The database was open for approximately one week before the problem was discovered.

Dark Reading Staff, Dark Reading

October 29, 2019

1 Min Read

An unprotected Elasticsearch database left the account details of 7.5 million Adobe Creative Cloud customers exposed to anyone with a Web browser. The open database, since closed, could have provided information such as names, email addresses, and Creative Cloud applications used to any curious individual.

Comparitech, with security researcher Bob Diachenko, discovered the database on Oct. 19. Diachenko, who estimated the database had been open for approximately one week, notified Adobe that same day, which is also when the company secured the database.

While no payment information was compromised, the information in the database could be used for phishing attacks against customers.

Read more here.

 

Virtual.Event-Fall19-380x50_DRVE.jpg

This free, all-day online conference offers a look at the latest tools, strategies, and best practices for protecting your organization’s most sensitive data. Click for more information and, to register, here.

About the Author(s)

Dark Reading Staff

Dark Reading

Dark Reading is a leading cybersecurity media site.

Keep up with the latest cybersecurity threats, newly discovered vulnerabilities, data breach information, and emerging trends. Delivered daily or weekly right to your email inbox.

You May Also Like


More Insights