Groupon loses 300,000 user details

By

Australian users safe.

The entire customer database of a Groupon subsidiary in India has been leaked and indexed by Google.

Groupon loses 300,000 user details
Darren Pauli, SC Magazine.

Sosasta.com exposed the database by mistake which included usernames and passwords for customers of the group buying website.

The company informed customers of the breach by email and advised them to change passwords.

It said financial information was not exposed.

"We wanted to let you know that the issue has been brought under control and your accounts are secure. However, as a precautionary measure, we recommend that you change your Sosasta password immediately," it said in a email.

"You should know that we are working aggressively to prevent this from happening again. Sosasta takes security and privacy very seriously."

Groupon said in a statement that Sosasta runs a separate platform and is not connected to the Groupon Australian site.

Sydney security researcher Daniel Grzelak discovered the database indexed by Google and contacted Risky.Biz which reported the incident.

Got a news tip for our journalists? Share it with us anonymously here.

Copyright © SC Magazine, Australia

Tags:

Most Read Articles

First npm worm "Shai-Hulud" released in supply chain attack

First npm worm "Shai-Hulud" released in supply chain attack

"VoidProxy" PhishKit targets Google and Microsoft users

"VoidProxy" PhishKit targets Google and Microsoft users

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

Log In

  |  Forgot your password?