms. Reportedly, the hacker hails from a small village in Pakistan and […]

Exposed: 157 GB of sensitive data from Tesla, GM, Toyota & others

The IT security researchers at cyber resilience firm Upguard discovered a massive trove of highly sensitive data publically available to be accessed by anyone. The data belonged to hundreds of automotive giants including Tesla, Ford, Toyota, GM, Fiat, ThyssenKrupp, and Volkswagen – Thanks to a publically exposed server owned by Level One Robotics, a Canadian firm providing industrial automation services. The data […]

Worse than Equifax: Personal records of 340M people leaked online

Last year the credit reporting firm Equifax revealed how unknown hackers stole a personal data of over 143 million Americans – In another incident, sensitive data of 123 million American Households were leaked online. Now, Exactis, a Florida based marketing firm is being blamed for exposing personal information of over 340 million people online – The […]

Flaw in Google Home and Chromecast devices reveals user location

Craig Young, an IT security expert from Tripwire has found an unusual and potentially dangerous privacy flaw in Google Home and Chromecast devices leaking location data of their users. Simply put, the issue lets websites gather exact geographical location of users by running malicious scripts. Google, on the other hand, is aware of the issue and vows to fix […]

Misconfigured Google Groups Settings Leaking Sensitive Data

Kenna Security in collaboration with KrebsOnSecurity has identified the presence of a ‘widespread misconfiguration’ in Google Groups, which is causing exposure of sensitive emails from thousands of organizations including some Fortune 500 companies. Due to this misconfiguration, a variety of industries have been affected ranging from US government agencies, hospitals, and academic institutions to media […]

Sensitive myPersonality App Data of Millions of Facebook Users Exposed

According to a startling new report, the University of Cambridge has been using Facebook user data obtained from a popular personality app dubbed as myPersonality. The tool is used for implementing targeted marketing according to users’ personality type. The app was used by roughly 3 million Facebook users, which means their private data including answers to […]

Mainstream Live Chat widgets leaking personal details of employees

According to the findings of Project Insecurity researchers Cody Zacharias and Kane Gamble, live chat software from various, commonly used programs are plagued with information leaking vulnerabilities. The live chat software identified to be vulnerable includes the following: LiveChat Software by LiveChatIncNuance’s TouchCommerceLivePerson However, researchers believe that these are not the only live chat programs […]

Popular VPNs Leaking Your Real IP Address Through WebRTC Leak

Paolo Stagno, an Italian security researcher using the online moniker VoidSec, has revealed a startling new discovery about virtual private networks or VPNs. As per the findings of Stagno, nearly 23% of VPN providers are still leaking IP addresses of users through the VPN flaw dubbed as WebRTC Leak. This means, if you are connected […]

Walmart Jewelry Partner Exposes Data of Millions of Customers

Unsecured Amazon S3 Bucket Claims Another Victim – This Time, Private Data of 1.3 Million Limogés Jewelry Customers Have Been Exposed. Have you heard about MBM Company INC.? Probably you haven’t because not many are familiar with this name but you must be familiar with the brand name Limogés Jewelry. Limogés Jewelry is actually the […]

HotSpot Shield, PureVPN & ZenMate found leaking users real IP addresses

According to VPN Mentor, a privacy advocate firm which reviews virtual private networks (VPN), after an in-depth research, it has been discovered that three VPN service providers with millions of customers worldwide are leaking sensitive data such as users’ IP addresses – These VPNs include HotSpot Shield, PureVPN, and Zenmate. What is a VPN used for? The purpose of using […]

Personal Data of 21,426 US Marine Force Reserve Personnel Leaked

The United States Marine Corps Force Reserve has become a victim of a massive data leak this week due to which sensitive, private data of around 21, 426 Marines, sailors, and civilians got exposed. Reportedly, on the morning of Monday, 26th February, the Defense Travel System or DTS of the Defense Department sent an unencrypted […]

GlobaLeaks – Open-Source Whistleblowing Framework

GlobaLeaks is an open-source, free software intended to enable secure and anonymous whistleblowing initiatives developed by the Hermes Center for Transparency and Digital Human Rights.  It is an Open Whistleblowing Framework that can be used in many different usage scenarios that may require very different approaches to obtain both security and flexibility.    Features Configurable contexts Configurable submission […]

Strava’s Global Heat Map Exposes User Locations Including Military Bases

Strava is a GPS tracking and fitness-tracker app manufacturer that is currently making headlines for introducing the Global Heat Map, which relies upon satellite information for identifying locations and movements of its subscribers for two years’ period. With 27 million users on board from across the globe (including those using Vitofit, Fitbit and Jawbone) Strava […]

Private Details of 240,000 DHS Employees Accessed after Data Breach

A data breach targeted towards the Department of Homeland Security (DHS) has resulted in the exposure of personally identifiable information of over 240,000 DHS employees (247,167 to be precise) including both current and former personnel. Reportedly, the DHS Office of the Inspector General (OIG) Case Management System was accessed and data belonging to individuals linked […]

Reddit user leaks alleged Game of Thrones Season 8 script pages

Game of Thrones season 7 was marred by hacks and leaks to such an extent that apart from seasonal spoilers, hackers managed to obtain and expose personal information of the entire cast. It seems like the world’s favorite, the multi-award-winner show is not going to have a smooth sail in the next season, which will […]

Hackers leak personal videos of WWE Diva Paige

Last month, Paige whose real name is Saraya-Jade Bevis came in news for her return to the WWE (World Wrestling Entertainment). But prior to return hackers had leaked explicit pictures and personal videos of hers. Now, Paige is a victim of another cybercrime in which hackers have leaked a series of clips in which she can be seen […]