Due to the dangerous misconfiguration of a third-party database owner, personal data of 23 million users was exposed.
Users of Mangatoon, which is a comic reading platform and also is a very popular iOS and Android app, became victims of an intruder. Data breach concerns 23 million user accounts.
Due to the breach, email addresses, names, genders, social media account identities and some other data was exposed. The problem was at the side of a contractor, named Elasticsearch. One of its servers wasn’t protected appropriately, because weak credentials were used. This made the attack possible.
The malicious act was conducted by infamous “pompompurin”, which is known for sending of fake cyberattack emails and stealing customer data from Robinhood.
With the permanent growth of information security incidents it’s crucial to strengthen any organization’s security perimeter. A mixture of various measures, including such basic and important issues, as complex credentials, two-factor authentication together with regular trainings to increase employees’ information security awareness will be helpful. Also, the assistance of advanced software can help a lot. Such software should detect weak combinations of login and password, as well as tampering or other users’ suspicious activities. The SIEM system deals with these tasks.
SearchInform uses four types of cookies as described below. You can decide which categories of cookies you wish to accept to improve your experience on our website. To learn more about the cookies we use on our site, please read our Cookie Policy.
Always active. These cookies are essential to our website working effectively.
Cookies does not collect personal information. You can disable the cookie files
record
on the Internet Settings tab in your browser.
These cookies allow SearchInform to provide enhanced functionality and personalization, such as remembering the language you choose to interact with the website.
These cookies enable SearchInform to understand what information is the most valuable to you, so we can improve our services and website.
These cookies are created by other resources to allow our website to embed content from other websites, for example, images, ads, and text.
Please enable Functional Cookies
You have disabled the Functional Cookies.
To complete the form and get in touch with us, you need to enable Functional Cookies.
Otherwise the form cannot be sent to us.
Subscribe to our newsletter and receive a bright and useful tutorial Explaining Information Security in 4 steps!
Subscribe to our newsletter and receive case studies in comics!