logo

OWASP discloses data breach caused by wiki misconfiguration

ID: c4cc37c3-b4e9-5368-90f4-8677cf1831d7

STIX ID: report--c4cc37c3-b4e9-5368-90f4-8677cf1831d7

Feed Name: Bleeping Computer

Threat Score
30/100

Date Published: 2024-04-01

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

OWASP disclosed a data breach in which a misconfigured MediaWiki server exposed resumes submitted by members between 2006 and 2014 containing names, emails, phone numbers, physical addresses and other personally identifiable information. The foundation removed the resumes, disabled directory browsing, purged Cloudflare cache, requested removal from the Web Archive, and plans to notify affected individuals; there is no reported evidence of active exploitation and much of the data may be outdated.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.