Tuesday, May 13, 2025
HomeCyber Security News2 Million Wi-Fi Passwords Leaked Through Wi-Fi Hotspot Finder App

2 Million Wi-Fi Passwords Leaked Through Wi-Fi Hotspot Finder App

Published on

SIEM as a Service

Follow Us on Google News

A Wi-Fi hotspot app exposed more than two million Wi-Fi network passwords from its unprotected database.

The app named WiFi Finder, downloaded by thousands of users to locate and connect with Wi-Fi hotspots, the app also stores Wi-Fi password and credentials.

“It allows users to gain unauthorized access to public and private Wi-Fi networks, allowing network owners to offer their Wi-Fi credentials for public connections without prompting them for permission.”

- Advertisement - Google News

According to Techcrunch, the app database leaked more than two million network passwords from its unprotected database.

The records containing the Wi-Fi network name, geolocation, BSSID and the passwords that are stored in plain text. The database was open to anyone, allowing to access the contents and to download in bulk.

According to the app developer, the app only provides the passwords for public hotspots, but the exposed database shows a number of home Wi-Fi network passwords are stored.

The exposure poses a serious threat, an attacker could use the password to gain access to the home network and modify router settings to direct the traffic through malicious servers and exfiltrate sensitive credentials.

Techcrunch learned that the exposed database contains “contact information for any of the Wi-Fi network owners, but the geolocation of each Wi-Fi network correlated on a map often included networks in wholly residential areas or where no discernible businesses exist.”

Wi-Fi access points are the entry point for hackers, setting a week password, default password or sharing the password could compromise network security.

By gaining access to WiFi, hackers can directly access users’ systems and can penetrate further into the network.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Best Ways to Keep Your Data Secured While Using Public WiFi Networks

Top 10 Best WiFi Hacking Apps for Android – 2019 Edition

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Apple Releases Security Patches to Fix Critical Data Exposure Flaws

Apple released critical security updates for macOS Sequoia 15.5 on May 12, 2025, addressing...

Lumma Stealer Upgraded with PowerShell Tools and Advanced Evasion Techniques

Sophos Managed Detection and Response (MDR) in September 2024, the notorious Lumma Stealer malware...

New Noodlophile Malware Spreads Through Fake AI Video Generation Platforms

Cybercriminals have unleashed a new malware campaign using fake AI video generation platforms as...

Kimsuky Hacker Group Deploys New Phishing Techniques and Malware Campaigns

The North Korean state-sponsored Advanced Persistent Threat (APT) group Kimsuky, also known as “Black...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Apple Releases Security Patches to Fix Critical Data Exposure Flaws

Apple released critical security updates for macOS Sequoia 15.5 on May 12, 2025, addressing...

Lumma Stealer Upgraded with PowerShell Tools and Advanced Evasion Techniques

Sophos Managed Detection and Response (MDR) in September 2024, the notorious Lumma Stealer malware...

New Noodlophile Malware Spreads Through Fake AI Video Generation Platforms

Cybercriminals have unleashed a new malware campaign using fake AI video generation platforms as...