Zack Whittaker reports: Ladders, one of the most popular job recruitment sites in the U.S. specializing in high-end jobs, has exposed more than 13.7 million user records, following a security lapse. The New York-based company left an Amazon -hosted Elasticsearch database exposed without a password, allowing anyone to access the data. Sanyam Jain, a security…
Category: Exposure
SkyMed Medical Evacuation Membership Service Exposed Data of 137k Members
Jeremiah Fowler reports on another unsecured elasticsearch database that his firm has found: On March 27th I discovered an unsecured Elasticsearch database that contained what appeared to be members of a medical evacuation membership service. Upon further inspection of the data there were many references that the data allegedly belonged to Florida based SkyMed. It…
In the process of notifying patients of a web exposure breach, Inmediata experiences a mail exposure breach?!
Reading the comments under the Inmediata press release is like watching a train wreck happen right in front of you. Many people are reporting that they have received multiple notification letters from Inmediata — many with the names of people who are unknown to them and who do not live at their address. One person…
VA: Arlington Public Schools Informs Parents of Limited Data Breach
ARLNow reports: An “error” in the data inputted to the college readiness system used by Arlington Public Schools may have exposed the name, address, grade point average and college entrance exam scores of nearly two dozen students to an unrelated parent. Superintendent Patrick Murphy was sending a message, below, to all secondary (grades 6-12) families Friday morning informing…
Report: Unknown Data Breach Exposes 80 Million US Households
vpnMentor’s research team discovered a hack affecting 80 million American households. Known hacktivists Noam Rotem and Ran Locar discovered an unprotected database impacting up to 65% of US households. Hosted by a Microsoft cloud server, the 24 GB database includes the number of people living in each household with their full names, their marital status,…
CPSC Notifies Consumer Product Manufacturers of Possible Data Breach of Safety Information
Merrit Jones and Jena Valdetero of Bryan Cave write: A number of retailers and manufacturers have recently received notices from the U.S. Consumer Product Safety Commission concerning a possible data breach. The CPSC’s letter advises recipients of an unauthorized release of confidential information that did not go through the procedures of 15 U.S.C. § 2055,…