Sensitive DoD Data Discovered on Unprotected Server

  /     /     /  
Publicated : 22/11/2024   Category : security


Sensitive DoD Data Discovered on Unprotected Server


Researcher found unsecured repository of 60,000 documents of sensitive US data on a publicly exposed Amazon Web Services S3 bucket used by government contractor Booz Allen Hamilton.



Security credentials and password information that could potentially yield access to sensitive Department of Defense military documents were among the 60,000 files found on an unsecured Amazon cloud server used by government contractor Booz Allen Hamilton, according to a Gizmodo report.
UpGuard cyber risk analyst Chris Vickery made the discovery of the unsecured documents, which contained a number of references to the DoDs combat support and intelligence agency 
US National Geospatial-Intelligence Agency
(NGA). No passwords were needed to access the publicly exposed information, according to the report.
Although the NGA stressed that no classified information had been disclosed in the incident, the information could have provided a potential path for attackers to obtain highly sensitive data. An attacker could have found not only passwords to US government systems that store sensitive information, but unencrypted passwords for at least six government contractors who had a high-level of security clearance.
The documents also contained security credentials for a Booz Allen lead senior engineer, which would have provided his private SSH keys, according to the report.
Read more about the NGA incident
here
.

Last News

▸ ArcSight prepares for future at user conference post HP acquisition. ◂
Discovered: 07/01/2025
Category: security

▸ Samsung Epic 4G: First To Use Media Hub ◂
Discovered: 07/01/2025
Category: security

▸ Many third-party software fails security tests ◂
Discovered: 07/01/2025
Category: security


Cyber Security Categories
Google Dorks Database
Exploits Vulnerability
Exploit Shellcodes

CVE List
Tools/Apps
News/Aarticles

Phishing Database
Deepfake Detection
Trends/Statistics & Live Infos



Tags:
Sensitive DoD Data Discovered on Unprotected Server