A security researcher found an unsecured database packed with network logs generated by a security appliance connected to India’s Central Industrial Security Force's network.
The logs contained records for more than 246,000 web addresses of PDF documents on CISF’s network containing the sensitive personally identifiable information on CISF officers.
The database was exposed because of a security issue with Haltdos, a company that provides network security technology to the organization.
It was soon removed from the internet and the database was secured.
Source: https://techcrunch.com/2022/03/18/india-cisf-security-data-exposed/
"id": "CIS17343522",
"linkid": "cisfcentralindustrialsecurityforce",
"type": "Breach",
"date": "03/2022",
"severity": "100",
"impact": "7",
"explanation": "Attack that could injure or kill people"