Burger King Serves Up Sensitive Data, No Mayo

  /     /     /  
Publicated : 23/11/2024   Category : security


Burger King Serves Up Sensitive Data, No Mayo


The incident marks the second time since 2019 that a misconfiguration could have let threat actors have it their way when it comes to BKs data.



A misconfiguration in the site for Burger King France has exposed sensitive data that could have been used to launch a whopper of a cyberattack against the chain.
Researchers at Cybernews found the flaw and noted that a similar 2019
misconfiguration
had leaked information on kids who bought Burger King menus.
The most recent
Burger King data leak
incident exposed database credentials, and what researchers think are job posts and applicant data. The analysts werent legally able to view the contents of the database, the report noted.
By combining the compromised credentials with the sites Google Tag Manager ID, threat actors could have changed the Tag ID to a container they control, and from there 
execute arbitrary code
, the Security Affairs team explained. The researchers also discovered a Google Analytics ID among the exposed data, which could have been used to manipulate the sites analytics.
The researchers alerted Burger King to the potential for cyberattacks stemming from the data exposure, and the problem has been fixed.

Last News

▸ ArcSight prepares for future at user conference post HP acquisition. ◂
Discovered: 07/01/2025
Category: security

▸ Samsung Epic 4G: First To Use Media Hub ◂
Discovered: 07/01/2025
Category: security

▸ Many third-party software fails security tests ◂
Discovered: 07/01/2025
Category: security


Cyber Security Categories
Google Dorks Database
Exploits Vulnerability
Exploit Shellcodes

CVE List
Tools/Apps
News/Aarticles

Phishing Database
Deepfake Detection
Trends/Statistics & Live Infos



Tags:
Burger King Serves Up Sensitive Data, No Mayo