SeniorAdvisor.com

SeniorAdvisor.com

One of the biggest senior care and service advisory site in Canada and USA was impacted by data breach.

Its amazon S3 bucket storing over 180GB of data was accessed by the attackers and about 3 million senior citizens’ data containing names, emails, phone numbers, dates contacted and more was compromised.

The company soon fixed the breach and informed the impacted customers to be aware about any phishing attacks.

Source: https://www.komando.com/security-privacy/data-breach-impacts-seniors/803085/

TPRM report: https://scoringcyber.rankiteo.com/company/senioradvisor-com

"id": "sen153730322",
"linkid": "senioradvisor-com",
"type": "Breach",
"date": "08/2021",
"severity": "90",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': '3 million',
                        'industry': 'Healthcare',
                        'location': ['Canada', 'USA'],
                        'type': 'Senior Care and Service Advisory Site'}],
 'attack_vector': 'Unsecured Amazon S3 bucket',
 'customer_advisories': 'Informed impacted customers about the breach and '
                        'advised them to be aware of phishing attacks',
 'data_breach': {'data_exfiltration': True,
                 'number_of_records_exposed': '3 million',
                 'personally_identifiable_information': True,
                 'type_of_data_compromised': ['names',
                                              'emails',
                                              'phone numbers',
                                              'dates contacted']},
 'description': 'The Amazon S3 bucket of a senior care and service advisory '
                'site was accessed by attackers, compromising data of about 3 '
                'million senior citizens.',
 'impact': {'data_compromised': ['names',
                                 'emails',
                                 'phone numbers',
                                 'dates contacted'],
            'systems_affected': ['Amazon S3 bucket']},
 'initial_access_broker': {'entry_point': 'Amazon S3 bucket'},
 'post_incident_analysis': {'root_causes': 'Misconfigured Amazon S3 bucket'},
 'response': {'communication_strategy': ['Informed impacted customers about '
                                         'the breach',
                                         'Advised customers to be aware of '
                                         'phishing attacks'],
              'containment_measures': 'Fixed the breach'},
 'title': 'Data Breach at Senior Care and Service Advisory Site',
 'type': 'Data Breach',
 'vulnerability_exploited': 'Misconfigured Amazon S3 bucket'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.