Browsing Tag
ElasticSearch
52 posts
US and China Exposed Most Databases Among 308,000 Discovered in 2021
In total, 308,000 unsecured databases were found exposing sensitive assets worldwide of which around 90,000 databases have already…
April 28, 2022
Personal Data of Tens of Millions of Russians and Ukrainians Exposed Online
The trove of data was leaked due to a misconfigured Elasticsearch server and in total it stored 870 million records or 147 GB of data.
March 24, 2022
Stripchat database mess up exposes 200M adult cam models, users’ data
StripChat is one of the top five adult cam sites on the internet. Earlier this month, this site suffered a database mess up that leaked sensitive data.
November 17, 2021
Data analytics firm exposed 2m Instagram and TikTok users’ data
The victims of this "data leak" also include celebrities like Alicia Keys, Loren Gray, Kylie Jenner, Ariana Grande, and Kim Kardashian.
October 21, 2021
Chinese VPN app Quickfox caught exposing 1 million users’ data
The Quickfox VPN is mainly used by Chinese citizens living abroad who need to access Chinese websites as most of these sites are geo-restricted.
October 19, 2021
Brazilian marketplace integrator Hariexpress exposed 1.75 billion records
At the time of publishing this article, the data was still exposed and growing as there has been no response from Hariexpress.
October 13, 2021
The Telegraph newspaper exposed 10TB of subscriber data
The data was exposed due to an unprotected Elasticsearch cluster and remained open to public access without any security authentication.
October 6, 2021
Indonesian Govt’s COVID-19 test, trace app leak impacting 1.3m users
The data leak took place after the Elasticsearch server used by eHAC developers exposed the data due to misconfiguration.
September 1, 2021
Android game developer EskyFun exposed 1 million gamers to hackers
EskyFun used an unsecured Elasticsearch server for storing vast amounts of data collected from users which was later exposed online.
September 1, 2021
US Govt’s secret terrorist watchlist with 2M records exposed online
The watchlist was exposed on a misconfigured server hosted on a Bahrain IP address instead of a US one.
August 17, 2021