时间:2025-09-17 07:24:08 来源:网络整理编辑:知識
Login data for more than half a million records tied to vehicle tracking device company SVR Tracking
Login data for more than half a million records tied to vehicle tracking device company SVR Tracking have leaked online, potentially exposing the personal and vehicle data of drivers and businesses using its service.
The leaked repository was first spotted by the Kromtech Security Center, which blamed a misconfigured Amazon AWS S3 bucket that was left publicly accessible for an unknown period of time for the breach. Kromtech first noticed the cache on Sept. 18, according to Gizmodo, and the bucket was closed from public access hours after the security company alerted SVR on Sept. 20.
The records included user login info like emails and passwords, along with VINs (vehicle identification numbers) and license plate numbers, data about the GPS devices, and "other data" collected by SVR Tracking about its devices, customers, and auto dealerships that do business with the company.
SEE ALSO:Equifax has been directing victims to a fake phishing site for weeksThe data was kept in a backup folder called "accounts," which contained 540,642 entries. Some of those entries were associated with multiple vehicles. Kromtech said the total number of devices exposed "could be much larger given the fact that many of the resellers or clients had large numbers of devices for tracking."
The SVR leak contained extensive vehicle location records along with account information. The company offers continuous tracking in case cars are stolen or impounded, collecting reams of GPS data.
The service records "heartbeats" (GPS location beacons) from its devices every four hours, and stores location info for everywhere a monitored car has been for as long as 120 days in the past — meaning that someone who gained access to an account's password could both track a vehicle in real time and build a detailed log of every location it has visited. They could outright steal the car, stalk its driver, or rob a home when they know a vehicle's owner is out and about.
The folder also contained 339 logs with photos and data about vehicle status and maintenance records, along with a document that provided details about 427 dealerships that use SVR's services.
SVR didn't respond directly to Kromtech, although the leaked records were blocked from public access shortly after Kromtech provided info about the leak. The company hasn't replied to our request for comment on the matter, either.
The type of constant monitoring offered by SVR is designed to give car owners some peace of mind with the knowledge that they'll always be in control of their vehicle. This type of leak, however, does the opposite, potentially handing the digital keys to cybercriminals who could've used the data for their own means.
TopicsCybersecurity
What brands need to know about virtual reality2025-09-17 07:00
揭秘王珊珊加盟北京女足 前亞洲足球小姐牽線2025-09-17 06:53
C羅回葡未獲曼聯批準係違規 紅魔息事寧人不予處罰2025-09-17 06:47
巴黎高層後續 :破壞裁判旗泄憤 將拍攝者手機摔壞2025-09-17 06:24
Carlos Beltran made a very interesting hair choice2025-09-17 06:17
西甲一周資訊:馬競重返前四 加的斯取主場首勝2025-09-17 05:55
前中國女足代表人物範運傑執教建業女足 將率隊出征全國錦標賽2025-09-17 05:52
庫鳥8場4球3助攻維拉超尷尬 降薪70%簽他也難收場2025-09-17 05:27
Singapore rolls out video2025-09-17 05:19
巴黎遭歐足聯背刺!本澤馬首球存爭議 VAR裝聾作啞2025-09-17 05:02
U.S. pole vaulter skids to a halt for national anthem2025-09-17 07:22
名嘴:C羅自認為之於曼聯很出色 在皇馬他不敢這樣2025-09-17 07:03
巴媒 :莫伊塞斯與泰山合同將到期 桑托斯已為其開出報價2025-09-17 06:44
國安集結王剛傷愈歸來 訓練上量人均跑動為比賽1.5倍2025-09-17 06:40
The Weeknd teases new music in Instagram post2025-09-17 06:39
巴黎高層後續 :破壞裁判旗泄憤 將拍攝者手機摔壞2025-09-17 06:12
巴薩前瞻:紅藍4連勝如日中天 土超豪門已今非昔比2025-09-17 06:01
就缺哈蘭德!巴薩4套三叉戟均遭零封 年度首交白卷2025-09-17 05:53
Airbnb activates disaster response site for Louisiana flooding2025-09-17 04:50
曼城前瞻 :藍月衝歐冠主場連勝神跡 丁丁迎裏程碑2025-09-17 04:42