Researchers Test UN’s Cybersecurity, Find Data on 100k
ID: a9455341-457c-5857-9578-8317778b9147
STIX ID: report--a9455341-457c-5857-9578-8317778b9147
Feed Name: Security Ledger
Independent security researchers from Sakura Samurai discovered misconfigured U.N. public-facing servers and an exposed GitHub repository that exposed database backups, application credentials and personally identifying information — including more than 100,000 employee travel records and thousands of staff records. The researchers accessed and reviewed the data under a Vulnerability Disclosure Program and reported the issue; the U.N. remediated the flaw within a week but has not confirmed whether any malicious actors accessed the exposed data, and researchers warned the information could be useful to nation-state actors or other adversaries.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
