NAS Holes: Air Force Data Leak the Tip of Very Large Iceberg
ID: 751ea222-f032-5978-9629-42d66513b3f7
STIX ID: report--751ea222-f032-5978-9629-42d66513b3f7
Feed Name: Security Ledger
The report documents a series of data breaches caused by Internet-exposed, misconfigured network attached storage (NAS) devices — including a backup belonging to a US Air Force officer — that exposed sensitive personnel files, law enforcement audio/photos, and healthcare records. Researchers (MacKeeper) discovered these devices via Shodan and found many accessible through the rsync protocol (port 873), estimating about 10% of publicly reachable NAS devices are misconfigured; the incidents highlight risks from default/weak credentials, software flaws, and shadow IT across military, government, and private sectors.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
