KCI-20180629-01 の変更点

Top > KCI-20180629-01

*KCI-20180629-01 I-I-S-C Typeformのバックアップデータ漏えい [#bc088b0a]

|識別コード|KCI-20180629-01|
|対象クラウドサービス|Typeform|
|攻撃カテゴリ|I(情報漏えい)|
|STRIDE|I(情報漏えい)|
|データタイプ|I(個人情報)|
|件数|S(10,001件以上)|
|責任主体|C(クラウドサービスプロバイダー)|
|主な原因|バックアップデータが保存されたサーバーに不正アクセス|
|概要|バックアップデータが保存されたサーバーに不正アクセスを受け、情報漏えいが発生した。また、保存されているデータは暗号化されていなかった。日本の企業もいくつかTypeformを利用していたところがあり、情報漏えいが発生した。|
|参考|[[Our June 2018 data breach & what it means for you>https://www.typeform.com/data-breach-june-2018/#section_a61e8de4d5c2842f2de14bb016c32e6d]]&br;[[Data leak in the website of surveys Typeform>https://www.certsi.es/en/early-warning/cybersecurity-highlights/data-leak-website-surveys-typeform]]&br;[[Typeform Announces Breach After Hacker Grabs Backup File>https://www.bleepingcomputer.com/news/security/typeform-announces-breach-after-hacker-grabs-backup-file/]]&br;[[Surveys-as-a-service outfit Typeform spilled a backup from May>https://www.theregister.co.uk/2018/07/02/typeform_breach/]]&br;[[Typeform data breach hits thousands of survey accounts>https://nakedsecurity.sophos.com/2018/07/03/typeform-data-breach-hits-thousands-of-survey-accounts/]]&br;[[Check Your Accounts: Typeform Announces Breach, Affected Organizations Pile Up>https://www.trendmicro.com/vinfo/gb/security/news/online-privacy/check-your-accounts-typeform-announces-breach-affected-organizations-pile-up]]&br;[[Typeform leaks user data due to security breach>https://securityonline.info/typeform-leaks-user-data-due-to-security-breach/]]&br;[[Breach of Typeform back up file – which included some elector data>https://www.vision6.com.au/em/message/email/view.php?id=1000613&a=58639&k=rin7odAdi-3w0rGx_T1ySv41yiLc6g2_K2V_2KdM3bg]]&br;[[Typeform社不正アクセス被害により情報漏洩の可能性、株式会社Cogent Labs>https://cybersecurity-jp.com/news/25830]]&br;[[お客様情報流出の可能性に関するご報告とお詫び>https://www.cogent.co.jp/news/2018-07-06-notice-to-product-inquiry-contact-form-users/]]&br;[[Z会子会社が情報漏洩の可能性、アンケートシステム委託先が不正アクセス被害>https://cybersecurity-jp.com/news/25765]]|
|参考|[[Our June 2018 data breach & what it means for you>https://www.typeform.com/data-breach-june-2018/#section_a61e8de4d5c2842f2de14bb016c32e6d]]&br;[[Data leak in the website of surveys Typeform>https://www.certsi.es/en/early-warning/cybersecurity-highlights/data-leak-website-surveys-typeform]]&br;[[Typeform Announces Breach After Hacker Grabs Backup File>https://www.bleepingcomputer.com/news/security/typeform-announces-breach-after-hacker-grabs-backup-file/]]&br;[[Surveys-as-a-service outfit Typeform spilled a backup from May>https://www.theregister.co.uk/2018/07/02/typeform_breach/]]&br;[[Typeform data breach hits thousands of survey accounts>https://nakedsecurity.sophos.com/2018/07/03/typeform-data-breach-hits-thousands-of-survey-accounts/]]&br;[[Check Your Accounts: Typeform Announces Breach, Affected Organizations Pile Up>https://www.trendmicro.com/vinfo/gb/security/news/online-privacy/check-your-accounts-typeform-announces-breach-affected-organizations-pile-up]]&br;[[Typeform leaks user data due to security breach>https://securityonline.info/typeform-leaks-user-data-due-to-security-breach/]]&br;[[Breach of Typeform back up file – which included some elector data>https://www.vision6.com.au/em/message/email/view.php?id=1000613&a=58639&k=rin7odAdi-3w0rGx_T1ySv41yiLc6g2_K2V_2KdM3bg]]&br;[[Typeform社不正アクセス被害により情報漏洩の可能性、株式会社Cogent Labs>https://cybersecurity-jp.com/news/25830]]&br;[[お客様情報流出の可能性に関するご報告とお詫び>https://www.cogent.co.jp/news/2018-07-06-notice-to-product-inquiry-contact-form-users/]]&br;[[Z会子会社が情報漏洩の可能性、アンケートシステム委託先が不正アクセス被害>https://cybersecurity-jp.com/news/25765]]&br;[[アンケートシステムに不正アクセス、個人情報が流出 - Z会グループ会社>http://www.security-next.com/095706]]|
*時系列 [#c39cced7]
+20180627 不正アクセスによる情報漏えい発生。
+20180629 情報を公開

----
#scomment(./コメント,30);