Let's Encrypt: 7618 e-mails were accidentally leaked

Certificate authority Let's Encrypt admitted over the weekend that it accidentally exposed thousands of its users' email addresses.

Mr. Josh Aas, its executive director Research Group (ISRG) apologized for the accidental leak , referring to a advisory publication that the problem that occurred is due to an error in the subscriber email system of Let's Encrypt.Let's Encrypt

The bug “accidentally added 7618 other email addresses” to an email that was to be sent to subscribers to notify them of a of the certificate authority (CA).

The result of course was disappointing and unacceptable for a security certification organization. And 7618 recipients were able to see the addresses of others who received the e-mail in a plain text format.

However, Let's Encrypt notes that the data breach could have been much worse had it not noticed the problem, and not reacted so quickly.

So the 7.618 emails revealed are only 1,9 percent of the users subscribed to the subscribers list. The system stopped sending e-mail before leaked 383.0000 addresses of subscribers.

Mr. Josh Aas also mentioned that some they will be able to see more email addresses than others because each email contained the email addresses that were sent earlier than it.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).