But rare are these times.
Understanding a breach and its potential impact takes careful attention and time.
So, we need to be thorough and ensure everything we present is correct and true.
We traced this back to CHS Consulting, a London-based consulting firm.
However, as the company has no website, we cannot confirm their ownership of the database.
By December 19th, the breach had been closed and the database secured.
Example of Entries in the Database
The exposed databasecontained files belonging to many UK-based consultancy firms.
They’re usually the result of an error by the owner of the bucket.
Amazon provides detailed instructions to AWS users to help them secure S3 buckets and keep them private.
To learn more about data vulnerabilities in general,read ourcomplete guide to online privacy.
They examine each hole for data being leaked.
When they find a data breach, they use expert techniques to verify the database’s identity.
We then alert the company to the breach.
If possible, we will also alert those affected by the breach.
Our team was able to access this AWS S3 bucket database because it was completely unsecured and unencrypted.
The purpose of this web mapping project is to help make the internet safer for all users.
As ethical hackers,we’re obliged to inform a company when we discover flaws in their online security.
These ethics also mean we carry a responsibility to the public.
People affected must be aware of a data breach that impacts them also.
We also never sell, store, or expose any information we encounter during our security research.
About Us and Previous Reports
vpnMentoris the world’s largest VPN review website.
Our ethical security research team has discovered and disclosed some of the most impactful data leaks in recent years.
This has included a huge data leakexposing the biometrics and fingerprints of over 1 million people globally.
We also revealed how British video editing platform VEED had compromised theprivacy and security of their users.
You may also want to read ourVPN Leak Report and Data Privacy Stats Report.
[Publication date: 31.12.2019]
just, comment on how to improve this article.