Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

Roomster Data Leak Exposes 44 Million Files

January 3, 2025
Reading Time: 2 mins read
in Incidents
Roomster Data Leak Exposes 44 Million Files

A serious data breach involving Roomster, the online house-sharing platform, has come to light, potentially compromising the personal information of millions of users. The breach, first uncovered by security researcher @JayeLTee in November 2024, was linked to a misconfigured server that exposed sensitive data for over two years. Among the 44 million files potentially affected were important documents such as driver’s licenses, passports, state ID cards, and work permits. This exposure could have significant privacy implications for those whose personal data was stored in the files.

Upon discovering the breach, @JayeLTee took immediate action by notifying Roomster through their privacy email address. Unfortunately, the company did not respond to the responsible disclosure. As a result, the researcher escalated the issue by reaching out to the New York State Attorney General’s Office. His efforts eventually led to the locking down of the exposed data by December 2024, though Roomster failed to acknowledge the researcher’s notification or offer an explanation regarding the breach. It remains unclear whether the intervention of the state played a role in the resolution.

Roomster, which had previously been involved in legal troubles in 2023, settling charges with the Federal Trade Commission and six states for misleading practices related to fake reviews and unverified listings, now faces new scrutiny. The lack of a direct response or contact information on the website raises further concerns about the company’s commitment to data security. Roomster’s privacy policy notes that it implements “reasonable security measures,” but such language has been called into question, especially in light of this prolonged exposure of highly sensitive information without encryption.

This breach raises important questions about data protection practices and the accountability of companies that handle sensitive user information. Given the failure to address the security lapse for over two years, regulators such as the FTC and New York State may take further action. Roomster’s data security failures may lead to increased regulatory pressure, prompting a closer look at whether the company can truly be trusted to safeguard the personal information of its users. As of now, it remains to be seen what consequences, if any, Roomster will face in response to the incident.

Reference:

  • Roomster Data Leak Exposes 44 Million Files of Personal Info for Over Two Years
Tags: cyber incidentsCyber Incidents 2025CyberattackData BreachesJanuary 2025Personal InformationRoomster
ADVERTISEMENT

Related Posts

Interlock Ransomware Threat Alert

Hackers Use Ransomware on SharePoint Servers

July 24, 2025
Interlock Ransomware Threat Alert

Data Breach Affects 340K Jobseekers

July 24, 2025
Interlock Ransomware Threat Alert

Beluga Vodka Ransomware Attack Reported

July 24, 2025
UK Advances Plan to Report Ransomware Attack

Weak Password Triggers Ransomware Old Firm

July 23, 2025
UK Advances Plan to Report Ransomware Attack

US Nuclear Agency Breached in MS Hack

July 23, 2025
UK Advances Plan to Report Ransomware Attack

European Healthcare Network Breached

July 23, 2025

Latest Alerts

Interlock Ransomware Threat Alert

GitLab Patches Key Vulnerabilities

Backdoor Found in WP Plugins

Lumma Stealer Returns with New Tactics

npm Phishing Emails Target Developer Logins

MuddyWater Emerges Amid Iran-Israel Clash

Subscribe to our newsletter

    Latest Incidents

    Data Breach Affects 340K Jobseekers

    Hackers Use Ransomware on SharePoint Servers

    Beluga Vodka Ransomware Attack Reported

    Weak Password Triggers Ransomware Old Firm

    US Nuclear Agency Breached in MS Hack

    European Healthcare Network Breached

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial