Zomato Hacked! Database of 17 Million Users Stolen

  • 18 May 2017
  • 1 reply
  • 48 views

Userlevel 7
Badge +54
Graham Cluley  May 18, 2017
 
Restaurant search website Zomato has announced that it has suffered a major security breach, resulting in the theft of a user database containing 17 million users’ names, email addresses and passwords.
 
The news comes as it is reported that a hacker calling themselves “nclay” is claiming to offer the database for sale on the dark web.
 
              


 
Full Article

1 reply

Userlevel 7
Badge +54

All it took for the hacker to agree to destroy all data was the launch of a bug bounty program via HackerOne

 
May 19, 2017  ·  By Gabriela Vatu All data to be destroyed 
There's an extra good news, however, as the hackers have reportedly agreed to pull the listing from the marketplace with one condition - Zomato starts running a healthy bug program for security researchers. The company agreed and will introduce a bug bounty program via HackerOne. 
 
"With that assurange, the hacker has in turn agreed to destroy all copies of the stolen data and take the data off the dark web marketplace. The marketplace link which was being used to sell the data on the dark web is no longer available," Zomato said
 
Full Article
  

Reply