时间:2025-08-02 09:37:36 来源:网络整理编辑:知識
Login data for more than half a million records tied to vehicle tracking device company SVR Tracking
Login data for more than half a million records tied to vehicle tracking device company SVR Tracking have leaked online, potentially exposing the personal and vehicle data of drivers and businesses using its service.
The leaked repository was first spotted by the Kromtech Security Center, which blamed a misconfigured Amazon AWS S3 bucket that was left publicly accessible for an unknown period of time for the breach. Kromtech first noticed the cache on Sept. 18, according to Gizmodo, and the bucket was closed from public access hours after the security company alerted SVR on Sept. 20.
The records included user login info like emails and passwords, along with VINs (vehicle identification numbers) and license plate numbers, data about the GPS devices, and "other data" collected by SVR Tracking about its devices, customers, and auto dealerships that do business with the company.
SEE ALSO:Equifax has been directing victims to a fake phishing site for weeksThe data was kept in a backup folder called "accounts," which contained 540,642 entries. Some of those entries were associated with multiple vehicles. Kromtech said the total number of devices exposed "could be much larger given the fact that many of the resellers or clients had large numbers of devices for tracking."
The SVR leak contained extensive vehicle location records along with account information. The company offers continuous tracking in case cars are stolen or impounded, collecting reams of GPS data.
The service records "heartbeats" (GPS location beacons) from its devices every four hours, and stores location info for everywhere a monitored car has been for as long as 120 days in the past — meaning that someone who gained access to an account's password could both track a vehicle in real time and build a detailed log of every location it has visited. They could outright steal the car, stalk its driver, or rob a home when they know a vehicle's owner is out and about.
The folder also contained 339 logs with photos and data about vehicle status and maintenance records, along with a document that provided details about 427 dealerships that use SVR's services.
SVR didn't respond directly to Kromtech, although the leaked records were blocked from public access shortly after Kromtech provided info about the leak. The company hasn't replied to our request for comment on the matter, either.
The type of constant monitoring offered by SVR is designed to give car owners some peace of mind with the knowledge that they'll always be in control of their vehicle. This type of leak, however, does the opposite, potentially handing the digital keys to cybercriminals who could've used the data for their own means.
TopicsCybersecurity
Felix the cat just raised £5000 for charity because she's the hero we all need2025-08-02 09:11
維納爾杜姆:不開心在巴黎的處境 榮幸做梅西隊友2025-08-02 09:10
唐佳麗替補策動進球熱刺女足12025-08-02 09:03
西媒質疑梅西為何沒免費留隊 他本願接受更低報價2025-08-02 08:51
Airbnb activates disaster response site for Louisiana flooding2025-08-02 08:25
中沙戰國足目標是啥?力爭不丟球 守住希望這條底線2025-08-02 08:19
南美區積分榜:巴阿不敗絕塵 落魄智利贏回生機2025-08-02 08:08
熱刺總監否認凱恩離隊傳聞 :他愛球隊 對其有歸屬感2025-08-02 07:50
Olympic security asks female Iranian fan to drop protest sign2025-08-02 07:48
國足需警惕沙特邊鋒穆瓦拉德 曾在天河破門絕殺恒大2025-08-02 06:52
This app is giving streaming TV news a second try2025-08-02 08:52
弗裏克接手德國5戰5勝第一隊出線 轟18球隻丟1球2025-08-02 08:35
萊萬:不覺得命運欠我金球獎 我的成就已說明一切2025-08-02 08:12
國足恐難在沙特身上創造奇跡 中場不能僅靠吳曦去攔截2025-08-02 08:01
J.K. Rowling makes 'Harry Potter' joke about Olympics event2025-08-02 07:59
廣州隊前功勳教練再下課 巴甲隊官宣與斯科拉裏解約2025-08-02 07:49
河南換帥足協杯提供磨合良機 球隊不會改變既定打法2025-08-02 07:44
萊萬:不覺得命運欠我金球獎 我的成就已說明一切2025-08-02 07:43
5 people Tim Cook calls for advice on running the biggest company in the world2025-08-02 07:05
國足恐難在沙特身上創造奇跡 中場不能僅靠吳曦去攔截2025-08-02 06:57