ICT Security-Sécurité PC et Internet
87.2K views | +1 today
Follow
ICT Security-Sécurité PC et Internet
ICT Security + Privacy + Piracy + Data Protection - Censorship - Des cours et infos gratuites sur la"Sécurité PC et Internet" pour usage non-commercial... (FR, EN+DE)...
Curated by Gust MEES
Your new post is loading...
Your new post is loading...
Scooped by Gust MEES
October 6, 2021 11:38 AM
Scoop.it!

Twitch source code, business data, gamer payouts leaked in massive hack

Twitch source code, business data, gamer payouts leaked in massive hack | ICT Security-Sécurité PC et Internet | Scoop.it

An unknown hacker has leaked the entirety of Twitch's source code among a 125GB trove of data released this week. 

The hack, first reported by Video Games Chronicle and confirmed by multiple sources, includes:

The entirety of twitch.tv, with commit history going back to its early beginnings

Mobile, desktop and console Twitch clients

Creator payout reports from 2019

Proprietary SDKs and internal AWS services used by Twitch

Every other property that Twitch owns including IGDB and CurseForge

An unreleased Steam competitor, codenamed Vapor, from Amazon Game Studios

Twitch SOC internal red teaming tools 

The hacker, who called themselves "Anonymous" on a 4chan discussion board, said Twitch's community is "a disgusting toxic cesspool, so to foster more disruption and competition in the online video streaming space, we have completely pwned them, and in part one, are releasing the source code from almost 6,000 internal Git repositories."

 

Learn more / En savoir plus / Mehr erfahren: 

 

https://www.scoop.it/topic/securite-pc-et-internet

 

https://www.scoop.it/topic/securite-pc-et-internet/?&tag=Twitch-Leak

 

Gust MEES's insight:

An unknown hacker has leaked the entirety of Twitch's source code among a 125GB trove of data released this week. 

The hack, first reported by Video Games Chronicle and confirmed by multiple sources, includes:

The entirety of twitch.tv, with commit history going back to its early beginnings

Mobile, desktop and console Twitch clients

Creator payout reports from 2019

Proprietary SDKs and internal AWS services used by Twitch

Every other property that Twitch owns including IGDB and CurseForge

An unreleased Steam competitor, codenamed Vapor, from Amazon Game Studios

Twitch SOC internal red teaming tools 

The hacker, who called themselves "Anonymous" on a 4chan discussion board, said Twitch's community is "a disgusting toxic cesspool, so to foster more disruption and competition in the online video streaming space, we have completely pwned them, and in part one, are releasing the source code from almost 6,000 internal Git repositories."

 

Learn more / En savoir plus / Mehr erfahren: 

 

https://www.scoop.it/topic/securite-pc-et-internet

 

https://www.scoop.it/topic/securite-pc-et-internet/?&tag=Twitch-Leak

 

No comment yet.
Scooped by Gust MEES
November 2, 2012 9:42 AM
Scoop.it!

How to Prevent Data Leakage in Public Institutions and Organisations | ePractice

How to Prevent Data Leakage in Public Institutions and Organisations | ePractice | ICT Security-Sécurité PC et Internet | Scoop.it

ePractice.eu provides its members with a blog in which all registered users can post opinions, questions and links to news related to eGovernment, eInclusion and eHealth.

 

Your point of view is what makes ePractice.eu relevant to other public administrators all over Europe, so feel free to post and...

 

How to Prevent Data Leakage in Public Institutions and Organisations


22 October 2012 


Public Institutions at all administrative levels are responsible for a huge quantity of sensitive data. With more and more governmental services becoming electronic this amount increases rapidly. Therefore it is crucial to secure public institutions against external attacks that aim to maliciously access this data.
There are several technical solutions to keep data safe, but human factor and the cooperation between IT departments as well as information governance are vital to prevent leaks.


The seminar ===> How to Prevent Data Leakage in Public Institutions and Organisations <=== will be taking place in ===> Berlin on November 29th and 30th 2012. <===

 

Read more:

http://www.epractice.eu/en/blog/5400446

 

No comment yet.
Scooped by Gust MEES
August 27, 2021 8:54 AM
Scoop.it!

Microsoft Power Apps misconfiguration exposes 38 million data records | #CyberSecurity #DataLeaks

Microsoft Power Apps misconfiguration exposes 38 million data records | #CyberSecurity #DataLeaks | ICT Security-Sécurité PC et Internet | Scoop.it

Sensitive data including COVID-19 vaccination statuses, social security numbers and email addresses have been exposed due to weak default configurations for Microsoft Power Apps, according to Upguard.

Upguard Research disclosed multiple data leaks exposing 38 million data records via Microsoft Power Apps portals configured to allow public access.

The data leaks impacted American Airlines, Microsoft, J.B. Hunt and governments of Indiana, Maryland and New York City. Upguard first discovered the issue involving the ODdata API for a Power Apps portal on May 24 and submitted a vulnerability report to Microsoft June 24.

According to Upguard, the primary issue is that all data types were public when some data like personal identifying information should have been private. Misconfiguration led to some private data being surfaced.

Microsoft Power Apps are low-code tools to design apps and create public and private web sites.

 

Learn more / En savoir plus / Mehr erfahren: 

 

https://www.scoop.it/topic/securite-pc-et-internet

 

Gust MEES's insight:

Sensitive data including COVID-19 vaccination statuses, social security numbers and email addresses have been exposed due to weak default configurations for Microsoft Power Apps, according to Upguard.

Upguard Research disclosed multiple data leaks exposing 38 million data records via Microsoft Power Apps portals configured to allow public access.

The data leaks impacted American Airlines, Microsoft, J.B. Hunt and governments of Indiana, Maryland and New York City. Upguard first discovered the issue involving the ODdata API for a Power Apps portal on May 24 and submitted a vulnerability report to Microsoft June 24.

According to Upguard, the primary issue is that all data types were public when some data like personal identifying information should have been private. Misconfiguration led to some private data being surfaced.

Microsoft Power Apps are low-code tools to design apps and create public and private web sites.

 

Learn more / En savoir plus / Mehr erfahren: 

 

https://www.scoop.it/topic/securite-pc-et-internet

 

No comment yet.