Data Leak at The Corbett Report Exposes User Emails Due to Plugin Issue
By
paulnpace
Crispy enough to crunch, soft enough to enjoy. A good bake.
Summary
A data leak at The Corbett Report exposed email addresses and usernames of some users due to an issue with the GiveWP WordPress plugin. The plugin has been deactivated, but the exposed data was already captured by spambots. The author is contacting affected users and addressing concerns.
Key quotes
· 3 pulledOne of the latest updates of the GiveWP WordPress plugin 'accidentally' started publishing the email addresses and usernames of some Corbett Report users to the source code of the site.
The plugin has been deactivated and the email addresses are no longer exposed, but the email addresses were already caught by the spambots.
I am in the process of emailing every email address that was exposed by this, but if you are a Corbett Report member who has any questions or concerns about this, please contact me directly.
You might also wanna read
New phishing campaign targets Signal users to steal chat backup recovery keys
Hackers are targeting Signal users in a new phishing campaign that attempts to steal their chat backups. The attackers pose as Signal's supp
Apple Fixes Security Bug That Allowed Law Enforcement to Access Deleted iPhone Messages
Apple has released a software update fixing a security bug that allowed law enforcement to extract deleted messages from iPhones and iPads.
EU Age Verification App Found Vulnerable to Security Breaches Despite 'Technically Ready' Claims
Security researchers have identified significant vulnerabilities in the EU's newly launched age verification app, contradicting the European
WhatsApp Security Vulnerability Allows Malicious Media Files to Spread Automatically in Group Chats
Google's Project Zero team discovered a serious security vulnerability in WhatsApp that allows malicious media files to automatically downlo
Hackers Pose as Police to Trick Tech Companies Into Sharing Private Data
Hackers are successfully obtaining sensitive personal data from major tech companies by posing as law enforcement officers. Using spoofed em
Discord Age Verification Service Hacked, 70,000 Users' ID Photos Stolen
Discord experienced a data breach where hackers stole official ID photos and personal information of approximately 70,000 users from a third
