Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
Share this analysis

2,648,550 leaked accounts discovered by the BreachAware® Research Team last week.

03 April 2023

A total of 13 breaches were found and analysed resulting in 2,648,550 leaked accounts containing a total of 18 different data types. The breaches found publicly and freely available included GG Corp, Stealer - RedLine 0276, Poker Coaching, Tiktok and Stealer - RedLine 0275. Sign in to view the full BreachAware Breach Index which includes, where available, reference articles relating to each breach.

SPOTLIGHT

An OHS (Occupational Health and Safety) website based in Canada that offers "expert legal advice" about compliance as well as complaint policies and documentation to name a few, has seen its user base dumped online. The company claims that users save 180 hours a year as a result of the ready-to-use resources and easy-to-implement tools. A wide range of data types were exposed in the breach, and several clients of the company are big names working out of Canada that supply natural gas and renewable energy. The passwords are hashed to a lower level and can be easily cracked with the right equipment.

A website that offers poker coaching services in the form of webinars from professorial poker players, who suffered a data breach back late 2019, has seen its breached data come back into circulation. The site says that they are “changing the lives of poker players” and have implemented active learning for users playing poker on their site. The company boasts of some pretty large earnings, for instance, they claim to have paid there poker coaches 57 million dollars.

INFORMATION PRIVACY

Italy's privacy watchdog has temporarily banned the trending OpenAI tool ChatGPT "until ChatGPT respects privacy." OpenAI disabled ChatGPT in Italy and stated OpenAI limits the use of personal data in systems such as ChatGPT, "we want our AI to learn about the world, not about private individuals."

Following increasing warnings that apps from countries such as China, Russia, North Korea and Iran carry a "heightened risk of espionage", France, the Netherlands and Norway are the latest countries to ban the use of TikTok on government issued devices. TikTok has called the bans "basic misinformation."

The Austrian Data protection Authority has decided that the use of Facebook's tracking pixel directly violates GDPR claiming by using these tools, data is inevitably transferred to the USA, where data is at risk of intelligence surveillance.

DATA CATEGORIES DISCOVERED

Technical Data, Contact Data, Usage Data, Documentary Data, Special Category, Locational Data, Financial Data, Socia-Demographic Data.

  • Key Statistics
  • Breaches Discovered
    0
  • ACCOUNTS DISCOVERED
    0
  • DATA TYPES DISCOVERED
    0