Thursday, April 18, 2024

2 Million Wi-Fi Passwords Leaked Through Wi-Fi Hotspot Finder App

A Wi-Fi hotspot app exposed more than two million Wi-Fi network passwords from its unprotected database.

The app named WiFi Finder, downloaded by thousands of users to locate and connect with Wi-Fi hotspots, the app also stores Wi-Fi password and credentials.

“It allows users to gain unauthorized access to public and private Wi-Fi networks, allowing network owners to offer their Wi-Fi credentials for public connections without prompting them for permission.”

According to Techcrunch, the app database leaked more than two million network passwords from its unprotected database.

The records containing the Wi-Fi network name, geolocation, BSSID and the passwords that are stored in plain text. The database was open to anyone, allowing to access the contents and to download in bulk.

According to the app developer, the app only provides the passwords for public hotspots, but the exposed database shows a number of home Wi-Fi network passwords are stored.

The exposure poses a serious threat, an attacker could use the password to gain access to the home network and modify router settings to direct the traffic through malicious servers and exfiltrate sensitive credentials.

Techcrunch learned that the exposed database contains “contact information for any of the Wi-Fi network owners, but the geolocation of each Wi-Fi network correlated on a map often included networks in wholly residential areas or where no discernible businesses exist.”

Wi-Fi access points are the entry point for hackers, setting a week password, default password or sharing the password could compromise network security.

By gaining access to WiFi, hackers can directly access users’ systems and can penetrate further into the network.

You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Best Ways to Keep Your Data Secured While Using Public WiFi Networks

Top 10 Best WiFi Hacking Apps for Android – 2019 Edition

Website

Latest articles

What is Encryption in Malware? – Understand From Basics to XOR

Malware commonly encrypts its traffic (stolen data sent to a command-and-control server) and internal...

Phishing-as-a-Service Platform LabHost Seized by Authorities

Authorities have dismantled LabHost, a notorious cybercrime platform that facilitated widespread phishing attacks across...

Armis Acquires AI-based Vulnerability Detection Firm Silk Security

Armis, a leading cybersecurity company, has acquired Silk Security, an AI-powered vulnerability detection firm.The...

Xiid SealedTunnel: Unfazed by Yet Another Critical Firewall Vulnerability (CVE-2024-3400)

In the wake of the recent disclosure of a critical vulnerability (CVE-2024-3400) affecting a...

Cerber Linux Ransomware Exploits Atlassian Servers to Take Full Control

Security researchers at Cado Security Labs have uncovered a new variant of the Cerber...

FGVulDet – New Vulnerability Detector to Analyze Source Code

Detecting source code vulnerabilities aims to protect software systems from attacks by identifying inherent...

North Korean Hackers Abuse DMARC To Legitimize Their Emails

DMARC is targeted by hackers as this serves to act as a preventative measure...
Guru baran
Guru baranhttps://gbhackers.com
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

WAAP/WAF ROI Analysis

Mastering WAAP/WAF ROI Analysis

As the importance of compliance and safeguarding critical websites and APIs grows, Web Application and API Protection (WAAP) solutions play an integral role.
Key takeaways include:

  • Pricing models
  • Cost Estimation
  • ROI Calculation

Related Articles