Mystery database containing sensitive info on 762,000 car-owners discovered by researchers


In early August, cybersecurity researchers from Cybernews discovered an unprotected database containing sensitive information on hundreds of thousands of Chinese individuals.

To this day, they haven’t figured out who the database belongs to, or why it was generated and left open in the first place. Using Elasticsearch, a search engine for databases, the team of researchers found a database containing details on 762,000 car owners, and their vehicles. The archive contained people’s names, ID numbers, phone numbers, email addresses, postal addresses, birth dates, vehicle identification numbers (VIN), car brand, car model, engine number, and vehicle color.

Read more…
Source: TechRadar News


Sign up for our Newsletter


Related:

  • UK: Victims and witnesses personal data leaked by Norfolk and Suffolk police

    August 15, 2023

    A total of 1,230 people, including victims of crime and witnesses, have had their data breached by Norfolk and Suffolk police forces. The constabularies said the personal information was included in Freedom of Information (FOI) responses due to a “technical issue”. They said the data was hidden from anyone opening the files but should not have ...

  • Northern Ireland: Major data breach identifies thousands of police officers and civilian staff

    August 8, 2023

    The Police Service of Northern Ireland (PSNI) has apologised for mistakenly revealing details of all its 10,000 staff. NI’s Police Federation said the breach could cause “incalculable damage”. In response to a Freedom of Information (FoI) request, the PSNI had shared names of all police and civilian personnel, where they were based and their roles. The ...

  • UK Elections watchdog targeted by cyber attack which left voters’ details exposed

    August 8, 2023

    Details of tens of millions of voters could have been accessed by hackers who targeted the elections watchdog. The Electoral Commission revealed on Tuesday it was targeted by a cyber attack which allowed “hostile actors” to access electoral registers. The hack allowed the attackers to access reference copies of electoral registers which contained the name and addresses ...

  • Code leaks are causing an influx of new ransomware actors

    August 7, 2023

    Ransomware gangs are consistently rebranding or merging with other groups, as highlighted in our 2022 Year in Review, or these actors work for multiple ransomware-as-a-service (RaaS) outfits at a time, and new groups are always emerging. This trend is already continuing this year. Since 2021, there have been multiple leaks of ransomware source code and builders ...

  • Moscow City Court sentences Group-IB founder to 14 years for high treason

    July 26, 2023

    The Moscow City Court has sentenced Group-IB founder Ilya Sachkov to 14 years in prison after finding him guilty of high treason, a TASS correspondent reported from the courtroom. Sachkov has been in custody since September 2021. According to the prosecution, in 2011 he handed over classified information to foreign intelligence thus causing reputational damage to ...

  • KillNet Showcases New Capabilities While Repeating Older Tactics

    July 20, 2023

    In early 2022, Mandiant predicted that Russian cyber threat activity associated with the invasion of Ukraine would affect government and private sector targets in third-party countries, particularly neighboring countries, North Atlantic Treaty Organization (NATO) allies, and other nations voicing support for Ukraine. Russian government-linked actors have historically employed false hacktivist facades as a means of ...