1.2 billion records exposed in unsecured database

Security researchers found an unprotected server that exposed 1.2 billion records of personal data, including email addresses, employers, locations, job titles, names, phone numbers and social media profiles, according to a notification sent Friday to people affected by the exposure.

“In October 2019, security researchers Vinny Troia and Bob Diachenko identified an unprotected Elasticsearch server,” according to the email. “The exposed data included an index indicating it was sourced from data enrichment company People Data Labs and contained 622 million unique email addresses.”

PDL NoticePDL Notice

Screenshot by CNET

The data had been aggregated by PDL, but the email added that PDL didn’t own the server. Rather, a customer likely “failed to properly secure the database.”

The exposure was dated Oct. 16.

PDL didn’t immediately respond to a request for comment. The company’s LinkedIn profile said it has a “dataset of 1.5 billion unique person profiles to build products, enrich person profiles, power predictive modeling/AI, analysis, and more.”

PDL is based in San Francisco and mentions working with companies including eBay and Adidas “as their engineering focused people data partner.”

Read also

Check Also

iPad 10th Gen Review: Better Design, Worse Price

I wish life could be simple. Unfortunately, that’s not always the case. When it comes to Apple’s iPad lineup, which used to have just one model called the “iPad” back in the day, picking which one to buy has become a strangely entangled process. Somewhere between every single model Apple offers is the perfect iPad, …

Leave a Reply