Saturday, January 23, 02:36
Home security Joomla's team reveals user data leaks

Joomla's team reveals user data leaks

Joomla

The team behind it system open content management code Joomla (CMS) announced data leakage last week.

Responsible for infringement is a member of the Joomla Resources Directory (JRD) team that left ecrowned a complete copy security of the JRD site (Resources.joomla.org) in one Amazon Web Services S3 bucket owned by the company.

According to Joomla's team, the backup was not encrypted and contained data for about 2.700 users who had registered and created a profile on the JRD site (a portal where professionals advertise their skills on Joomla).

Joomla administrators are still investigating the incident. For now, we know that user data was found exposed but it is not clear if anyone found and stole the data from S3 server.

In case someone found the copy security, had access to the following data:

  • Full name
  • Business address
  • Business email address
  • Business phone number
  • Company URL
  • Nature of business
  • Encrypted password
  • IP address

The incident is not considered serious, as well most of this information was already public. The JRD portal serves as a list for Joomla professionals. However, the hashed passwords and IP addresses were not intended to be public.

Joomla's team recommends that all JRD users change their password on the JRD portal, but also in others sites and applications that may have used the same codes. If someone has found the data, they can use it to obtain it access and other accounts.

The Joomla team said that as soon as they learned about this backup leak, they conducted a full security check on the JRD portal.

Joomla is very popular system Content Management (CMS), an online application used to create and manage self-hosted websites. Right now, she's taking over third place in the list of CMS most used on the Internet.

LEAVE ANSWER

Please enter your comment!
Please enter your name here

Digital Fortress
Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

LIVE NEWS

Intel CPUs Review: Core i7-10700 vs Core i7-10700K!

Over the years, the Intel series of processors (CPUs) introduced the series of overclocking models "K" and more recently the series ...

The DeLorean can return as an electric car

The DMC DeLorean has been out of production for almost 40 years, but it looks like the iconic vehicle will return as an electric car.

Windows RDP servers are used to support DDoS

Cybercrime gangs are abusing Windows Remote Desktop Protocol (RDP) systems to reinforce the unwanted ...

SEPA: He refused to pay a ransom and thousands of files were leaked

Thousands of stolen files of the Scottish Environmental Protection Agency (SEPA) have been published by hackers, after the organization refused to pay the ransom ...

Fines at Valve, Capcom and Zenimax for geo-exclusion of games

Following a European Commission investigation, a group of video game publishers was fined € 7,8 million following allegations of geo-exclusion practices. In...

Bitcoin helps the middle class survive the pandemic

Regulators still imply that Bitcoin is just a tool for criminals, but it seems that for the middle class ...

Lightworks 2021.1 for Linux, Mac and Windows has been released

Lightworks Professional Multi-Platform Video Editing Software received the first major update to Lightworks 2021.1 for Windows, Linux and Mac.

Netflix: Watch the 9 best Anime movies of all time

One of the good things about the pandemic was that many people were introduced to the anime world. And the issue with anime is ...

CHwapi: Windows BitLocker "hit" the Belgian hospital!

The CHwapi hospital in Belgium was attacked by a cyber attack on January 17, with hackers claiming to have encrypted 40 servers and 100 ...

CPU / GPU Lotteries: Newegg sells the few on the market

Hardware shortages are not uncommon, but the pandemic has worsened the situation. The whole planet is closed to ...