Privacy News Exposed MongoDB Server Exposes Details of Cryptocurrency Users

LASER_oneXM

Level 37
Thread author
Verified
Top Poster
Well-known
Forum Veteran
Feb 4, 2016
2,516
15,624
3,578
53
Germany / Poland
Security researchers have stumbled across a MongoDB database containing the personal details of over 25,000 users who invested in or received Bezop (BEZ) cryptocurrency.
According to cybersecurity firm Kromtech, the database contained information such as full names, home addresses, email addresses, encrypted passwords, wallet information, and scanned passports, driver's licenses, or IDs.

The database stored information related to a "bounty programme" that the Bezop team ran at the start of the year, during which it handed out Bezop tokens to users who promoted the currency on their social media accounts.

A Bezop spokesperson admitted to the breach, claiming the database was inadvertently exposed online while the dev team dealt with a DDoS attack on January 8.
A spokesperson told Bleeping Computer today that no user funds were stolen following this exposure.
 
  • Like
Reactions: harlan4096