Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

Gravy Analytics Confirms Data Breach

January 14, 2025
Reading Time: 2 mins read
in Incidents
Gravy Analytics Confirms Breach Exposing Location Data From Millions of Users

Gravy Analytics, a prominent location data broker, confirmed a security breach that compromised its cloud storage environment, potentially exposing millions of users’ data. The breach was discovered after a hacker accessed the company’s Amazon Web Services (AWS) cloud storage through a misappropriated access key. Gravy Analytics reported the breach to Norway’s Data Protection Authority, with the hacker notifying the company of the unauthorized access on January 4. Although the company acknowledged that some files were obtained, it remains unclear whether personal data was involved, and investigations are ongoing.

The stolen data is believed to have included historical location information from smartphones, which was gathered through thousands of apps that Gravy Analytics collaborates with. These apps include widely used platforms such as Tinder, Grindr, Candy Crush, and even more niche applications like those related to pregnancy tracking and religious content. Gravy Analytics has stated that the data could be linked to users of third-party services that supplied data to the company, but further analysis is needed to determine the full scope of the breach.

The company took swift action after the breach was detected:

The company took swift action after the breach was detected, securing its AWS environment to prevent further unauthorized access. However, the breach is significant as it involves data that is critical to Gravy Analytics’ business model. The firm had been previously involved in controversies over its practices of collecting non-anonymized consumer data without verifiable consent, leading to a Federal Trade Commission (FTC) investigation. The FTC’s investigation revealed that Gravy Analytics and its subsidiary, Venntel, were selling non-anonymized data to both commercial and government entities.

The incident underscores the growing concerns surrounding the location data brokerage industry, particularly with regard to the collection, sale, and use of consumer data. Gravy Analytics, which gathers over 17 billion signals daily from approximately one billion smartphones, had previously faced scrutiny over its data collection practices. The breach could have wider implications for the regulatory environment, especially as law enforcement and intelligence agencies have increasingly relied on location data for investigations, sometimes bypassing traditional warrant requirements.

.

Reference:

  • Gravy Analytics Confirms Breach Exposing Location Data From Millions of Users
Tags: cyber incidentsCyber Incidents 2025CyberattackData BreachesGravy AnalyticsJanuary 2025
ADVERTISEMENT

Related Posts

Customer Data Breach at Seychelles Bank

Cyberattack Strikes Air Serbia

July 17, 2025
Customer Data Breach at Seychelles Bank

Ukrainian Hack Hits Russian Drone Firm

July 17, 2025
Customer Data Breach at Seychelles Bank

Customer Data Breach at Seychelles Bank

July 17, 2025
Fitify Leaks 138K User Progress Photos

Albemarle County Ransomware Attack

July 16, 2025
Fitify Leaks 138K User Progress Photos

Millions Affected By Episource Data Breach

July 16, 2025
Fitify Leaks 138K User Progress Photos

Fitify Leaks 138K User Progress Photos

July 16, 2025

Latest Alerts

SonicWall Zero-Day RCE Exploited

Stealthy JavaScript Attacks via SVG Files

Malicious Telegram APK Campaign Uncovered

Google Realeases Critical Chrome Update

Interlock deploys new PHP RAT via FileFix

Android Malware Konfety Evolves

Subscribe to our newsletter

    Latest Incidents

    Cyberattack Strikes Air Serbia

    Customer Data Breach at Seychelles Bank

    Ukrainian Hack Hits Russian Drone Firm

    Albemarle County Ransomware Attack

    Fitify Leaks 138K User Progress Photos

    Millions Affected By Episource Data Breach

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial