Sweden Accidentally Leaks Personal Data Of Nearly All Citizens Online


  A massive trove of Swedish citizens belonging to Swedish Transport Agency (STA)(Transportstyrelsen) was mistakenly uploaded onto an unprotected cloud server where it might have been leaked to anyone in the world.

 According to a Swedish Newspaper, the breach took place in September 2015 when STA handed its IT services which included database management to IBM sub-contractors in Eastern Europe (Romania, Serbia and Czech Rep.) who had access to the data without any security clearance. 

Also read: Hackers exploits coding error, steals $31 Million worth of Ethereum

  In March 2016, the Swedish Secret Service found out that the cloud server where those data were uploaded lay unprotected. 

 An investigation into the case was later carried out and it was found that the data available on the server contained personal information such as address, names, vehicle details and pictures of almost every citizen in the country. Details of government military vehicles, driver's license records of military and police officials and also personal details of military members in the secret units and whole lot of other data were part of the breach. 

 After revelation of the leak, the STA's boss Maria Agren resigned from office and was later charged to court. Surprisingly, the court asked her to pay just half of her monthly salary 70,000 Swedish Krona (about $8,500) as punishment for the breach.

Also read: Hackers Breach Radio Station, plays F**K Donald Trump mp3 clip

"All of this was just outside the proper agencies, but outside the European Union, in the hands of people who had absolutely no security clearance. All of this data can be expected to have been permanently exposed," said Rick Falkvinge who is the founder of The Pirate Party. 

"Unlike breaches where malicious users sasaran vulnerable systems, this leak of personally identifiable information was the result of carelessness."

Vevo Hacked By Ourmine, Over 3.12Tb Of Data Released Online


  
 Hacking group OurMine is making news headlines after the group hacked Vevo and released nearly 3.12TB of data online.

 According to reports, the hacking group hijacked Okta account of a Vevo employee and then used the account to gain access to Vevo's data. Gizmodo reports that the hackers reached out to the employee but instead were told to "f*ck off" which then prompted them to post the data, stating that that they would only bring it down if the company asks them to.
 Vevo which is the joint venture between Sony Music entertainment, Universal Music Group, Abu Dhabi Media, Warner Music Group and Google parent company Alphabet Inc confirmed the data breach via a company spokesman who said that the data breach was caused by a phishing scam via LinkedIn. The spokesman said the company is currently investigating the extent of exposure and is addressing the issue..

Also Read: Sweden accidentally leaks personal data of nearly all citizens online

However, the data dumped by OurMine online consist of promotional contents, videos and some official documents. Although most of these files are just social media marketing related documents such as artists info, weekly or monthly music charts etc but some documents are still classified and might reveal a few things about the company

Our is well known for targeting top social media accounts of celebrities, political figures, companies etc to test how weak the security level of theses accounts are, last month hacked HBO's Twitter account as well as Wikileaks' DNS. The group is famously known for hacking the Twitter account of Google CEO Sundar Pichai, Mark Zuckerberg's Twitter and Pinterest account. Buzzfeed, TechCrunch and many other top Social Media accounts have been hacked by this group.

Search

Blog Archive