Read the Beforeitsnews.com story here. Advertise at Before It's News here.
Profile image
Story Views
Now:
Last hour:
Last 24 hours:
Total:

A Very Large Web Leak Has Been Discovered by Google

% of readers think this story is Fact. Add your two cents.


A researcher from Google has discovered what may be one of the largest web leaks this year so far. It is possible that personal information and passwords were hacked from a number of sites. The leak includes several major companies includingFitbit and Uber.

Royalty Free Photo

CloudBleed

There are many bloggers and tech industry experts that are referring to this latest web leak as CloudBleed. It was dubbed this nickname because it appears that the problem resulted from an unknown vulnerability in the code of a well-known web company named CloudFare. The leak also has some similarities to the infamous leak of 2015 known as HeartBleed. The only difference is after the damage of this latest leak is accounted for, it will likely be more severe than the HeartBleed bug.

CloudFare serves and hosts content for at least 2 million websites. The hack became noticeable after many of these websites hosted on CloudFare started returning chunks of memory randomly. This memory was coming from servers that were vulnerable during the time the requests were coming in.

How Did the Web Leak Escalate?

This cyber breach was bad enough. However, what added fuel to the fire was the fact that many search engines, including Google, began to cache the information that was leaked.

The other major issue was that the web company actually hosted content from several different websites on one server. This means that if a request came from one of the vulnerable websites, the information from the other websites on the server could have also been easily accessed.

For example, let us say that someone signed on to Uber. While this information request was going to the server, some memory from another company like Fitbit would be returned. This highly sensitive data from Fitbit could have been returned to almost anyone. This did not involve a dangerous attack to gather sensitive data, it just took advantage of users logging onto these websites so the information could be returned. This means that Uber customers may have Fitbit members’ password information cached in their browsers unknowingly.

How Was the Web Leak Discovered?

The leak was discovered by one of the most famous cyber bug hunters at Google, Tavis Ormandy. He tweeted that he was informed of the hack on February 17. To show proof of the hack, the server was able to return to him passwords and encryption keys from users of other sites hosted by CloudFare.

He later posted a tweet showing that the breach was more severe than he first suspected. He could retrieve some private messages from popular dating websites, the frames from an adult themed website and hotel reservations. He could see customers’ addresses, passwords, data and other things.

He said in response that CloudFare sent a letter that really ‘downplays’ the risk potential of this hack to customers.

There were several breaches, but the largest occurred between February 13 and February 18. However, CloudFare did admit that the breaches could have been occurring since September 2016.

Many have noted that the implications from the breach could have been more severe if Google had not discovered it when it did. Hackers could have conducted millions of data requests and obtained a lot of information.



Before It’s News® is a community of individuals who report on what’s going on around them, from all around the world.

Anyone can join.
Anyone can contribute.
Anyone can become informed about their world.

"United We Stand" Click Here To Create Your Personal Citizen Journalist Account Today, Be Sure To Invite Your Friends.

Please Help Support BeforeitsNews by trying our Natural Health Products below!


Order by Phone at 888-809-8385 or online at https://mitocopper.com M - F 9am to 5pm EST

Order by Phone at 866-388-7003 or online at https://www.herbanomic.com M - F 9am to 5pm EST

Order by Phone at 866-388-7003 or online at https://www.herbanomics.com M - F 9am to 5pm EST


Humic & Fulvic Trace Minerals Complex - Nature's most important supplement! Vivid Dreams again!

HNEX HydroNano EXtracellular Water - Improve immune system health and reduce inflammation.

Ultimate Clinical Potency Curcumin - Natural pain relief, reduce inflammation and so much more.

MitoCopper - Bioavailable Copper destroys pathogens and gives you more energy. (See Blood Video)

Oxy Powder - Natural Colon Cleanser!  Cleans out toxic buildup with oxygen!

Nascent Iodine - Promotes detoxification, mental focus and thyroid health.

Smart Meter Cover -  Reduces Smart Meter radiation by 96%! (See Video).

Report abuse

    Comments

    Your Comments
    Question   Razz  Sad   Evil  Exclaim  Smile  Redface  Biggrin  Surprised  Eek   Confused   Cool  LOL   Mad   Twisted  Rolleyes   Wink  Idea  Arrow  Neutral  Cry   Mr. Green

    MOST RECENT
    Load more ...

    SignUp

    Login

    Newsletter

    Email this story
    Email this story

    If you really want to ban this commenter, please write down the reason:

    If you really want to disable all recommended stories, click on OK button. After that, you will be redirect to your options page.