data protection

Nearly a Million Passports Just Exposed on the Public Internet—and Anyone Could Access Them with a Simple URL

Nearly a million passports and photo IDs from multiple European countries were exposed on public web servers without any authentication, encryption, or access controls, allowing anyone with a URL to access these sensitive documents for months. The data, collected for age verification by the company Nefos and associated cannabis clubs, remained vulnerable due to critical security misconfigurations, raising significant risks of identity theft and document fraud for affected individuals. This incident highlights severe failures in data stewardship and compliance with established security standards for handling identity verification information.

https://cambridgeanalytica.org/data-breaches-scandals/passports-driver-licenses-exposed-public-internet-2026-51096/

FBI Warns of Data Security Risks From China-Made Mobile Apps

The FBI has issued an alert warning about data security risks posed by foreign-developed mobile applications, especially those from China, which may collect personal information, store data in China, or contain malware. While the alert does not specify names, apps like TikTok, Shein, Temu, and DeepSeek are noted examples of widely used apps in the US that have faced scrutiny over national security and data concerns.

https://www.securityweek.com/fbi-warns-of-data-security-risks-from-china-made-mobile-apps/

Scroll to Top