Researchers Say Fiverr Left User Files Open to Google Search
ID: 65123647-f1f0-500d-b373-b70d6efc10fc
STIX ID: report--65123647-f1f0-500d-b373-b70d6efc10fc
Feed Name: HackRead
Threat Score
A security researcher found thousands of private Fiverr user files (IDs, tax records, contracts, credentials) publicly accessible because Fiverr stored them on Cloudinary with unauthenticated, non-expiring URLs that were indexed by search engines; Fiverr disputes that this is a breach, but experts warn the misconfiguration exposed sensitive PII and credentials and recommend affected users monitor for identity theft and change exposed credentials.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
