Zero Zero Security-D&D Data Leakage Alarm Daily [Issue 31]

01Overview
On
October 26, 2022, a total of 70,642 pieces of anonymous online information were found; in the last 7 days, a total of 472,185 pieces of anonymous online information were found, a year-on-year increase of -42%; in the last 30 days, a total of 2,498,093 pieces of anonymous online information were found.
D&D Comments:
Internationally, there has been an increase in source code leakage incidents of foreign companies recently.
insert image description here

02
International Hotspots
This chapter only randomly selects five overseas events or events involving other countries and well-known overseas institutions. The following is the monitored intelligence data, and the D&D system does not make authenticity judgments and tests.

2.1. Chaos.com data and V-RAY software source code
Involved countries/organizations: America/CHAOS GROUP
Seller: Tiananmen1989
Sample data: a small number of samples
Data volume: unknown
Details: Chaos is the world's leading computer graphics and image visualization company. V-Ray is a 3D rendering software from Chaos. September 2022 Hackers dump all data from Chaos' internal systems, including GitLab, file shares and databases, from their Google Cloud Storage and nfs file shares. A total dump of the latest gitlab server (500GB), which contains many source codes, including V-RAY, Chaos Cloud backend services, etc.
Data File Type: Unknown
Leaked Information: Source Code
Price: 500 Monero

2.2.1M Indian government employee database
Involved countries/organizations: India
Seller: munshe
Sample data: a few samples
Data volume: 1,012,678 rows
Details: Indian (all states) government employee database as of June 2021.
Data File Type: xlsx
Leaked Information: Name, Physical Address, State, Phone Number, Department, PIN.
Price: None

2.3. TAP Portugal Aviation Database - Leaked
Country/Organization Involved: Portugal
Seller: Tegyrios
Sample Data: None
Data Volume: 82986778 Lines 6.17GB
Details: In August 2022, TAP Air Portugal, the Portuguese airline, became a blackmail implemented by the Ragnar Locker gang The target of the software attack, the gang later leaked the compromised data via the public dark web. More than 5 million unique email addresses were exposed along with other personal data, including name, gender, DoB, phone number, and physical address.
Data File Type: Unknown
Information Exposed: Date of Birth, Email Address, Gender, Full Name, Nationality, Phone Number, Physical Address, Salutation, Spoken Language.
Price: free

2.4. Mobile phone number data - United Kingdom
Involved countries/organizations: United Kingdom
Seller: bary40
Sample data: a small number of samples Data
volume: 40,000 rows
Details: None
Data file type: Excel file
Leaked information: name, gender, country, address, City, ZIP Code, Region, Cell Phone.
Price: unknown

2.5. FullCalc USA, Financial Company, Internal Data
Country/Organization Involved: United States
Seller: MedusaSVT
Sample Data: Yes
Data Volume: Unknown
Details: FullCalc is a company operating in the financial services industry. They develop software for pos machines. Links include source code and databases, documents and internal data of the linking company.
Data Breach Date: 2022-10-18
Price: Unknown.

03Domestic
intelligence
The recent leakage of personal information of domestic corporate executives and securities users in a certain province was detected.

Guess you like

Origin blog.csdn.net/miffy_00sec/article/details/127632086