14M Verizon customer records found on publicly available server

Shutterstock

Data belonging to at least 6 million Verizon subscribers were exposed due to a security lapse by one of the carrier's customer service partners. Nice Systems (as a partner/third-party vendor) would have had natural access to this information, given their software was being used to provide back-office support to Verizon.

Nice Systems says that the exposed data was "part of a system demo" with no further elaboration.

The security firm said the files were discovered on an unprotected Amazon Web Services (AWS) database on 8 June but that the issue was not fully resolved until weeks later, on 22 June 2017.

Chris Vickery is the researcher at UpGuard who first discovered the leak.

Verizon data has been leaked online and this data breach involved 6 million users.

Verizon, the USA telecommunications juggernaut, has admitted that the data of at least six million of customers, including names, addresses, account details and account PIN numbers, were exposed online.

The leak happened when a NICE Systems employee put customer data into a cloud storage area and accidentally made it publicly accessible, instead of private. Verizon confirmed that information was at risk of being comprised, and said human error was the reason for the potential leak.

Hackers will be able to use the PIN codes to easily gain access to online accounts that are protected by two-factor authentication, which is a security measure that confirms the actions of users by sending a code to their mobile phone number. "The long duration of time between the initial June 13th notification to Verizon by UpGuard of this data exposure, and the ultimate closure of the breach on June 22nd, is troubling".

"A misconfigured cloud-based file repository exposed the names, addresses, account details, and account personal identification numbers (PINs) of as many as 14 million U.S. customers of telecommunications carrier Verizon, per analysis of the average number of accounts exposed per day in the sample that was downloaded".

Upguard added in its assessment of the breach: "This exposure is a potent example of the risks of third-party vendors handling sensitive data". If they have those, they can change devices associated with the phone numbers of the account, thereby hijacking those phone numbers, or make fraudulent purchases through customer service. "Typically, the bad actor ports the number to some sort of virtual number, but there have been cases where the number is ported to a burner phone".

"Cyber risk is a fact of life for any digital service".

Related news:

Hot News

isis-killer-beheading-video-story-top ATF: Explosion was domestic terrorism or a terrible prank
Jul 13, 2017 - 00:20
The blast took place around 10.30pm local time (4.30pm GMT) in Bixby, which lies around 15 miles to the south of Tulsa. Investigators have reportedly indicated such a designation can not occur until a suspect or a motive becomes known.

isis-killer-beheading-video-story-top Gopal Krishna Gandhi named opposition's candidate for Vice President's election
Jul 12, 2017 - 00:11
The Opposition has chosen Gopalkrishna Gandhi as its nominee for the upcoming vice-presidential election, sources told PTI . He also served as High Commissioner to South Africa in 1996, where he earned a popular repute, as reported by the Outlook.

isis-killer-beheading-video-story-top Bull Run Continues On Dalal Street; Sensex, Nifty Settle At Record Highs
Jul 11, 2017 - 00:20
Mumbai: Markets continued their upward climb in afternoon trade with both Sensex and Nifty peaking a fresh all-time highs. The technical team of NSE is looking into the issue and market re-open time would be intimated shortly, it had said.

isis-killer-beheading-video-story-top Muskogee Woman Says 'Yes' To Marriage Proposal During Boyfriend's Arrest
Jul 11, 2017 - 00:16
He wanted to propose to his girlfriend, while still in handcuffs. "Will you be my wife, please?" Keith said yes. She said yes! Oh, and the Muskogee Police Department arrested him too, but whatever, that's a small detail.

isis-killer-beheading-video-story-top Parents still fighting for Charlie Gard's treatment
Jul 11, 2017 - 00:09
The official also said the president wants to be helpful without placing undue pressure on the family. He said seven global experts had supported the treatment the couple wanted Charlie to have.

isis-killer-beheading-video-story-top USA 'must fix the many bad trade deals it has made'
Jul 10, 2017 - 00:20
So despite some compromises, the US still has a mechanism to declare a trade war over steel at any time. Trump announced Friday that had called on South Korea to "stop enabling the export of dumped steel".

isis-killer-beheading-video-story-top Lewis joins elite company as Windies beat India in Twenty20
Jul 10, 2017 - 00:18
Evin Lewis scored 125 against India during a T20I at Sabina Park . It is hard to switch (players in the side) for just one game. India: TV: Ten 3, Ten 1 HD, Sony Six, Sony Six HD.

isis-killer-beheading-video-story-top Geraint Thomas out of Tour de France with suspected broken collarbone
Jul 10, 2017 - 00:18
Quick-Step Floors rider Martin got back on his bike after he took a new wheel from a neutral support vehicle. Richie Porte's Tour De France was brought to a crashing end, Dan Martin's could easily have gone with it.

isis-killer-beheading-video-story-top Ways That Spider-Man: Homecoming Sets Up Future Movies
Jul 09, 2017 - 00:23
Edgar Wright's Baby Driver - another win for Sony - Wonder Woman and Transformers: The Last Knight will round out the top five. But the number that may mean more to film's shelf life is "94" - the film's current score on Rotten Tomatoes .

isis-killer-beheading-video-story-top Samsung Predicts Record Q2 Profit Amid Strong Chip Demand
Jul 09, 2017 - 00:22
Shares of Samsung Electronics closed 1.01 percent higher at 2,403,000 won Thursday. They have gained 30 percent so far this year on top of a 43 percent surge in 2016.

isis-killer-beheading-video-story-top Blac Chyna's Attorney Exploring Legal Options Against Rob Kardashian
Jul 07, 2017 - 00:33
In response to these allegations, Blac taunted Rob with the $250k worth of jewelry, he gave her on the day he caught her cheating. Rob Kardashian went on a social media tirade against his on again, off again girlfriend, Blac Chyna on Wednesday, July 5.

isis-killer-beheading-video-story-top Joey Chestnut makes history in Coney Island
Jul 06, 2017 - 00:13
Earlier in the women's competition, Miki Sudo scarfed down 41 dogs in 10 minutes to defend her pink championship belt. Many people wore hot dog-shaped foam hats and held signs with messages like "Bun Stuff" to cheer for the eaters.

isis-killer-beheading-video-story-top India 'misleading the public' on Sikkim standoff: China
Jul 06, 2017 - 00:13
Under Chinese leader Xi Jinping , China has been more assertive in insisting neighbours accept Beijing's "zone of influence". "And there is no dispute between the two countries that Doklam belongs to China", he stated.

isis-killer-beheading-video-story-top China's Xi Warns Trump about 'Negative' Parts of Relationship
Jul 05, 2017 - 00:08
When Trump and Xi met in April, the two leaders agreed to take specific steps against North Korea within the next 100 days. The U.S. has dreaded the day that North Korea developed a missile capable of hitting the homeland with a nuclear warhead.

isis-killer-beheading-video-story-top AirAsia plane grounded in Australia after 'bird strike'
Jul 05, 2017 - 00:07
Video footage captured by a passenger showed the plane loudly vibrating and shaking after what passenger Brenton Atkinson said sounded like a small explosion.