882 GB of ecommerce and dating site data leaked due to a misconfigured database
Data leaks are becoming very frequent and are increasing at an alarming rate.
Ecommerce and dating sites are becoming quite popular targets when it comes to data breach attacks. The reason behind these attacks is that the hackers obtain very personal and sensitive information from these sites and the hassle involved in quite low.
Researchers have claimed that data from more than 70 sites was breached in a recent attack. These websites were using the very same email marketing company named Mailfire whose Elasticsearch server was found without any authentication required such as a password.
The data was open for anyone to see and contained 882.1 GB of data amounting to more than 370 million records. When Mailfire was contacted regarding this, they accepted the researcher’s claim and acted to secure the server immediately.
The compromised data included a lot of confidential data comprising of full names, email addresses, IP addresses, profile pictures & descriptions, gender, age, date of birth, and real conversations from over 100 countries globally.
NPAV recommends users to stay aware of various email and SMS phishing attacks. The lost data can be used by hackers to trigger various cyber attacks on targeted systems and networks. Hackers can quickly escalate the extent of attacks if the user is not aware.
Install NPAV on your devices to keep them safe from all kinds of cyber attacks. Use NPAV and join us on a mission to secure the cyber world.
- Other (42)
- Ransomware (123)
- Events and News (26)
- Features (44)
- Security (422)
- Tips (79)
- Google (22)
- Achievements (8)
- Products (33)
- Activation (7)
- Dealers (1)
- Bank Phishing (42)
- Malware Alerts (187)
- Cyber Attack (219)
- Data Backup (11)
- Data Breach (75)
- Phishing (138)
- Securty Tips (1)
- Browser Hijack (16)
- Adware (15)
- Email And Password (67)
- Android Security (55)
- Knoweldgebase (38)
- Botnet (15)
- Updates (3)
- Alert (70)
- Hacking (57)
- Social Media (7)
- vulnerability (53)
- Hacker (31)
- Spyware (8)
- Windows (6)
- Microsoft (21)
- Uber (1)
- YouTube (1)
- Trojan (2)
- Website hacks (3)
- Paytm (1)
- Credit card scam (1)
- Telegram (3)
- RAT (5)
- Bug (3)
- Twitter (2)
- Facebook (7)
- Banking Trojan (5)
- Mozilla (2)
- COVID-19 (5)
- Instagram (2)
- NPAV Announcement (5)
- IoT Security (1)
- Deals and Offers (1)
- Cloud Security (8)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (2)
- WhatsApp (4)
- Amazon (1)
- DMart (1)
- Payment Risk (4)
- Occasion (2)
- firewall (1)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (4)
- Impersonation phishing (1)
- DDoS (4)
- Smishing (2)
- Whale (0)
- Whale phishing (3)
- WINRAR (2)
- ZIP (2)