Exposed Orvibo database leaks two billion records
Tuesday, July 2, 2019
In addition, “the video feed from the smart cameras is easily accessible by entering the owner’s account with the credentials found in the database,” the report said.
“Unfortunately, such overt negligence is not that uncommon amid IoT and smart homes vendors,” said Ilia Kolochenko, founder and CEO of ImmuniWeb. “Most of them compete on a turbulent, aggressive and highly competitive global market and in order to stay afloat, they have to slay internal security costs.”
As a result, their business “may be ruined by private and class[-action] lawsuits, let alone penalties and fines imposed by regulatory authorities,” Kolochenko explained, noting victims don’t really have recourse but should change any similar passwords immediately.
“Worse, many similar incidents never go to the media, ending up in hands of cybercriminals,” he added. “The more we will entrust our daily lives to precarious vendors, the more detrimental and dangerous risks we will eventually face. In a couple of years, attackers will likely be able to conduct mass killings of unwitting users of many emerging technologies.”
The researchers reported their findings to Orvibo, but did not hear back, and contend that “as long as the database remains open, the amount of data available continues to increase each day.” Read Full Article
Computer Business Review: PCM Hacked: Cloud Services Firm Plays Down Impact
Forbes: Florida City Agrees To Astonishing $600,000 Ransom Payout (Updated)