Get a Pentest and security assessment of your IT network.

News

Misconfigured Enterprise Box accounts leak terabytes of sensitive internal data

Pen-testing experts have made a worrisome discovery regarding the popular cloud storage service Box, specifically the Enterprise version used by some of the worlds biggest companies. They found that links to sensitive internal files can be determined by brute forcing them (i.e. guessing them) resulting in the exposure of terabytes of sensitive data. This is not a bug, the team notes, but rather a misuse of the shared folders functionality. The latter updated its shared links documentation to clarify what companies need to do to keep their Box shared files and folders secure.”]

Source: https://www.bitdefender.com/blog/hotforsecurity/misconfigured-enterprise-box-accounts-leak-terabytes-of-sensitive-internal-data/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2