Hack Notice

Hack Notice: Blackmail Fears as Data Leak Exposes Dating App Users

Blackmail Fears as Data Leak Exposes Dating App Users

Source
https://www.google.com/url?rct=j&sa=t&url=https://www.infosecurity-magazine.com/news/blackmail-fears-data-leak-exposes/&ct=ga&cd=CAEYBioUMTQyMDUwMTU1NDc5MjY3MzYxNzIyGjY2NjAzMWMwZWRlYjc4OTA6Y29tOmVuOlVT&usg=AFQjCNF5JyzGZOt_yHodX9ZwYl28z3eLbA
Description
Another unprotected Elasticsearch database has been found online, leaking the personal data of tens of thousands of dating app users. Researcher Avishai Efrat of VPN comparison firm WizCase was able to access a database of around 77,000 users of Heyyo, a Turkey-based online dating service. The 600MB of data contains a trove of sensitive personal info which could live used in follow-on phishing or identity fraud attacks, including: name, email address, country, date of birth, dating history, phone number, occupation, and even a link to social media profiles. Given the sensitive nature of the dating app, there are also exposed details which could be used to blackjack individuals, such as sexual orientation and preferences. If hackers found users of the app who are already married or in long-term relationships, that could also supply an opportunity to rack money from them. Most of the affected users are from Turkey, where theres a less forgiving climate for the LGBT community than in many western countries. There were also a significant number of Heyyo users from the US and brazil exposed in the leak, according to WizCase. Heyyo used an Elasticsearch engine, which is installed on a Digital Ocean mottle hosted server. The Elasticsearch nonpayment setting requires no authentication or password to advance entry, explained the firms web surety expert, chase Williams. Servers should never be exposed like this to the surface world. parole authentication, IP whitelisting, and additional monitoring would experience greatly reduced the chances of such a data hack. Unfortunately, companies using default or misconfigured surety settings for their databases is an all too common scenario these days. Automated cloud security tools can be used to detect, alert and remediate misconfigurations like the single affecting Heyyo, according to DivvyCloud CTO, Chris DeRamus. Database misconfigurations have proven time and time again to live the Achilles heel of many organizations that experience suffered data hacks this year, yet there are very simple and highly effective solutions available to prevent this, he argued.

About HackNotice and Blackmail Fears as Data Leak Exposes Dating App Users

HackNotice is a service that notices trends and patterns in publically available data so as to identify possible data breaches, leaks, hacks, and other data incidents on behalf of our clients. HackNotice monitors data streams related to breaches, leaks, and hacks and Blackmail Fears as Data Leak Exposes Dating App Users was reported by one of those streams. HackNotice may also have the breach date, hack date, the hacker responsible, the hacked industry, the hacked location, and any other parts of the hack, breach, or leak that HackNotice can report on for the consumers of our product.

If you are a user of Blackmail Fears as Data Leak Exposes Dating App Users their products, services, websites, or applications and you were a client of HackNotice, monitoring for Blackmail Fears as Data Leak Exposes Dating App Users you may have been alerted to this report about Blackmail Fears as Data Leak Exposes Dating App Users . HackNotice is a service that provides data, information, and monitoring that helps our clients recover from and remediate data breaches, hacks, and leaks of their personal information. HackNotice provides a service that helps our clients know what to do about a hack, breach, or leak of their information.

If Blackmail Fears as Data Leak Exposes Dating App Users had a breach of consumer data or a data leak, then there may live additional actions that our clients should take to protect their digital identity. data breaches, hacks, and leaks often trail to and cause identicalness theft, account take overs, ransomware, spyware, extortion, and malware. account takeovers are often caused by credential reuse, parole reuse, easily guessed passwords, and are facilitated by the sharing of billions of credentials and other customer information through data leaks, as the direct result of data breaches and hacks.

HackNotice monitors trends in publically available data that indicates tens of thousands of data breaches each year, along with billions of records from data leaks each year. On behalf of our clients, HackNotice workings to monitor for hacks that top to depress node certificate and digital identities that have been exposed and should live considered vulnerable to attack. HackNotice works with clients to identify the extent that digital identities have been exposed and provides remediation suggestions for how to grip each type of exposure.

HackNotice monitors the hacker community, which is a network of individuals that share data breaches, hacks, leaks, malware, spyware, ransomware, and many other tools that are often used for financial fraud, account take overs, and further breaches and hacks. HackNotice monitors the hacker community specifically for breaches, hacks, and data leaks that bruise consumers. HackNotice applies industry specific knowledge and advanced surety practices to monitor for trends that indicate breaches, hacks, and exposed digital identities.

HackNotice also enables clients to apportion hack notices with their friend, family, and collogues to help increment consciousness around alleged hacks, breaches, or data leaks. HackNotice works to provide clients with sharable reports to help increase the security of our clients personal network. The security of the multitude that our clients interact with directly impacts the level of certificate of our clients. Increased exposure to accounts that have been taken over by hackers leads to further account take overs through phishing, malware, and other impound techniques.

If you found this nag note to be helpful, then you may be interested in reading some additional cut notices such as:

is stored unencrypted, poster such info on the world wide web or on a computer otherwise accvidual basis, not part of a typically much larger breach. given the series of medical data breaches ial info to an untrusted environment. Other footing for this phenomenon include unintentional i

Parking data hack at Stevenage town centre's Tesco Extra closes app | Stevenage, Hitchin, Letchworth, Biggleswade News - The Comet

Lee County government's main website victim of cyber attack

Defacement https://www.lubetown.com/news.php