A major data broker hack may have leaked precise location info for millions

Share via:


Last week, major location data broker Gravy Analytics disclosed a data breach that may have resulted in the theft of precise location data for millions of people, reports TechCrunch. That appears to include data from popular mobile games like Candy Crush, as well as dating apps, pregnancy tracking apps, and more, as 404 Media wrote on Thursday, following up its report of the breach two days earlier.

Baptiste Robert, CEO of digital security company Predicta Lab, said in a series of posts Wednesday that the small sample data set published in a Russian forum contained data for “tens of millions of data points worldwide” and included “sensitive locations like the White House, Kremlin, Vatican, military bases, and more.” As TechCrunch notes, the sample alone contained more than 30 million locations.

Gravy said in its disclosure to the Norwegian Data Protection Authority that it “identified unauthorized access to its AWS cloud storage environment” on January 4th. It says in the disclosure that it’s still investigating how long hackers had access to its cloud environment and whether the hack “constitutes a reportable personal data breach.” As for what or who was affected, the company writes:

Gravy Analytics is working diligently to determine the scope of the incident and the nature of the information involved. Preliminary findings indicate that an unauthorized person obtained certain files, which could contain personal data. These are currently being analyzed. If it is determined that personal data is involved, that personal data is likely associated with users of third-party services that supply this data to Gravy Analytics.

Gravy Analytics was one of two data brokers targeted last month in a proposed FTC order that forbids it from “selling, disclosing, or using sensitive location data in any product or service.” The FTC at the time wrote that its subsidiary, Venntel, collected data from apps and sold access to that data to businesses or government agencies, including the IRS, DEA, FBI, and ICE.



Source link

Disclaimer

We strive to uphold the highest ethical standards in all of our reporting and coverage. We StartupNews.fyi want to be transparent with our readers about any potential conflicts of interest that may arise in our work. It’s possible that some of the investors we feature may have connections to other businesses, including competitors or companies we write about. However, we want to assure our readers that this will not have any impact on the integrity or impartiality of our reporting. We are committed to delivering accurate, unbiased news and information to our audience, and we will continue to uphold our ethics and principles in all of our work. Thank you for your trust and support.

Popular

More Like this

A major data broker hack may have leaked precise location info for millions


Last week, major location data broker Gravy Analytics disclosed a data breach that may have resulted in the theft of precise location data for millions of people, reports TechCrunch. That appears to include data from popular mobile games like Candy Crush, as well as dating apps, pregnancy tracking apps, and more, as 404 Media wrote on Thursday, following up its report of the breach two days earlier.

Baptiste Robert, CEO of digital security company Predicta Lab, said in a series of posts Wednesday that the small sample data set published in a Russian forum contained data for “tens of millions of data points worldwide” and included “sensitive locations like the White House, Kremlin, Vatican, military bases, and more.” As TechCrunch notes, the sample alone contained more than 30 million locations.

Gravy said in its disclosure to the Norwegian Data Protection Authority that it “identified unauthorized access to its AWS cloud storage environment” on January 4th. It says in the disclosure that it’s still investigating how long hackers had access to its cloud environment and whether the hack “constitutes a reportable personal data breach.” As for what or who was affected, the company writes:

Gravy Analytics is working diligently to determine the scope of the incident and the nature of the information involved. Preliminary findings indicate that an unauthorized person obtained certain files, which could contain personal data. These are currently being analyzed. If it is determined that personal data is involved, that personal data is likely associated with users of third-party services that supply this data to Gravy Analytics.

Gravy Analytics was one of two data brokers targeted last month in a proposed FTC order that forbids it from “selling, disclosing, or using sensitive location data in any product or service.” The FTC at the time wrote that its subsidiary, Venntel, collected data from apps and sold access to that data to businesses or government agencies, including the IRS, DEA, FBI, and ICE.



Source link

Disclaimer

We strive to uphold the highest ethical standards in all of our reporting and coverage. We StartupNews.fyi want to be transparent with our readers about any potential conflicts of interest that may arise in our work. It’s possible that some of the investors we feature may have connections to other businesses, including competitors or companies we write about. However, we want to assure our readers that this will not have any impact on the integrity or impartiality of our reporting. We are committed to delivering accurate, unbiased news and information to our audience, and we will continue to uphold our ethics and principles in all of our work. Thank you for your trust and support.

Website Upgradation is going on for any glitch kindly connect at office@startupnews.fyi

More like this

PayPal boosts stablecoin use with 3.7% rewards on balances

The program will begin this summer, expected between...

US, China tariffs need to fall for trade talks...

US Treasury Secretary Scott Bessent said on Wednesday...

The relationship between SEO and Generative AI

New Delhi , April 24: In this age...

Popular

Upcoming Events

OpenAI seeks to make its upcoming open AI model...

Toward the end of March, OpenAI announced its...

PM Modi Vows Unimaginable Consequences for Perpetrators of Attack

In response to the terror attack in Pahalgam, Jammu...

Rajasthan HC Flags False Claims By Samskara Resort, Grants...

SUMMARY The court was hearing a plea by OYO...
GdfFD GFD GFD GFD GFD GFD GFD