lingo.lol is one of the many independent Mastodon servers you can use to participate in the fediverse.
A place for linguists, philologists, and other lovers of languages.

Server stats:

59
active users

#dataleak

0 posts0 participants0 posts today
Cybernews<p>▪️Cybernews research▪️TalentHook, a cloud-based applicant tracking system, left a misconfigured instance open. It spilled tens of millions of job seekers' CVs, full of personal details ranging from full names to home addresses.</p><p><a href="https://infosec.exchange/tags/CV" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CV</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> </p><p>Read more: <a href="https://cnews.link/talenthook-data-leak-exposes-millions-6/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">cnews.link/talenthook-data-lea</span><span class="invisible">k-exposes-millions-6/</span></a></p>
Dissent Doe :cupofcoffee:<p>When Cybernews published an article about a 16 billion credentials leak, some of us strongly criticized the article as irresponsible and misleading journalism. Although some people have tried to suggest that the Cybernews article had some value in highlighting infostealers, the article was so riddled with falsehoods and misleading statements that the confusion and misunderstandings it created outweighs any benefit one might try to ascribe to it.</p><p>To his credit, <span class="h-card" translate="no"><a href="https://infosec.exchange/@JayeLTee" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>JayeLTee</span></a></span> and a colleague have taken the time to analyze the datasets used in Cybernews‘ reporting and to fact-check their reporting with actual data and proof from their own research. </p><p>He has now written up their findings, in which they identified no less than five significant false claims by Cybernews. You can read his report here:</p><p><a href="https://jltee.substack.com/p/fact-checking-claims-by-cybernews" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">jltee.substack.com/p/fact-chec</span><span class="invisible">king-claims-by-cybernews</span></a></p><p><a href="https://infosec.exchange/tags/journalism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>journalism</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/databreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>databreach</span></a> <a href="https://infosec.exchange/tags/infostealers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infostealers</span></a></p>
Dissent Doe :cupofcoffee:<p>With great thanks to <span class="h-card" translate="no"><a href="https://infosec.exchange/@masek" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>masek</span></a></span> and <span class="h-card" translate="no"><a href="https://infosec.exchange/@JayeLTee" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>JayeLTee</span></a></span> and others who assisted or tried to, including Rogers ISP and law enforcement in Canada, we can finally say:</p><p>Bolton Walk-In Clinic patient data leak locked down! </p><p>Read about this very frustrating effort to get exposed patient data locked down:</p><p><a href="https://databreaches.net/2025/06/30/bolton-walk-in-clinic-patient-data-leak-locked-down-finally/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">databreaches.net/2025/06/30/bo</span><span class="invisible">lton-walk-in-clinic-patient-data-leak-locked-down-finally/</span></a></p><p><a href="https://infosec.exchange/tags/healthsec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>healthsec</span></a> <a href="https://infosec.exchange/tags/PHIPA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PHIPA</span></a> <a href="https://infosec.exchange/tags/HIPA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>HIPA</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/incidentresponse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>incidentresponse</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a></p>
Dissent Doe :cupofcoffee:<p>As much as I generally detest claims that something should be a wake-up call, <span class="h-card" translate="no"><a href="https://infosec.exchange/@lawrenceabrams" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>lawrenceabrams</span></a></span> response to <span class="h-card" translate="no"><a href="https://infosec.exchange/@cybernews" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>cybernews</span></a></span> "16 billion" story really should be a wake-up call for any news outlets who repeat any claims of discovered leaks or breaches by Cybernews. </p><p>See <a href="https://www.bleepingcomputer.com/news/security/no-the-16-billion-credentials-leak-is-not-a-new-data-breach/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">bleepingcomputer.com/news/secu</span><span class="invisible">rity/no-the-16-billion-credentials-leak-is-not-a-new-data-breach/</span></a></p><p>DataBreaches.net will no longer link to Cybernews unless there is some reliable source that confirms that their claims are accurate and that they are not just reporting on leaks that they haven't even seriously tried to get locked down before they report on it. </p><p>Comments:<br><a href="https://databreaches.net/2025/06/20/no-the-16-billion-credentials-leak-is-not-a-new-data-breach-a-wake-up-call-about-fake-news/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">databreaches.net/2025/06/20/no</span><span class="invisible">-the-16-billion-credentials-leak-is-not-a-new-data-breach-a-wake-up-call-about-fake-news/</span></a></p><p><a href="https://infosec.exchange/tags/journalism" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>journalism</span></a> <a href="https://infosec.exchange/tags/databreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>databreach</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/infostealers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infostealers</span></a> <a href="https://infosec.exchange/tags/passwords" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>passwords</span></a> <a href="https://infosec.exchange/tags/hype" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>hype</span></a> <a href="https://infosec.exchange/tags/clickbait" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>clickbait</span></a> <a href="https://infosec.exchange/tags/ethics" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ethics</span></a></p><p><span class="h-card" translate="no"><a href="https://cyberplace.social/@GossiTheDog" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>GossiTheDog</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@JayeLTee" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>JayeLTee</span></a></span> <span class="h-card" translate="no"><a href="https://infosec.exchange/@dangoodin" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>dangoodin</span></a></span> <span class="h-card" translate="no"><a href="https://mastodon.green/@gcluley" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>gcluley</span></a></span> <span class="h-card" translate="no"><a href="https://mastodon.social/@brianhonan" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>brianhonan</span></a></span></p>
Marcel Waldvogel<p>Agentic AI as the enemy's agent.</p><p>It is a bad idea to allow an LLM access to internal data and external communication (web pages, APIs, email, …) at the same time.<br><a href="https://waldvogel.family/tags/AgenticAI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AgenticAI</span></a> <a href="https://waldvogel.family/tags/DataLeak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DataLeak</span></a> <a href="https://waldvogel.family/tags/LLM" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>LLM</span></a> <br><a href="https://fortune.com/2025/06/11/microsoft-copilot-vulnerability-ai-agents-echoleak-hacking/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">fortune.com/2025/06/11/microso</span><span class="invisible">ft-copilot-vulnerability-ai-agents-echoleak-hacking/</span></a></p>
Cybernews<p>▪Cybernews research▪ Adult dating app has leaked over four million private records.</p><p><a href="https://infosec.exchange/tags/app" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>app</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacy</span></a> <a href="https://infosec.exchange/tags/dataprivacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataprivacy</span></a> </p><p><a href="https://cnews.link/headero-data-leak-gps-chat-exposed-3/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">cnews.link/headero-data-leak-g</span><span class="invisible">ps-chat-exposed-3/</span></a></p>
Bill<p>Four billion Chinese records leaked due to a poorly configured database. And the contents lead to more questions than answers.</p><p><a href="https://cybernews.com/security/chinese-data-leak-billiones-records-exposed/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">cybernews.com/security/chinese</span><span class="invisible">-data-leak-billiones-records-exposed/</span></a></p><p><a href="https://infosec.exchange/tags/china" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>china</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a></p>
nemo™ 🇺🇦<p>🚨 Over 90 Chrome extensions—including big names like Avast, Trust Wallet &amp; Browsec VPN—were found leaking sensitive data &amp; credentials! 🕵️‍♂️🔑 Millions at risk from hardcoded secrets &amp; unencrypted traffic. Stay safe &amp; review your extensions!<br>Read more 👉 <a href="https://cyberinsider.com/over-90-chrome-extensions-found-exposing-sensitive-data-and-credentials/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">cyberinsider.com/over-90-chrom</span><span class="invisible">e-extensions-found-exposing-sensitive-data-and-credentials/</span></a><br><a href="https://mas.to/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cybersecurity</span></a> <a href="https://mas.to/tags/ChromeExtensions" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ChromeExtensions</span></a> <a href="https://mas.to/tags/DataLeak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DataLeak</span></a> <a href="https://mas.to/tags/Privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Privacy</span></a> <a href="https://mas.to/tags/Infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Infosec</span></a> <a href="https://mas.to/tags/newz" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>newz</span></a></p>
Cybernews<p>Major data leak exposed 184M Facebook, Snapchat, Roblox logins and passwords<br><a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacy</span></a> <a href="https://infosec.exchange/tags/Facebook" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Facebook</span></a> <a href="https://infosec.exchange/tags/Roblox" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Roblox</span></a> <a href="https://infosec.exchange/tags/Microsoft" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Microsoft</span></a> </p><p>Learn more: <a href="https://cnews.link/data-leak-facebook-roblox-instagram-passwords-2/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">cnews.link/data-leak-facebook-</span><span class="invisible">roblox-instagram-passwords-2/</span></a></p>
Dendrobatus Azureus<p>This is something you need to read in order to believe</p><p>subject: VoLTE<br>provider O2 UK<br>nightmare: infosec</p><p>Enormous. Outragerous are some of the words I would use. Take you time to read and learn because they are not the only culprits on the planet with such bad data protection practices</p><p>Excerpt</p><p>&gt;&gt;</p><p>Quite quickly I realised something was wrong. The responses I got from the network were extremely detailed and long, and were unlike anything I had seen before on other networks. The messages contained information such as the IMS/SIP server used by O2 (Mavenir UAG) along with version numbers, occasional error messages raised by the C++ services processing the call information when something went wrong, and other debugging information. However, most notable were a set of five headers near the bottom of the message:</p><p>SIP Msg<br>...<br> P-Mav-Extension-IMSI: 23410123456789<br> P-Mav-Extension-IMSI: 23410987654321<br> P-Mav-Extension-IMEI: 350266809828927<br> P-Mav-Extension-IMEI: 350266806365261<br> ...<br> Cellular-Network-Info: 3GPP-E-UTRAN-FDD;utran-cell-id-3gpp=2341010037A60773;cell-info-age=26371</p><p>Synthesised excerpt of IMS signalling message for demonstration; not a genuine IMEI/IMSI/cell ID.</p><p>Two sets of IMSIs, two sets of IMEIs, and a Cell ID header. How curious…</p><p>Sure enough, when comparing both the IMSIs and IMEIs in the message to those of my own devices, I had been given both the IMSI and IMEI of my phone which initiated the call, but also the call recipient's.</p><p>&lt;&lt;<br>^Z</p><p><a href="https://mastodon.bsd.cafe/tags/O2" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>O2</span></a> <a href="https://mastodon.bsd.cafe/tags/UK" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>UK</span></a> <a href="https://mastodon.bsd.cafe/tags/TeleCom" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TeleCom</span></a> <a href="https://mastodon.bsd.cafe/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a> <a href="https://mastodon.bsd.cafe/tags/DataLeak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DataLeak</span></a> <a href="https://mastodon.bsd.cafe/tags/WTF" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WTF</span></a> </p><p><a href="https://mastdatabase.co.uk/blog/2025/05/o2-expose-customer-location-call-4g/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">mastdatabase.co.uk/blog/2025/0</span><span class="invisible">5/o2-expose-customer-location-call-4g/</span></a></p>
JayeLTee<p>A Childcare Center in the United States had a server exposing children's documents publicly for years.</p><p>I wasn't the first to alert them about this either. I mentioned this to <span class="h-card" translate="no"><a href="https://infosec.exchange/@PogoWasRight" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>PogoWasRight</span></a></span> and she told me she notified them about the issue on a call in 2022. The call wasn't properly followed up by the company and the data ended up being exposed for almost another 3 years.</p><p>You can read more about it here: <a href="https://jltee.substack.com/p/us-childcare-center-leaks-thousands-of-childrens-private-data" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">jltee.substack.com/p/us-childc</span><span class="invisible">are-center-leaks-thousands-of-childrens-private-data</span></a></p><p><a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/education" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>education</span></a> <a href="https://infosec.exchange/tags/usa" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>usa</span></a> <a href="https://infosec.exchange/tags/us" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>us</span></a> <a href="https://infosec.exchange/tags/unitedstates" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>unitedstates</span></a> <a href="https://infosec.exchange/tags/children" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>children</span></a> <a href="https://infosec.exchange/tags/childcare" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>childcare</span></a> <a href="https://infosec.exchange/tags/leak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>leak</span></a> <a href="https://infosec.exchange/tags/data" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>data</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a> <a href="https://infosec.exchange/tags/privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacy</span></a></p>
Da lazy beardude<p>All things (even people) need to be touched at some point cos things break when they're left unmaintained and lonely out there.</p><p>I haven't been touched in 5+ years, but I maintain myself every few days lol</p><p>Also fuck you Oracle.</p><p><a href="https://odysee.com/@AlphaNerd:8/oracle-tried-to-coverup-this-data-breach:8" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">odysee.com/@AlphaNerd:8/oracle</span><span class="invisible">-tried-to-coverup-this-data-breach:8</span></a></p><p><a href="https://mastodon.social/tags/oracle" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>oracle</span></a> <a href="https://mastodon.social/tags/sql" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sql</span></a> <a href="https://mastodon.social/tags/mentaloutlaw" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mentaloutlaw</span></a> <a href="https://mastodon.social/tags/databreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>databreach</span></a> <a href="https://mastodon.social/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://mastodon.social/tags/oraclecloudservice" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>oraclecloudservice</span></a> <a href="https://mastodon.social/tags/oraclebreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>oraclebreach</span></a></p>
VM<p><a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/GDPR" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GDPR</span></a> <br>Some figures about the "recent" <a href="https://infosec.exchange/tags/twitter" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>twitter</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> </p><p>382 CSV files, 438 GB uncompressed.</p><p>94 twitter_users_extra_ZZZ.csv files which contain few things. 835 M lines.</p><p>288 twitter_users_NNN.csv files, 1.7 billions of lines.<br>Few really personal data, only 9 millions lines with an e-mail address (valid or not).</p><p>Some rare lines also include a description or an URL.</p><p>EDIT: sick CSV broke my first parser.</p>
Vengeur Masqué<p><a href="https://mastodon.hofud.com/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://mastodon.hofud.com/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://mastodon.hofud.com/tags/CNIL" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CNIL</span></a> <a href="https://mastodon.hofud.com/tags/RGPD" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>RGPD</span></a> <br>Quelques chiffres sur la fuite de données <a href="https://mastodon.hofud.com/tags/twitter" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>twitter</span></a> dont on a parlé récemment.</p><p>382 fichiers CSV, 438 GB décompressés.<br>94 twitter_users_extra_ZZZ.csv = 935 millions de lignes sans grand intérêt</p><p>288 fichiers twitter_users_NNN.csv, = 1.7 G lignes. <br>Peu de données réellement personnelles, seulement 9 millions de lignes avec une adresse e-mail, valide ou pas.</p><p>Certaines rares lignes comportent aussi une description et/ou une URL.</p><p>EDIT: CSV bizarres mal parsés</p>
JayeLTee<p>All-in-One platform leaks millions of attachments from their clients. </p><p>This server contained a bit of everything, from sensitive piercing selfies next to identity docs, to passports, cvs, insurance docs and more.</p><p>Read about it here: <a href="https://jltee.substack.com/p/all-in-one-platform-gohighlevel-exposed-attachments-from-clients" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">jltee.substack.com/p/all-in-on</span><span class="invisible">e-platform-gohighlevel-exposed-attachments-from-clients</span></a></p><p><a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/data" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>data</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/leak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>leak</span></a> <a href="https://infosec.exchange/tags/gohighlevel" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>gohighlevel</span></a> <a href="https://infosec.exchange/tags/highlevel" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>highlevel</span></a></p>
Marcel SIneM(S)US<p>Sicherheitsexperten enthüllen triviale Datenlecks bei Legaltechs | Security <a href="https://www.heise.de/news/Sicherheitsexperten-enthuellen-triviale-Datenlecks-bei-Legaltechs-10272273.html" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/news/Sicherheitsexper</span><span class="invisible">ten-enthuellen-triviale-Datenlecks-bei-Legaltechs-10272273.html</span></a> <a href="https://social.tchncs.de/tags/DataLeak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DataLeak</span></a> <a href="https://social.tchncs.de/tags/Datenleck" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Datenleck</span></a> <a href="https://social.tchncs.de/tags/Datenschutz" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Datenschutz</span></a> <a href="https://social.tchncs.de/tags/privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacy</span></a> <a href="https://social.tchncs.de/tags/DSGVO" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DSGVO</span></a> <a href="https://social.tchncs.de/tags/GDPR" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GDPR</span></a></p>
Erik Jonker<p>This is funny, "only read access" makes this in any country or legal system still a databreach/leak of gigantic proportions.<br><a href="https://www.cbsnews.com/news/treasury-says-elon-musk-doge-has-read-only-access-to-payment-systems/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">cbsnews.com/news/treasury-says</span><span class="invisible">-elon-musk-doge-has-read-only-access-to-payment-systems/</span></a><br><a href="https://mastodon.social/tags/Musk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Musk</span></a> <a href="https://mastodon.social/tags/DOGE" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DOGE</span></a> <a href="https://mastodon.social/tags/databreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>databreach</span></a> <a href="https://mastodon.social/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://mastodon.social/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a></p>
Dimitri Bouniol<p>FYI, Crunchyroll got hacked and all credentials were leaked — now's a great time to change your password (apparently you need to reset it):</p><p><a href="https://mastodon.social/tags/Crunchyroll" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Crunchyroll</span></a> <a href="https://mastodon.social/tags/Dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Dataleak</span></a> <a href="https://mastodon.social/tags/Anime" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Anime</span></a></p><p><a href="https://www.reddit.com/r/animenews/comments/1i8edhb/crunchyroll_premium_login_details_leaked_users_at/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">reddit.com/r/animenews/comment</span><span class="invisible">s/1i8edhb/crunchyroll_premium_login_details_leaked_users_at/</span></a></p>
JayeLTee<p>🇬🇧 Security company Assist Security exposed over 100,000 sensitive files publicly.</p><p>If you're curious what kind of wild excuses I get from companies, this one tried to claim only the file structure was exposed. Apparently I look at filenames and paths and figure what's there from the names only and report this to companies :blobwizard: </p><p><a href="https://jltee.substack.com/p/security-company-assist-security-exposed-data" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">jltee.substack.com/p/security-</span><span class="invisible">company-assist-security-exposed-data</span></a></p><p><a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/leak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>leak</span></a> <a href="https://infosec.exchange/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://infosec.exchange/tags/unitedkingdom" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>unitedkingdom</span></a> <a href="https://infosec.exchange/tags/uk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>uk</span></a> <a href="https://infosec.exchange/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a> <a href="https://infosec.exchange/tags/AssistSecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AssistSecurity</span></a></p>
Doerk<p>Surprise: There are companies collecting global geolocation data and selling them. Now hackers claim to have hacked their data and threaten to leak it.</p><p>I wonder what should worry me more, the fact that there are companies collecting these data or that these companies are getting hacked?</p><p>However I am afraid that this will have no impact on the public mindset of smartphone usage.</p><p><a href="https://mastodon.bsd.cafe/tags/privacy" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>privacy</span></a> <a href="https://mastodon.bsd.cafe/tags/security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>security</span></a> <a href="https://mastodon.bsd.cafe/tags/dataleak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dataleak</span></a> <a href="https://mastodon.bsd.cafe/tags/breach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>breach</span></a></p><p>Article is behind paywall:</p><p><a href="https://www.404media.co/hackers-claim-massive-breach-of-location-data-giant-threaten-to-leak-data/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">404media.co/hackers-claim-mass</span><span class="invisible">ive-breach-of-location-data-giant-threaten-to-leak-data/</span></a></p>