网络安全公司UpGuard发现,托管在开发平台Supabase上的约16000个数据库存在严重的个人数据泄露问题1。泄露的敏感信息包括用户姓名、地址、电话号码和密码等1。这些暴露的数据涉及多个行业,其中包括印度成人直播网站的私人对话、美国代客泊车服务的车牌号以及移民服务的联系信息1。虽然大多数泄露数据库位于美国,但这一问题具有全球性特征1。
Supabase首席信息安全官Bil Harmer在回应此事时表示,该公司采用"默认安全"的项目配置,并强调安全是公司与客户之间的共同责任1。
Security firm UpGuard has uncovered approximately 16,000 databases hosted on the development platform Supabase that are publicly leaking sensitive personal information 1. The exposed data includes names, addresses, phone numbers, and passwords belonging to individuals across multiple sectors 1.
The breached databases contain diverse types of information spanning various industries and geographies. Specific incidents identified by UpGuard include private conversations from an adult streaming website based in India, license plate numbers from a U.S. valet parking service, and contact information for immigration services 1. While the majority of exposed databases are located in the United States, the problem is global in scope 1.
Supabase's Chief Information Security Officer Bil Harmer responded to the findings by stating that the platform uses secure default configurations and characterized the projects as "secure by default" 1. However, Harmer emphasized that security is a shared responsibility between the company and its customers 1. Supabase has achieved a $10 billion valuation this year 1.
评论
还没有评论,欢迎留下第一条。