• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
researchers discover hundreds of amazon rds instances leaking users' personal

Researchers Discover Hundreds of Amazon RDS Instances Leaking Users’ Personal Data

You are here: Home / General Cyber Security News / Researchers Discover Hundreds of Amazon RDS Instances Leaking Users’ Personal Data
November 16, 2022

Hundreds of databases on Amazon Relational Databases Provider (Amazon RDS) are exposing particular identifiable information (PII), new results from Mitiga, a cloud incident reaction business, exhibit.

“Leaking PII in this manner gives a possible treasure trove for danger actors – either in the course of the reconnaissance section of the cyber eliminate chain or extortionware/ransomware strategies,” researchers Ariel Szarf, Doron Karmi, and Lionel Saposnik claimed in a report shared with The Hacker Information.

This includes names, email addresses, phone numbers, dates of start, marital status, car rental information, and even corporation logins.

✔ Approved From Our Partners
AOMEI Backupper Lifetime

Protect and backup your data using AOMEI Backupper. AOMEI Backupper takes secure and encrypted backups from your Windows, hard drives or partitions. With AOMEI Backupper you will never be worried about loosing your data anymore.

Get AOMEI Backupper with 72% discount from an authorized distrinutor of AOMEI: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


Amazon RDS is a web company that would make it achievable to set up relational databases in the Amazon Web Products and services (AWS) cloud. It provides aid for unique database engines these as MariaDB, MySQL, Oracle, PostgreSQL, and SQL Server.

The root cause of the leaks stems from a element known as public RDS snapshots, which lets for generating a backup of the whole databases natural environment operating in the cloud and can be accessed by all AWS accounts.

Amazon RDS Snapshots

“Make confident when sharing a snapshot as public that none of your non-public information and facts is provided in the community snapshot,” Amazon cautions in its documentation. “When a snapshot is shared publicly, it offers all AWS accounts permission both to copy the snapshot and to produce DB circumstances from it.”

The Israeli corporation, which carried out the exploration from September 21, 2022, to October 20, 2022, reported it discovered 810 snapshots that were being publicly shared for different length, beginning from a handful of hours to weeks, producing them ripe for abuse by destructive actors.

CyberSecurity

Of the 810 snapshots, more than 250 of the backups had been exposed for 30 times, suggesting that they ended up most likely neglected.

Primarily based on the mother nature of the data uncovered, adversaries could possibly steal the facts for monetary attain or leverage it to get a better grasp of a firm’s IT ecosystem, which could then act as a stepping stone for covert intelligence accumulating endeavours.

It’s hugely suggested that RDS snapshots are not publicly accessible in get to avert likely leak or misuse of sensitive details or any other type of security danger. It truly is also advised to encrypt snapshots where by relevant.

Observed this article appealing? Comply with THN on Fb, Twitter  and LinkedIn to read through extra special content we publish.


Some components of this report are sourced from:
thehackernews.com

Previous Post: «7 reasons to choose an mdr provider 7 Reasons to Choose an MDR Provider
Next Post: Botnets, Trojans, DDoS From Ukraine and Russia Have Increased Since Invasion Cyber Security News»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.