Thursday, December 26, 2024
HomeGoogleGoogle Admits That Google Photos Sent Private Videos to Strangers And Allowed...

Google Admits That Google Photos Sent Private Videos to Strangers And Allowed to Download it

Published on

SIEM as a Service

Google admits that Google Photos were accidentally sent some of the user’s videos to strangers due to a “technical issue” between November 21st and November 25th.

Google Alerting users via Email notification that they have faced a technical issue in “Download your Data” service for Google Photos.

Download Your Data service that lets You export your backup data from the Google products you use, like your email, calendar, and photos. 

- Advertisement - SIEM as a Service

A technical privacy issue had been in the tool has led to exposing the stored videos in Google Photos to strangers who don’t own those videos.

In results, some of your videos might be visible to a random person who can even download the videos from the backup.

This Privacy issue affected the small number of Google Photo’s Users doesn’t provide any details on how many people were affected, nor the number of individual videos that were distributed to strangers.

According to Google ” less than 0.01% of Photos users attempting Takeouts were affected, and no other product was affected.”

According to Jon Oberheide , CTO Duo Security “To be clear, this is a big screw-up. I hope the number of affected parties is small, but the impact to those parties could be high…and very unsettling. But my real beef is with this nonchalant and non-specific notification email. Hopefully, Google follows up with more comms.”

Google ended a Statement with apologies and said ” We are notifying people about a bug that may have affected users who used Google Takeout to export their Google Photos content between November 21 and November 25. These users may have received either an incomplete archive, or videos—not photos—that were not theirs. We fixed the underlying issue and have conducted an in-depth analysis to help prevent this from ever happening again. We are very sorry this happened.” “

Google said that it was fixed this software bug and the technical issue has been identified and resolved.

Also Read: How Does World’s Highly Secured Google Network Works? Google’s Effort & Dedication

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Indonesia Government Data Breach – Hackers Leaked 82 GB of Sensitive Data Online

Hackers have reportedly infiltrated and extracted a vast 82 GB of sensitive data from...

IBM AIX TCP/IP Vulnerability Lets Attackers Exploit to Launch Denial of Service Attack

IBM has issued a security bulletin warning of two vulnerabilities in its AIX operating...

Apache Auth-Bypass Vulnerability Lets Attackers Gain Control Over HugeGraph-Server

The Apache Software Foundation has issued a security alert regarding a critical vulnerability...

USA Launched Cyber Attack on Chinese Technology Firms

The Chinese National Internet Emergency Center (CNIE) has revealed two significant cases of cyber...

API Security Webinar

72 Hours to Audit-Ready API Security

APIs present a unique challenge in this landscape, as risk assessment and mitigation are often hindered by incomplete API inventories and insufficient documentation.

Join Vivek Gopalan, VP of Products at Indusface, in this insightful webinar as he unveils a practical framework for discovering, assessing, and addressing open API vulnerabilities within just 72 hours.

Discussion points

API Discovery: Techniques to identify and map your public APIs comprehensively.
Vulnerability Scanning: Best practices for API vulnerability analysis and penetration testing.
Clean Reporting: Steps to generate a clean, audit-ready vulnerability report within 72 hours.

More like this

Cybercriminals Exploit Google Calendar and Drawings in Phishing Campaigns

Attackers are ingeniously exploiting Google Calendar and Google Drawings in phishing campaigns, targeting unsuspecting...

Google Announces Vanir, A Open-Source Security Patch Validation Tool

Google has officially launched Vanir, an open-source security patch validation tool designed to streamline and...

Google Chrome Security Update, Patch for High-severity Vulnerability

Google has released a significant security update for its Chrome browser, aiming to address...