Cybersecurity

GST Invoice Billing Inventory exposes sensitive data to threat actors

GST Invoice Billing Inventory exposes sensitive data to threat actors Pierluigi Paganini December 06, 2023 GST Invoice Billing Inventory, a business accounting app for small and medium businesses with over 1M downloads has left a database open, exposing sensitive personal and corporate data up for grabs. The popular and reputable GST Invoice Billing Inventory (previously […]

Cybersecurity

Fortune-telling website WeMystic exposes 13M+ user records

Fortune-telling website WeMystic exposes 13M+ user records Pierluigi Paganini December 02, 2023 WeMystic, a website on astrology, numerology, tarot, and spiritual orientation, left an open database exposing 34GB of sensitive data about the platforms’ users. Telling the future is a tricky business, and failure to foretell your own mishaps doesn’t help. The content platform WeMystic […]

Cybersecurity

Hello Alfred app exposes user data

Hello Alfred app exposes user data Pierluigi Paganini October 27, 2023 Hello Alfred, an in-home hospitality app, left a database accessible without password protection, exposing almost 170,000 records containing private user data. Hello Alfred is a one-stop application allowing real estate developers and property managers to provide in-home services and maintenance to residents. It also enables […]

Cybersecurity

San Francisco’s transport agency Metropolitan Transportation Commission (MTC) exposes drivers’ plate numbers and addresses

San Francisco’s transport agency Metropolitan Transportation Commission (MTC) exposes drivers’ plate numbers and addresses Pierluigi Paganini October 03, 2023 A misconfiguration in the Metropolitan Transportation Commission (MTC) systems caused a leak of over 26K files, exposing clients’ home addresses and the plate numbers of their vehicles. The Metropolitan Transportation Commission (MTC) is a governmental agency […]

Cybersecurity

Space and defense tech maker Exail Technologies exposes database access

Space and defense tech maker Exail Technologies exposes database access Pierluigi Paganini September 21, 2023 Exail Technologies, a high-tech manufacturer whose clients include the US Coast Guard, exposed sensitive company data that could’ve enabled attackers to access its databases. Exail, a French high-tech industrial group, left exposed a publicly accessible environment (.env) file with database […]