Millions of Vinted, Spotify and Tinder users’ data could be compromised in global hack


Millions of users of popular apps such as Vinted, Spotify, Candy Crush and Tinder may have had their sensitive location data stolen by an unknown hacker who has posted details on a Russian-language site popular with cyber-criminals. In what is being treated as a major international data breach, it is being reported that hackers have targeted US company Gravy Analytics (GA) which brokers location data for thousands of popular apps.

It is estimated that some 20 million people in Britain would have used one of the apps affected although it is not known how many may have had their location data stolen. Experts fear this stolen data will also make it easier for criminals to scam individuals or potentially blackmail them.

Read more…
Source: MSN News


Sign up for our Newsletter


Related:

  • PayPal says crooks poked around 35,000 accounts in credential stuffing attack

    January 19, 2023

    The personal information of 35,000 PayPal users was exposed in December, according to a notification letter sent to the online payment company’s customers this week. PayPal attributed this privacy breach to “unauthorized parties,” who accessed accounts using customer login credentials. That is to say, whoever got into the accounts had found out or guessed their victims’ ...

  • MailChimp discloses new breach after employees got hacked

    January 18, 2023

    Email marketing firm MailChimp suffered another breach after hackers accessed an internal customer support and account administration tool, allowing the threat actors to access the data of 133 customers. MailChimp says the attackers gained access to employee credentials after conducting a social engineering attack on Mailchimp employees and contractors. Read more… Source: Bleeping Computer  

  • Nissan North America data breach caused by vendor-exposed database

    January 17, 2023

    Nissan North America has begun sending data breach notifications informing customers of a breach at a third-party service provider that exposed customer information. The security incident was reported to the Office of the Maine Attorney General on Monday, January 16, 2023, where Nissan disclosed that 17,998 customers were affected by the breach. Read more… Source: Bleeping Computer  

  • NortonLifeLock warns that hackers breached Password Manager accounts

    January 13, 2023

    Gen Digital, formerly Symantec Corporation and NortonLifeLock, is sending data breach notifications to customers, informing them that hackers have successfully breached Norton Password Manager accounts in credential-stuffing attacks. According to a letter sample shared with the Office of the Vermont Attorney General, the attacks did not result from a breach on the company but from account ...

  • Hackers compromised Ontario liquor board website, stole customer data

    January 12, 2023

    Cyber attackers compromised the website of Ontario’s Liquor Control Board and stole personal information of customers who bought products online, the retailer has acknowledged. “At this time, we can confirm that an unauthorized party embedded malicious code into our website that was designed to obtain customer information during the checkout process,” the Crown corporation said in ...

  • Air France and KLM notify customers of account hacks

    January 6, 2023

    Air France and KLM have informed Flying Blue customers that some of their personal information was exposed after their accounts were breached. Flying Blue is a loyalty program allowing clients of multiple airlines, including Air France, KLM, Transavia, Aircalin, Kenya Airways, and TAROM, to exchange loyalty points for various rewards. “Our security operations teams have detected suspicious ...