GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    admin (admin@mastodon.tech)'s status on Sunday, 13-Aug-2023 07:52:43 JST admin admin

    — Data Leak Existed for at Least 3 Months On #Mastodon —

    According to the service, they registered that the misconfiguration existed on February 24. Subsequently, it is said to have taken only half an hour to fix the error. However, the question arises as to how long criminals had access to the exposed data. The service itself suspects that it existed since February 2. However, a user of the social network gives a different information. He reported that his data had already been exported on December 5. If this is the case, the leak would have lasted for more than three months. However, Rochko contradicted this information.

    The CEO also revealed the exact number of people affected. If you add the users of Mastodon.social with those of Mastodon.online, which was also affected, you get more than 6,000 users. In addition, it was human error that led to the misconfiguration. The wrong setting was also found in other channels of the service. Of course, it was corrected there as well. Rochko told colleagues at Golem.de that no evidence of data access could be found in the archives. Nevertheless, access cannot be ruled out with absolute certainty.

    SOURCE: https://basic-tutorials.com/news/major-data-leak-from-mastodon/

    In conversation Sunday, 13-Aug-2023 07:52:43 JST from mastodon.tech permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: www.golem.de
      Golem.de: IT-News für Profis

    2. https://mastodon.tech/media/bc1d9fc7a15a8d96ae437b869aa0c81afd9a6b62cf135a6554c7bde3ac1faffd.png
    3. Domain not in remote thumbnail source whitelist: basic-tutorials.de
      Major data leak from Mastodon
      from @BasicTutorial
      There is said to have been a major data leak at Mastodon. The Mastodon.social instance of the Twitter alternative was affected.
    • admin likes this.
    • Embed this notice
      raymondpert (raymondpert@mstdn.social)'s status on Sunday, 13-Aug-2023 09:51:44 JST raymondpert raymondpert
      in reply to

      @admin

      Major data leak from Mastodon

      >Apparently, third parties have even gained access to direct messages.

      https://basic-tutorials.com/news/major-data-leak-from-mastodon/ #mastodon #security #privacy

      In conversation Sunday, 13-Aug-2023 09:51:44 JST permalink
      admin likes this.

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.