You are here: Home » Technology » News
Business Standard

Personal information of over 100,000 gamers accidentally leaked by Razer

Gaming hardware vendor Razer has accidentally exposed personal information of over 100,000 gamers that was available for nearly a month for hackers to exploit

Topics
online gamers | data leakage

IANS  |  San Francisco 

Representative image
Representative image

Gaming hardware vendor Razer has accidentally exposed personal information of over one lakh gamers that was available for nearly a month for hackers to exploit.

Security researcher Volodymyr Diachenko first discovered that customer data on Razer's website was made publicly available on August 18 because of a server misconfiguration.

Leaked data included full name, email, phone number, customer internal ID, order number, order details, billing and shipping address.

After discovering the misconfiguration online, Diachenko reached out to Razer several times over the span of three weeks before receiving a reply.

"My message never reached the right people inside the company and was processed by non-technical support managers for more than three weeks until the instance was secured from public access," Diachenko said in a post on LinkedIn.

Razer is a global gaming hardware manufacturing company, esports and financial services provider.

In a statement, the company acknowledged the server misconfiguration.

"We were made aware by Volodymyr of a server misconfiguration that potentially exposed order details, customer and shipping information. No other sensitive data such as credit card numbers or passwords was exposed," the company said.

"The server misconfiguration has been fixed on September 9, prior to the lapse being made public," the company added.

However, according to Diachenko, the customer records could be used by criminals to launch targeted phishing attacks wherein the scammer poses as Razer or a related company.

"Customers should be on the lookout for phishing attempts sent to their phone or email address. Malicious emails or messages might encourage victims to click on links to fake login pages or download malware onto their device".

Razer customers could be at risk of fraud and targeted phishing attacks perpetrated by criminals who might have accessed the data, the security researcher warned.

--IANS

wh/na

(Only the headline and picture of this report may have been reworked by the Business Standard staff; the rest of the content is auto-generated from a syndicated feed.)

Dear Reader,


Business Standard has always strived hard to provide up-to-date information and commentary on developments that are of interest to you and have wider political and economic implications for the country and the world. Your encouragement and constant feedback on how to improve our offering have only made our resolve and commitment to these ideals stronger. Even during these difficult times arising out of Covid-19, we continue to remain committed to keeping you informed and updated with credible news, authoritative views and incisive commentary on topical issues of relevance.
We, however, have a request.

As we battle the economic impact of the pandemic, we need your support even more, so that we can continue to offer you more quality content. Our subscription model has seen an encouraging response from many of you, who have subscribed to our online content. More subscription to our online content can only help us achieve the goals of offering you even better and more relevant content. We believe in free, fair and credible journalism. Your support through more subscriptions can help us practise the journalism to which we are committed.

Support quality journalism and subscribe to Business Standard.

Digital Editor

First Published: Tue, September 15 2020. 11:46 IST
RECOMMENDED FOR YOU
RECOMMENDED FOR YOU
.