Thursday, March 23, 2023
Kiratas
  • Home
  • World
  • Lifestyle

    Trending Tags

    • Pandemic
  • Business
  • Entertainment
  • Sports
No Result
View All Result
  • Home
  • World
  • Lifestyle

    Trending Tags

    • Pandemic
  • Business
  • Entertainment
  • Sports
No Result
View All Result
Kiratas
No Result
View All Result
Home World

Configuration error leads to data leak in Mastodon

Kiratas by Kiratas
March 18, 2023
in World
Reading Time: 1 min read
0
0
SHARES
1
VIEWS
Share on FacebookShare on Twitter

The cause of a data leak at Mastodon was not an external intrusion, but an insufficient configuration of the Mastodon server for storing user data. This made it theoretically possible for every user of the service to view the data uploaded to files.mastodon.social. Mastodon discovered the bug on February 24th and closed it within 30 minutes. However, the leak had existed since the beginning of February because the infrastructure had been upgraded at the time, the provider writes in an e-mail.

Data exports public

Mastodon normally protects access to files with long, randomly generated file names, among other things, so that only those who know the link can access the files. However, this mechanism could be circumvented in the course of the upgrade. Much of the data accessible in this way is publicly available anyway.

However, this does not apply to the data exports downloaded by users, which also contain non-publicly shared posts, direct messages and attachments. In a statement, Mastodon stated that this archive data was immediately deleted to prevent further access to it. However, it was not possible to prevent access that had already taken place.

The temporarily public data exports contain the public profile, your own favorites and bookmarks as well as posts and media attachments. Mastodon assured that neither e-mail addresses nor other personal identification data were included. No further action is required from users.

(uk)

To home page

Tags: configurationdataData keyerrorfile serverleadsLeakMastodonSecurityVulnerabilities

Related Posts

World

Microsoft launches Loop – a canvas for working together

by Kiratas
March 23, 2023
World

Microsoft launches Loop – a canvas for working together

by Kiratas
March 23, 2023
World

The audio of the mayor of Mérida plugging in his own: “Many people are here in fraud of the law”

by Kiratas
March 23, 2023
World

Internal company austerity measures: This is how Apple wants to avoid layoffs

by Kiratas
March 23, 2023
World

Russell responds to Fernando Alonso’s hesitation and returns the trophy

by Kiratas
March 23, 2023
Next Post

Mallorca, against the curse of the "engineer" Mallorca "engineer"

Configuration error leads to data leak in Mastodon

What happens in the field...

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Kiratas

Latest News from World, Health, Politics, Sports, Business, Education, Technology, Arts and Latin America, the Middle East, South Asia.
Contact Us:
[email protected]

Categories

  • Automobile
  • Business
  • Sports
  • World

Browse by Tag

Apple Artificial Intelligence Bank business ChatGPT Check Cybercrime data data protection day Energy EU euros Facebook February Google government health iOS iPhone law League Linux and Open Source live Mac Madrid March Microsoft million online photo price result Security Smartphone Spain Spanish Sánchez Test time today Vulnerabilities world year years

Recent Posts

  • Microsoft launches Loop – a canvas for working together
  • Microsoft launches Loop – a canvas for working together
  • The audio of the mayor of Mérida plugging in his own: “Many people are here in fraud of the law”
  • DMCA
  • Home

© Kiratas 2023. All Rights Reserved.

No Result
View All Result
  • Home
  • Landing Page
  • Buy JNews
  • Support Forum
  • Contact Us

© Kiratas 2023. All Rights Reserved.