Around 2 million Edureka users’ records at risk due to database breach

Edureka is one of the known online education startups based in India, and its server is based in the US. As per the report of SafetyDetective, the largest antivirus review website, its security team has discovered a completely unsecured Elasticsearch server of the e-learning platform. The team, lead by Anurag Sen, found this vulnerability while routing IP-address checks on specific ports and figure out over 25GB of personal data was publicly available. Not sure about the exact number, but there were around 2 million Edureka users’ personal data, including first name, email address, phone number, country of residence, login activity records, and Miscellaneous Auth token information.

  • Credentials with Auth Values_TechnoSports.co.in
  • Server logs showing login activity_TechnoSports.co.in
  • Server logs showing user email address and user Auth values_TechnoSports.co.in

The SafetyDetective team spotted this vulnerability on 1st August and reached the Edureka team on 6th August to notify them. In addition to vulnerability, there were also some significant security flaws. As the platform didn’t respond, SafelyDetetive reached the Indian Computer Emergency Response Team (CERT-In) on 13th August.

The login activity details in the exposed data can be used in scams or even can be handed over to the commercial third parties. 2 million users’ data is not a small amount. Apart from these, the contact details – phone number and email addresses- can also be used in various kinds of fraud.

Do Check Out 👇🏼

TechnoSports 🔥 Stay Updated

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.

More like this

LATEST NEWS

Raid 2 Trailer Unveils Ajay Devgn’s Tactical Trap for Riteish Deshmukh in Gripping Political Thriller

The Raid 2 trailer has finally made its debut, and it’s every bit as explosive as fans had hoped. Packed with high-octane drama, powerful...

Redmi Watch Move Launching on April 21: AMOLED Display, HyperOS & More Revealed!

Redmi Watch: Xiaomi is ready to make Your Next Big Move with the official Indian debut of its upcoming smartwatch — the Redmi Watch...

AMD Ryzen 9 8940HX: Next-Gen Laptop Powerhouse Unveiled

Discover the AMD Ryzen 9 8940HX: a 16-core beast with 32 threads, promising to revolutionize high-performance laptops in 2025. AMD’s Dragon Range Refresh: The 8940HX...

RCB vs DC IPL 2025 Match 24 Dream11 Preview: Top-of-the-Table Clash at Chinnaswamy

The iconic M. Chinnaswamy Stadium prepares to host a riveting encounter between Royal Challengers Bengaluru (RCB) and Delhi Capitals (DC) in Match 24 of...

Featured