Wednesday, January 27, 2021
GL - NEWS
  • Home
  • GEEK NEWS
  • MOBILES
    • ASUS
    • SAMSUNG
    • ONEPLUS
    • MOTOROLA
    • LG
    • HUAWEI
    • GOOGLE PIXEL
    • LENOVO
    • HTC
  • APPLE PHONES
    • iPHONE
    • iPAD
    • iPAD MINI
    • iPAD AIR
    • iPAD PRO
  • APPLE
    • MAC MINI
    • MAC PRO
    • iMAC
    • iMAC PRO
    • MACBOOK AIR
    • MACBOOK PRO
    • APPLE TV
    • APPLE TV 4K
    • TV OS
  • GOOGLE
    • ANDROID TV
    • ANDROID AUTO
    • WEAR OS
  • GOOGLE TECH
    • GOOGLE CHROME
    • YOUTUBE
    • G-SUITE
    • GOOGLE NEST
  • GAMES
No Result
View All Result
GL - NEWS
  • Home
  • GEEK NEWS
  • MOBILES
    • ASUS
    • SAMSUNG
    • ONEPLUS
    • MOTOROLA
    • LG
    • HUAWEI
    • GOOGLE PIXEL
    • LENOVO
    • HTC
  • APPLE PHONES
    • iPHONE
    • iPAD
    • iPAD MINI
    • iPAD AIR
    • iPAD PRO
  • APPLE
    • MAC MINI
    • MAC PRO
    • iMAC
    • iMAC PRO
    • MACBOOK AIR
    • MACBOOK PRO
    • APPLE TV
    • APPLE TV 4K
    • TV OS
  • GOOGLE
    • ANDROID TV
    • ANDROID AUTO
    • WEAR OS
  • GOOGLE TECH
    • GOOGLE CHROME
    • YOUTUBE
    • G-SUITE
    • GOOGLE NEST
  • GAMES
No Result
View All Result
GL - NEWS
No Result
View All Result
Home GEEK NEWS

RailYatri’s Server Could Have Exposed Debit/ Credit Cards of Over 7 Lakh Users: Report – GL-NEWS

by Admin-NEWSGL
August 24, 2020
in GEEK NEWS
0
RailYatri’s Server Could Have Exposed Debit/ Credit Cards of Over 7 Lakh Users: Report – GL-NEWS
Share on FacebookShare on Twitter

Popular Indian ticketing platform, RailYatri, is reported to have exposed the private information of over 7 lakh (700,000) users due to an unsecure server. The platform, for those unaware, allows users across India to easily book railway and bus tickets. It has today been reported that RailYatri’s servers suffered a massive data breach (due to inadequate safety protocols) with almost 43GB of data on the exposed server.

The exposed Elasticsearch server was first spotted by a team of researchers at the cybersecurity firm, Safety Detectives, on August 10. While the team was reviewing the server data, it was hit by a Meow bot attack that wiped almost all of the server data. A massive 43GB database, which contained more than 37 million records, was reduced down to just around 1GB.

The Meow bot attack, for the uninitiated, is a new type of attack that erases unsecured Elasticsearch, MongoDB, or Redis servers. So, what all data could have been leaked by the unsecured server? It contained more than 37 million records with log files and over 7 lakh unique e-mail addresses.

Not just e-mail addresses, the security firm says that the server also revealed a user’s full name, phone number, address, gender, age, and payment logs. It even included UPI IDs, credit and debit cards (saved payment info), and the user’s GPS location as well. This means one could use all of this information to not only locate you but learn about any of your upcoming travel plans.

The security researchers first contacted the company to resolve the security issue but received no reply. It then reached out to the Indian National Computer Emergency Response Team (CERT-In) and the server vulnerability was fixed within a day.

If you are a RailYatri user though, we suggest you to reset your password, delete your saved UPI data or credit/ debit cards, and change their PIN codes as well – if possible. The data breach could be consequential for users, who fail to understand that all their private information may be in the hands of a third-party, and they can abuse it to no avail. The company has been unreachable despite several attempts, as per the report.

Previous Post

Children Of Morta Launches New Paws And Claws Charity DLC – GL NEWS

Next Post

The Hulkbuster Is Unleashed In The Avengers Launch Trailer – GL NEWS

Related Posts

Walmart will use robots to show shops into automated success facilities
GEEK NEWS

Walmart will use robots to show shops into automated success facilities

GEEK NEWS

Lime begins trialing shared electrical mopeds

Intel begins transport its first Iris Xe discrete graphics playing cards for desktop
GEEK NEWS

Intel begins transport its first Iris Xe discrete graphics playing cards for desktop

GEEK NEWS

Disney and Comcast are sharing streaming rights to ‘Fashionable Household’

GEEK NEWS

Tasker's Android cellphone automation connects with Google Assistant

‘Godzilla vs. Kong’ makes its HBO Max debut on March thirty first
GEEK NEWS

‘Godzilla vs. Kong’ makes its HBO Max debut on March thirty first

Next Post
The Hulkbuster Is Unleashed In The Avengers Launch Trailer – GL NEWS

The Hulkbuster Is Unleashed In The Avengers Launch Trailer - GL NEWS

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Comments

    DEVELOPER

    SATYA TEJ E

    DEVELOEPER

    SHIVA KUMAR A

    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • ABOUT US
    • CONTACT US

    © 2020 GeekLeap - Empowering the Internet Generation

    No Result
    View All Result
    • Home
    • GEEK NEWS
    • MOBILES
      • ASUS
      • SAMSUNG
      • ONEPLUS
      • MOTOROLA
      • LG
      • HUAWEI
      • GOOGLE PIXEL
      • LENOVO
      • HTC
    • APPLE PHONES
      • iPHONE
      • iPAD
      • iPAD MINI
      • iPAD AIR
      • iPAD PRO
    • APPLE
      • MAC MINI
      • MAC PRO
      • iMAC
      • iMAC PRO
      • MACBOOK AIR
      • MACBOOK PRO
      • APPLE TV
      • APPLE TV 4K
      • TV OS
    • GOOGLE
      • ANDROID TV
      • ANDROID AUTO
      • WEAR OS
    • GOOGLE TECH
      • GOOGLE CHROME
      • YOUTUBE
      • G-SUITE
      • GOOGLE NEST
    • GAMES

    © 2020 GeekLeap - Empowering the Internet Generation