Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

OWASP Foundation Data Breach

April 2, 2024
Reading Time: 2 mins read
in Incidents
OWASP Foundation Data Breach

OWASP, the Open Worldwide Application Security Project Foundation, has revealed a data breach stemming from a misconfiguration of its old Wiki web server. This breach exposed the resumes of certain members, spanning from 2006 to 2014, leading to the exposure of personally identifiable information such as names, contact details, and physical addresses. Although OWASP has taken steps to address the breach, including disabling directory browsing and removing resumes from the wiki site, affected individuals are advised to remain vigilant.

The incident, discovered in late February following support requests, primarily affected members who joined OWASP between 2006 and 2014 and submitted resumes as part of the membership process. OWASP’s Executive Director, Andrew van der Stock, acknowledged the exposure of personal information and clarified that the foundation no longer collects resumes during the membership process. While OWASP will notify affected individuals via email, many of them are no longer members, and the exposed information may be outdated.

In response to the breach, OWASP has implemented various measures to mitigate further access, including reviewing web server configurations, purging the Cloudflare cache, and requesting the removal of exposed resume information from the Web Archive. Van der Stock emphasized that OWASP has already removed affected information from the internet and advised individuals to exercise caution if their personal information is still current. Despite these efforts, the breach underscores the importance of robust security measures and ongoing vigilance to safeguard against data breaches and privacy risks.

Reference:
  • OWASP Foundation Reveals Wiki Misconfiguration Breach

Tags: April 2024cyber incidentsCyber Incidents 2024Cyber RiskCyber threatCyberattacksOWASPWiki web server
ADVERTISEMENT

Related Posts

AI Forged Military IDs Used In Phishing

AI Forged Military IDs Used In Phishing

September 18, 2025
AI Forged Military IDs Used In Phishing

ShinyHunters Claims Salesforce Data Theft

September 18, 2025
AI Forged Military IDs Used In Phishing

Insight Partners Warns After Data Breach

September 18, 2025
DHS Data Hub Leaked Sensitive Intel

DHS Data Hub Leaked Sensitive Intel

September 17, 2025
DHS Data Hub Leaked Sensitive Intel

Worm Infects 180 npm Packages

September 17, 2025
DHS Data Hub Leaked Sensitive Intel

Jaguar Land Rover Delays Restart After Cyberattack

September 17, 2025

Latest Alerts

FileFix Uses Steganography To Drop StealC

Apple Backports Fix For Exploited Bug

Google Removes 224 Android Malware Apps

ChatGPT Calendar Flaw Lets Email Theft

Windows Update Breaks SMBv1 Shares

Scattered Spider Returns Despite Exit

Subscribe to our newsletter

    Latest Incidents

    AI Forged Military IDs Used In Phishing

    Insight Partners Warns After Data Breach

    ShinyHunters Claims Salesforce Data Theft

    DHS Data Hub Leaked Sensitive Intel

    Worm Infects 180 npm Packages

    Jaguar Land Rover Delays Restart After Cyberattack

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial