Groupon loses 300,000 user details

By

Australian users safe.

The entire customer database of a Groupon subsidiary in India has been leaked and indexed by Google.

Groupon loses 300,000 user details
Darren Pauli, SC Magazine.

Sosasta.com exposed the database by mistake which included usernames and passwords for customers of the group buying website.

The company informed customers of the breach by email and advised them to change passwords.

It said financial information was not exposed.

"We wanted to let you know that the issue has been brought under control and your accounts are secure. However, as a precautionary measure, we recommend that you change your Sosasta password immediately," it said in a email.

"You should know that we are working aggressively to prevent this from happening again. Sosasta takes security and privacy very seriously."

Groupon said in a statement that Sosasta runs a separate platform and is not connected to the Groupon Australian site.

Sydney security researcher Daniel Grzelak discovered the database indexed by Google and contacted Risky.Biz which reported the incident.

Got a news tip for our journalists? Share it with us anonymously here.

Copyright © SC Magazine, Australia

Tags:

Most Read Articles

Australia's super funds told to assess authentication controls

Australia's super funds told to assess authentication controls

Woolworths' CSO is Optus-bound

Woolworths' CSO is Optus-bound

CBA looks to GenAI to assist 1200 'security champions'

CBA looks to GenAI to assist 1200 'security champions'

Hackers abuse modified Salesforce app to steal data, extort companies

Hackers abuse modified Salesforce app to steal data, extort companies

Log In

  |  Forgot your password?