The National Public Data (NPD) recently confirmed that they experienced a security breach dating back to December of the previous year. This breach involved a stolen database containing a vast amount of data, including sensitive information like Social Security numbers. The hacker group USDoD advertised this stolen data on the dark web for $3.5 million, and it has since been circulating in various locations.
Krebs On Security uncovered another alarming finding related to the NPD breach. A website named recordscheck.net was found to be hosting an archive that contained not only site logins but also the plaintext source code for some of the site’s tools. This discovery raised concerns as it potentially allowed unauthorized access to the same consumer records as NPD. Furthermore, the archived data included email information belonging to NPD’s founder Salvatore Verini, who is an actor and retired sheriff’s deputy from Florida.
In response to these revelations, Verini mentioned that the archived file contained an old version of the website with non-functional code. He stated that the site would cease operations in the following week due to the ongoing investigation. However, questions were raised about Verini’s testimonial for Creation Next, a web development company mentioned in the archived source code, suggesting a possible conflict of interest.
Following the leak of data on the hacker forum, multiple websites claiming to offer searches to determine if individuals’ information was part of the breach surfaced. These platforms, such as npdbreach.com and npd.pentester.com, require users to input personal information like their name, birth year, and potentially their Social Security number. This situation has raised concerns about consumer privacy and the potential misuse of personal data.
The NPD security breach and the subsequent exposure of sensitive data highlight the significant challenges posed by cyber threats and the importance of robust security measures. The incident serves as a stark reminder of the need for organizations to prioritize data protection and safeguard consumer information from unauthorized access. As investigations continue and the aftermath unfolds, it is crucial for affected individuals to remain vigilant and take necessary precautions to protect their privacy and security in an increasingly digital world.
Leave a Reply