Wednesday, September 18, 2024
HomeSecurity NewsCalifornia Voter Database Leaked - 19 Million Voters Records Under Risk

California Voter Database Leaked – 19 Million Voters Records Under Risk

Published on

A newly discovered an unprotected MongoDB database contains a large volume of data which belongs to California state voters information that Contains Every Registered Voter Data same as many of voter database leaked incidents have been reported in last year.

Leaked Database publicly available in online that can be accessed by anyone without any password or log in and this incident received by a Shodan-based breach report.Also, it was open to view, edit and modifying the entire database by anyone.

Data volume contains 95.1GB that was leaked in public on Jan 19th. Later Database has gone offline but we can access the related documents through offline.

- Advertisement - EHA

The Sacramento Bee digital media department are holding these sample in the database and other attributes that pointed to their own internal system.

A leaked Database contains an information about, Legislation data (bills, committees, voting results etc.), Letters to editor, readers’ opinions, restaurant reviews and info, the SacBee internal systems info (URLs, internal keys, user agents info, admin credentials etc), Data visualization info ,the SacBee API info (incl. subscribers and clients info), State pay info.

In this database contains all the registered votor’s data for the entire state of California  19,501,258 records.

Voter Database Leaked
Voter Database Leaked

Same attack has been discovered in 2017 with same set of confidentials data but past attack was targetted for ransomware attack and this attack aslo for the same motivation by hackers.

According to Kromtech Security ,The database has been labeled as ‘compromised’ shortly after it become publicly available and now not accessible but according to Shodan report it contained a “Warning” and ‘Readme’ note-  which is usually a ransomware note.
Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Threat Actor Allegedly Selling Bharat Petroleum Database

A threat actor has allegedly put up for sale a database belonging to Bharat...

Chrome 129 Released with Fix for Multiple Security Vulnerabilities

The Chrome team has officially announced the release of Chrome 129, which is now...

VMware vCenter Server Vulnerability Let Attackers Escalate Privileges

VMware has issued a critical security advisory (VMSA-2024-0019) addressing two significant vulnerabilities in its...

CISA Warns of Windows MSHTML & Progress WhatsUp Gold Flaw Exploited Widely

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning regarding two...

Free Webinar

Decoding Compliance | What CISOs Need to Know

Non-compliance can result in substantial financial penalties, with average fines reaching up to $4.5 million for GDPR breaches alone.

Join us for an insightful panel discussion with Chandan Pani, CISO - LTIMindtree and Ashish Tandon, Founder & CEO – Indusface, as we explore the multifaceted role of compliance in securing modern enterprises.

Discussion points

The Role of Compliance
The Alphabet Soup of Compliance
Compliance
SaaS and Compliance
Indusface's Approach to Compliance

More like this

Critical PDF.js & React-PDF Vulnerabilities Threaten Millions Of PDF Users

A new critical vulnerability has been discovered in PDF.js, which could allow a threat...

LayerX Security Raises $26M for its Browser Security Platform, Enabling Employees to Work Securely From Any Browser, Anywhere

LayerX, pioneer of the LayerX Browser Security platform, today announced $24 million in Series...

Email Header Analysis – Verify Received Email is Genuine or Spoofed

Email Header Analysis highly required process to prevent malicious threats since Email is...