BMW exposes customer data

 

BMW Italy has accidentally exposed sensitive client data through a Laravel framework bug.  

Researchers say that this data may be used to gather information on customers and target them later.

  • According to BMW, hackers could have stolen information such as:
    • full names,
    • addresses,
    • phone numbers,
    • email addresses,
    • vehicle type,
    • location data, etc.
  • The .git configuration file, exposed to the public, would have allowed threat actors to find other exploitable vulnerabilities since it contained the .git repository for the site's source code.
  • The automaker says this data has been secured but has warned its customers to be careful and not open links that seem suspicious or come from unknown sources.


Post a Comment

Previous Next

Contact Form