logo

A breach of Gravy Analytics’ huge trove of location data threatens the privacy of millions

ID: 9168b36a-a3e5-513b-a159-beefe8426610

STIX ID: report--9168b36a-a3e5-513b-a159-beefe8426610

Feed Name: TechCrunch Security News

Threat Score
78/100

Date Published: 2025-01-13

Date Updated: 2026-04-23

Author: Zack Whittaker

...
...

TechCrunch reports that Gravy Analytics (merged with Unacast) suffered a cloud breach after a misappropriated key allowed a threat actor to steal several terabytes of location/bidstream data; a sample containing over 30 million location points was posted to a closed cybercrime forum. The dataset includes device location traces from popular apps and reveals visits to sensitive sites (e.g., White House, Kremlin, military bases), enabling deanonymization risks, threats to vulnerable populations, and broader privacy/national-security implications.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.