№18323543[Quote]
Double Counter’s data breach may be much bigger than initially reported, someone in contact with the hacker just sent me more info
The stolen database allegedly contained much more:
-21.7 million verified user records
IP addresses, geographic data, ISPs and Discord usernames
-44.1 million device fingerprint records
14.5 GB of device fingerprint data
-31 million server records
-19.2 million lens-counter records
-14.6 million VPN-attempt records
-831,000 Google user records
~220,000 user emails
~1.08 million Google search records
-A database around 39 GB
>The source also claims Double Counter’s GDPR deletion system did not actually remove all user data.
>According to them, the /privacy deletion command allegedly only removed a user’s current IP, while other information could remain stored, including emails, alternate accounts, their IPs and connections between main and alternate accounts.
>They also claim Double Counter staff deleted messages and banned users who questioned how much data had actually been leaked.
>The source further described an attack chain:
Metabase breach → plaintext password found → same password used on the server → SSH access → logged-in Google Cloud CLI session → access to the cloud environment → database downloaded.
They claim the attackers also obtained secrets, runtime logs and the entire Discord support ticket history.
>One ticket reportedly involved a user warning Double Counter that an ad on its verification page was malicious but the owner refused to remove it because the ad revenue was needed to pay for the servers.
№18323560[Quote]
Worrysome!
№18323562[Quote]
#holyshitnigga
№18323570[Quote]
GEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEG
№18323576[Quote]
So where can i view this breach? im curious if anyone i know is in it.
№18323589[Quote]
>>18323576Don't know xaar, 'umping this thread
№18323602[Quote]
>>18323589Well let me know, cause if nobody can actually view the breach it's SNCA