駭客公開1,500萬名Trello用戶個資
支付動態 · 2024-07-17

專案管理工具Trello逾1,500萬名使用者個資被免費公開於地下論壇,提供這批資料的駭客宣稱利用了Trello一個開放的API端點

Trello今年1月曾向媒體說明,駭客並未破壞其系統,所有的證據皆顯示駭客是利用外洩的電子郵件名單來比對公開的Trello用戶個人檔案。

Emo也在本周對外解釋他如何取得Trello的用戶個資,說法與Trello大致相同。他說Trello有一個開放的API端點,可允許任何未經身分驗證的使用者比對既有電子郵件帳戶及Trello帳戶,他一開始只打算輸入以.com結尾的電子郵件帳戶,後來卻欲罷不能。Emo還說該資料庫非常適合用來進行肉搜。

資安專家則提醒,已得知特定服務的帳戶外洩的使用者要特別小心網釣攻擊。

Popular articles
JILI Partners with Cricket Legend AB de Villiers (ABD) to Launch Exclusive Branded Game Series 100% 11
Sports Game
Full House at GAT Expo Cartagena 2026 Academic Agenda
Online Game
New Jersey July Gambling Revenue Hits $606M, Sweeps Casinos Banned
Regulation
Indiana online casino bill stalls in House committee
Regulation
GGC Awards 2026 Shines in Colombo: Honoring Leaders and Innovators in the iGaming Industry
HUIDU Focus
Brazil Proposes Raising Gambling Tax Rate to 24%, With Revenue Allocated to Social Security and Healthcare
Regulation
British gambling levy rates confirmed for each vertical
Regulation
Super PAC Raises $48 Million: Sports Betting Forces Ramp Up Political Push
Regulation
Vietnam’s Controlled Gaming Shift Gains Ground, But Domestic Demand Still Lags
Southeast Asia
Institutional Academy that exceeded expectations marked the opening of GAT CDMX
Online Game
SBC Summit Canada to Make Player Safety a Key Pillar of 2026 Agenda
Marketing
Across 6 Cities: HUIDU Invites You to 8 World Cup Parties Redefining High-Value Social Networking
HUIDU Focus
1spin4win grows its Latin American presence by partnering with Fortuna Juegos
Online Game
Online gambling, crypto pose ongoing money laundering risks in Philippines, analyst says
Southeast Asia
UK MPs reopen 2025 gambling inquiry as reform stalls
Regulation
Home
Game
Cooperation
Find
My