Expert Commentary: Casino App Clubillion Leaks PII On “Millions” Of Users

Researchers at vpnMentor discovered the unsecured database hosted on AWS as part of a broader web mapping project and quickly traced it back to casino app Clubillion in March.

The online database, which was finally secured on April 5, was updated with huge amounts of users’ personal information every single day: in the region of 200 million new records, and included personally identifiable information (PII) including emails, private messages, winnings and IP addresses.


EXPERTS COMMENTS
Anurag Kahol, CTO,  Bitglass
July 09, 2020
To safeguard customer data, organisations must have full visibility and control over their data in order to prevent breaches and leaks.
According to Gartner, 99% of cloud security mishaps will continue to be a result of misconfigurations caused by human error through 2025. Cloud security is a shared responsibility between the cloud service provider and the organisation, but the onus is on the companies that use services like AWS to ensure that data storage buckets are configured correctly and are properly secured. Sensitive and p ....
[Read More >>]

If you are an expert on this topic:

Submit Your Expert Comments


In this article