Skip to main content

Nearly 32 million personal files with sensitive data have been exposed

Your full name, address, and partial credit card numbers may have been exposed in a data breach involving field service management business ServiceBridge. Security researcher Jeremiah Fowler’s report uncovers that nearly 32 million non-password-protected files, such as contracts, invoices, agreements, and more, were exposed.

The information was publicly accessible, with no security authorization needed, for an undisclosed amount of time, and there is no official confirmation of who may have accessed it. The files date back to 2012 and are linked to companies from Canada, numerous European countries, the U.S., and the U.K.

The exposed files also included inspections, phone numbers, and Health Insurance Portability and Accountability Act (HIPAA) consent forms, and more.

Screenshot of an inspection of an iOT device.
Website Planet

The files named “site audit reports” contained pictures of businesses’ exterior and interior, gate access codes, and other access data. This breach affects various companies since, as Fowler mentions in his report: “The ServiceBridge platform was built to serve multiple industries such as commercial or industrial services, pest and animal control, cleaning, landscaping, construction, and other services. The documents I saw listed a wide range of customers: from private homeowners, schools, and religious institutions to well-known chain restaurants, Las Vegas casinos, medical providers, and many others.”

The exposed files put many customers at risk of fraud and other criminal activity, such as spear phishing, as the leak included internal information that only the customer and business would know.

Fowler advises businesses and customers to protect themselves by instructing them to “always keep accurate records of vendors, contractors, and customers to verify that payment requests are legitimate. Paying invoices on time is important for any business, and criminals exploit the need for fast payments.

If something feels suspicious about an invoice, I recommend withholding the payment until the information is verified. Customers should also be vigilant when they are contacted by businesses they have used in the past asking for additional information or unexpected payment requests.”

With data breaches on the rise, it’s always a good idea to have one of the best identity theft protection services.

Judy Sanhz
Judy Sanhz is a Digital Trends computing writer covering all computing news. Loves all operating systems and devices.
Personal data of 69 million Neopets users is now up for sale after a data breach
Person typing on a computer keyboard.

Neopets, an aged website that lets users keep virtual pets and take care of them, just suffered a major data breach. Aside from the personal data of over 69 million users, the hacker was able to obtain the website's source code.

This isn't the first time Neopets has faced a massive leak, but this time around, user data is currently being sold for crypto -- and the leak includes more than just usernames and passwords.

Read more
Cyberattacks have nearly doubled since last year, report says
Cybersecurity is a constant battle.

A recent analysis by fraud-buster and cybersecurity company Seon found that cyberattacks have nearly doubled since last year. Given that the number of people using the internet worldwide is creeping upward quite slowly by comparison, that means the odds that you'll be affected are increasing rapidly. It's time to double-check your security settings.

The most common cyberattacks reported were ransomware, phishing, and malware. Ransomware refers to software that threatens you with data loss or the sharing of personal information if a payment isn't made. Malware is similar but takes direct action to gain unauthorized access to your data, storage, and computer-processing power.

Read more
The world’s most sensitive data could be vulnerable to this new hack
A hacker inputting code into a system.

A possible security attack has just been revealed by researchers, and while difficult to carry out, it could potentially endanger some of the most sensitive data in the world.

Dubbed "SATAn," the hack turns a typical SATA cable into a radio transmitter. This permits the transfer of data even from devices that would otherwise not allow it at all.

Read more