• Skip to main content
  • Skip to primary sidebar
  • Skip to footer

SwaCash | Internet Marketing News

Latest Updates on Tech, Internet & Digital World

  • Home
  • Digital Marketing
  • Social Media
  • Technology
  • About
  • Contact Us
You are here: Home / News / The personal data of 7,883 Decathlon employees were exposed

The personal data of 7,883 Decathlon employees were exposed

May 24, 2021 by Amer Bekic

With so much data, hackers could easily create phishing campaigns. In question: a bad configuration of the S3 bucket, an Amazon Web Services server, by a partner of the group.

The incorrect configuration of an S3 bucket would have allowed the personal data of 7,883 employees to be exposed.

VPNmentor just released its new massive data exposure survey. According to the cybersecurity agency, a personal database concerning 8% of Decathlon’s workforce (7,883 employees) was exposed for several months. The improper configuration of an AWS 3 Bucket would cause this flaw. An incident that obviously recalls the security breach of 2020 which exposed 123 million customer data.

Should the Decathlon group expect to suffer cyber attacks?

In its investigation, VPNmentor shows that the nature of the data exposed is varied. These include names, first names, e-mail addresses, countries or city of residence, as well as photos. The consulting company Bluenove also carried out an internal survey on behalf of Deacathlon called “Vision 2030”. Bluenove researchers specify that: “the photos exhibited are illustrative photos of the platform, but in no case personal photos of the employees. As for the” city “or the” country “, they linked the data to the locations of Decathlon stores and not to the personal information of the persons concerned”.

So much exposed data could allow hackers to set up effective phishing campaigns by impersonating Decathlon, by email or even by phone. Many employees could then reveal important information, give out their passwords or click on inappropriate links containing malware. In its investigation, VPNmentor could not determine the exact exposure time of the data, but the researchers estimate that the breach took place between March and November 2020 … a period long enough for malicious people to have could grab it.

Could the flaw have been avoided?

A Decathlon spokesperson answered questions from the Computer World. He explains: “A Decathlon data storage space, belonging to one of its service providers, and managed by it has been exposed on the internet. No data has been disclosed or used by third parties. No banking data or password was not affected. Decathlon, kept informed on April 12, 2021, immediately took the measures to put an end to this exposure”. According to the sign, the impact analysis carried out internally did not reveal any risks for the employees concerned.

For VPNmentor, such exposure could certainly have been avoided. In particular, it would be possible to make the bucket private by adding authentication protocols. The cybersecurity researchers add that: “It is also possible to add more layers of protection to S3 compartments to further restrict who can access them from each entry point,” Bluenove claims, however, that all buckets are encrypted. A spokesperson for the company spoke:“We clearly deplore this exposure of data. Even if it is non-critical data, as a technological company, we must implement every means daily so that the data of our consultations is protected” .

Filed Under: News

Primary Sidebar

E-mail Newsletter

More Articles

Three Tweets related to EtherRock sales

Not one not two, Three digital pet rock cliparts sell for $600K each

August 22, 2021 By Amer Bekic

PolyNetwork Hacking Incedence

Hacker who stole $800 Million, now offered a white hat job by its victim firm

August 20, 2021 By Amer Bekic

credit card back panel containing the magnetic stripe

MasterCard announces future without magnetic stripe on the back.

August 17, 2021 By Amer Bekic

Fortune magazine sells its cover art as NFT. Raises 1.3 Million dollars

August 14, 2021 By Amer Bekic

Bored Ape Yacht Club Token 3749

This bored ape pic just sold for 1.29 Million dollars!

August 14, 2021 By Amer Bekic

Footer

Search this site

Recent Articles

  • Not one not two, Three digital pet rock cliparts sell for $600K each
  • Hacker who stole $800 Million, now offered a white hat job by its victim firm
  • MasterCard announces future without magnetic stripe on the back.
  • Fortune magazine sells its cover art as NFT. Raises 1.3 Million dollars
  • This bored ape pic just sold for 1.29 Million dollars!

Browse Topics

  • Blogging (164)
  • Content Marketing (7)
  • Cryptocurrency (5)
  • Digital Marketin (4)
  • Digital Marketing (333)
  • E-commerce (122)
  • Google (195)
  • Google Ads (24)
  • Marketing (166)
  • News (344)
  • Seo (74)
  • Social Media (43)
  • Technology (27)
  • Uncategorized (82)
  • WordPress (22)

Tags

Amazon Android Apple Apple Watch Artificial Intelligence B2B Bitcoin Blogging China Content Content Marketing Coronavirus Cryptocurrency Cybercriminals cybersecurity Digital Digital Marketing Facebook Gaming Google Increase Sales Instagram Intel internet strategy iOS 15 iPhone iPhone 12 IPhone 13 Make Money Marketing Microsoft Nvidia Online Marketing Samsung Science Search engine optimization Seo SEO optimization by content Social Media Social networks Technology TikTok Twitter Windows 11 YouTube

© 2019–2025 · SwaCash.com