8 biggest data leaks of 2019 that hit Indian users hard

We use cookies and other tracking technologies to improve your browsing experience on our site, show personalized content and targeted ads, analyze site traffic, and understand where our audiences come from. To learn more or opt-out, read our Cookie Policy. The discovery comes as dating apps are facing renewed scrutiny over the amounts of intensely personal information they hold about their users. This meant it was a trivial task for the researchers to reveal the data on the client side, even when users are supposedly restricting their location data. Cookie banner We use cookies and other tracking technologies to improve your browsing experience on our site, show personalized content and targeted ads, analyze site traffic, and understand where our audiences come from. By choosing I Accept , you consent to our use of cookies and other tracking technologies.

The ultimate guide to online dating

In the following months, the data leak grew in size — so much so that the 2. A global team of journalists from more than media organizations in over 80 countries then set about analysing and researching the data — bringing us to the present, where 12 current and former heads of states, among others, have been named and shamed — with the Icelandic Prime Minister resigning, and the UK Prime Minister, David Cameron, under prolonged pressure over his tax arrangements.

The implications of this latest cyber security breach are far reaching and should also provide a huge wake-up call for governments and companies of all sizes and sectors — akin to the wake-up call Edward Snowden provided back in

Nine different dating apps leaked 20 million ‘incredibly sensitive’ files online, leaving users open to potential blackmail.

Fitness firm V Shred exposes GB worth of sensitive customer data. This time, V Shred, a fitness, nutrition, and supplement brand has exposed personal and sensitive data of almost , customers and trainers. The breach took place because of a misconfigured Amazon Web Service AWS S3 bucket that exposed GB worth of data without any password or security authentication to public access. Social Security numbers, names, and other personal details of around 56, individuals were exposed as CNY Works faced a data breach.

CNY Works is a New York-based non-profit corporation working to help businesses and job-seeking individuals with the objective of providing skilled workers to businesses and employment for those seeking a job within Central New York — providing a single entry point for Workforce Information. New Mac ransomware is even more sinister than it appears. Two days after patches for critical F5 BIG-IP vulnerability were released, security researchers have started publicly posting proof-of-concept PoC exploits show how easy it is to exploit these devices.

NET Core vulnerability lets attackers evade malware detection.

Blackmail Fears as Data Leak Exposes Dating App Users

Online daters could be giving away more than they expected after a popular dating site was found to be leaking user information. OKCupid, which has around five million active members, was leaking user information online without its knowledge, according to researchers at CyberNews. The team found that it was possible to retrieve the last location ID of any OKCupid user, allowing anyone to possible determine where a user was logging in to the site, potentially giving away their home or work address.

Getting access to these server responses allowed the researchers to access the last known location IDs of a user. This information is updated every time a user logs in to the OKCupid app, with their online status displayed in the app itself.

Online dating is as normal to life as is online shopping. Believe it or not, online dating has been around for 20 years, and as a result, cybercriminals are finding big money in people VPN leaks: What they are and how to test your VPN security.

In July , a group calling itself “The Impact Team” stole the user data of Ashley Madison , a commercial website billed as enabling extramarital affairs. The group copied personal information about the site’s user base and threatened to release users’ names and personally identifying information if Ashley Madison would not immediately shut down. On 18th and 20th of August, the group leaked more than 60 gigabytes of company data, including user details.

The Impact Team announced the attack on 15 July and threatened to expose the identities of Ashley Madison’s users if its parent company, Avid Life Media, did not shut down Ashley Madison and its sister site, “Established Men”. On 20 July , the website put up three statements under its “Media” section addressing the breach. The website’s normally busy Twitter account fell silent apart from posting the press statements.

At this time, we have been able to secure our sites, and close the unauthorized access points. We are working with law enforcement agencies, which are investigating this criminal act. Any and all parties responsible for this act of cyber-terrorism will be held responsible.

Data Breach: Millions of Dating App Records, Messages, and User Profiles Exposed in Data Leak

This information will be visible to anyone who visits or subscribes to notifications for this post. Are you sure you want to continue? Go to the Legal Help page to request content changes for legal reasons.

Concerns over data security on online dating sites and apps exploded in the and at least two suicides can be directly attributed to the leak.

A group of researchers from Mackeeper, a security firm have identified a database belonging to a company that operates multiple dating apps and websites, that was leaking data online. Altogether, the exposed database contained over 1. It is an incident that draws parallels with the now-infamous Ashley Madison breach. Unlike the Ashley Madison breach, this database was simply unsecured and was accessible to anyone, Mackeeper discovered.

The database contained over 1. This included usernames and passwords — in plain text. Other information included height, weight, date of birth, gender, race, IP and country, among others. Alarmingly, the database was unsecured for nearly a day, before MacKeeper Security reached out to the company to inform them of the glaring vulnerability.

While we acknowledge the data breach, but only a small number of users were affected. This data leak was from one of our test databases, the majority of data were dummy data and were randomly generated, and the vulnerability was immediately remediated. Suffice to say, another day, another data breach.

NewStatesman

At least one app was dedicated to people with STIs, such as herpes. Based on our research, the apps share a common developer. The misconfigured AWS account contained data belonging to a wide selection of niche and fetish dating apps. Based on our research, it appears the apps share a common developer, for the following reasons:. Sometimes, the extent of a data breach and the owner of the data are obvious, and the issue quickly resolved.

App researchers found Plenty of Fish was leaking users’ names and zip codes they set Plenty of Fish is a browser and app-based dating site.

Intel seems to have become a victim of a massive internal data breach, with around 20GB of confidential information reportedly stolen and leaked by an anonymous hacker. There is also reportedly some evidence leaking the BIOS code as well as debugging tools developed by the chipmaker. Intel is currently investigating the situation and believes that the leak came from the Intel Resource and Design Center. Swiss software developer and IT consultant Till Kottmann has released the details about the Intel data breach.

Kottmann stated in a series of tweets that they received the information from the anonymous hacker who breached the data earlier this year. As per that screenshot, the data includes various Intel’s roadmaps and confidential documents as well as schematics, tools, and firmware versions of different processors. There are also marketing templates of the company and some NDAs.

According to a report by ZDNet, some security researchers who didn’t want to be named in the public deemed the leak authentic. Some of the leaked files reportedly included CPU manuals dating back to Furthermore, the hacker is said to have obtained the data through an unsecured server hosted on the Akamai CDN. Intel released a media statement saying it was investigating the situation.

ZDNet notes in its report that as per the screenshot of the conversation between Kottmann and the hacker, the data was not acquired using an account on the Intel Resource and Design Center.

Dangerous Liaisons: is everyone doing it online?

Data is becoming more valuable by the day and for crooks looking for a quick buck, easiest route to billions. But not every data breach is a result of hackers. Here are some of the biggest data breaches of that affected users in India. SBI left one of its servers unprotected which exposed the data of its million customers. More than 1. It did not disclose the name but did point to who might be responsible — Chinese hackers.

The data includes dates of birth, gender, website activity, mobile numbers, “​Moreover, the data leak contains professional email addresses.

Ashley Madison , or The Ashley Madison Agency , is a Canadian online dating service and social networking service marketed to people who are married or in relationships. It was founded in by Darren J. Morgenstern, with the slogan “Life is short. Have an affair”. The company received attention on July 15, , after hackers stole all of its customer data —including emails, names, home addresses, sexual fantasies and credit card information—and threatened to post the data online if Ashley Madison and fellow Avid Life Media site EstablishedMen.

More data including some of the CEO’s emails was released on August 20, Have an Affair. In May , Ashley Madison unretired the tagline “Life is short. Have an affair”, symbolic of the company’s returned focus on married dating. Ashley Madison is a membership website and service based in Canada ; its membership includes more than 60 million people in 53 countries. The company announced plans to launch in Singapore in Unlike Match.

For a conversation between two members, one of the members, always the man, must pay eight credits to initiate the conversation. Any follow-up messages between the two members are free after the communication has been initiated.

845GB of racy dating app records exposed to entire internet via leaky AWS buckets

In the third week of December, the world of tech witnessed plenty of activity, both good and bad. The good part included the launch and announcement of tempting gadgets like the Realme buds and JBL’s light-powered headphones, while the scary stuff included internet shutdowns, leaks from Facebook , Amazon , and other security issues. The most concerning news of the week was undoubtedly the internet blackout triggered by the Indian government.

Breached websites that have been loaded into Have I Been Pwned website known as and containing M accounts was leaked online. In November , the dating website Beautiful People was hacked and over M​.

How does it feel to return home and find your door open, unlocked? Inside, everything seems ok. But, what actually happened in your home during the day? Cue some sleepless nights and some prolonged anxiety about leaving your house day after day. Yep, you heard it right. First, the company announced that million user accounts were compromised due to an attack in late User names, email addresses, phone numbers, dates of birth, encrypted passwords and, in some cases, security questions and answers were stolen.

A few months later, the web giant shook the community with a new revelation: this time the Yahoo hacked accounts list included more than one billion records. The reported breach happened in and was attributed to a different group of hackers. In , Yahoo published a statement claiming that actually all its user accounts were affected by the theft.

For many people, their account on a typical dating website is quite a sensitive topic. So, a data breach at FriendFinder Networks, an adult entertainment company, was especially stressful for the victims.

This popular dating app leaked info on millions of users

OkCupid is a US-based dating app that was launched in , with more than 50 million users since launch. It currently boasts around 5 million active members and 1 million weekly installs of its apps. As with all other popular dating apps, OkCupid promised to keep its users safe. This presents a major threat for OkCupid users who might fall victim to aggressive stalking.

Online daters could be giving away more than they expected after a popular dating site was found to be leaking user information. OKCupid.

Four million federal employees have had their personal data stolen from the Office of Personnel Management, according to a statement on its website. Just six percent of British employees have received training in dealing with phishing attacks, a survey has revealed. The Home Depot has called upon a federal court to dismiss a lawsuit brought about by consumers claiming they were hurt by last year’s data breach. One of India’s most popular music streaming services, Gaana, was pulled offline after a hack resulted in a leak of data affecting more than 10 million users.

An exploit has been discovered that causes iPhones and iPads to reboot when sent a string of malicious text. Researchers from Nanjing University have found a way in which hackers could track a smartphone user on the subway – even when limited reception is available. Devices using Bluetooth Low Energy BLE to transmit their data can be intercepted by hackers, potentially exposing a trove of fitness data from wearables, IT Pro reports.

A research paper from Google has looked into the difficulties of standard ‘forgotten password’ personal information verification. Casual dating website ‘Adult FriendFinder’ has been hacked, leaking data from as many as 3. Distributed Denial of Service DDoS attacks are on the rise, according to cloud service provider Akamai, with more than double the number reported from this time a year ago. Researchers have developed a system to protect password databases, allowing hackers to believe they have cracked the file, only to be given fake credentials.

Two popular Grand Theft Auto V modifications have been found to contain unwanted additional malware, according to The Escapist.

Group dating app found leaking basically everything about its users worldwide

These leaks have compromised user data, including sensitive and confidential information like real names, billing addresses, email addresses, phone numbers, private messages, and more. The total number of leaked entries is in the millions. Every server was easily accessible via the internet and not password protected.

– The US-based dating app was found leaking MB of Up for Sale on The Dark Web · Deep Dive into Synthetic Identity Fraud.

Three misconfigured Amazon Web Services AWS S3 buckets leaking highly sensitive information from multiple dating apps and websites were discovered by vpnMentor researchers on May According to a report published June 16, the S3 buckets contained gigabytes of data, with over 20 million files containing sensitive information from user accounts, including:. Additionally, aside from the overflow of personal and highly sensitive user information, the misconfigured databases also exposed apps infrastructure through unsecured admin credentials and passwords.

We reached out to the developers, not only to let them know about the vulnerability but also to suggest ways in which they could make their system secure. The data leak could have devastating effects for users. Malicious actors can leverage the treasure trove of sensitive info for various forms of extortion and bullying, which could potentially turn into another AshleyMadison disaster. More than 30 million users were exposed following the data breach on the pro-adultery website, and blackmail scams were still resurfacing nearly 5 years after bad actors posted a data dump containing sensitive data on users.

In the hands of seasoned cyber-criminals, the data can be used for more than just catfishing scams. Using the variety of information as a bargaining chip, blackmailers can start a profitable business.

How The Ashley Madison Leak Spread Across The Web


Greetings! Do you need to find a partner for sex? It is easy! Click here, registration is free!