Cybercrime Forum Leak Zone Exposes Users’ IP Addresses Publicly

Cybercrime Forum Leak Zone Exposes Users’ IP Addresses Publicly

By Editorial Team

A recent discovery by security researchers revealed that Leak Zone, a cybercrime forum known for sharing breached databases and stolen credentials, inadvertently exposed its users’ IP addresses to the public. The exposed data, found in an unprotected Elasticsearch database by researchers at UpGuard, contained over 22 million records with IP addresses and timestamps of user logins, some as recent as June 25.

While the records did not directly link to individual users, the information could potentially be used to identify those who logged into Leak Zone without using anonymization tools. Notably, some records indicated whether users accessed the forum through proxies like VPNs, which could mask their real-world locations.

Leak Zone, which rose to prominence in 2020, offers a wide range of leaked data and illegal services, boasting over 109,000 users. UpGuard reported that 95% of the exposed database entries were related to Leak Zone logins, with the rest tied to AccountBot, a platform selling compromised streaming service accounts.

Despite attempts to reach out to Leak Zone administrators for comment, TechCrunch was unable to establish contact as the forum’s software blocked messages. The reason behind the database exposure remains unclear, with human error or misconfigurations often cited as common causes for such data leaks.

Authorities worldwide have been increasingly cracking down on cybercrime forums for their involvement in facilitating criminal activities like hacking and identity theft. Just recently, Europol announced the arrest of an alleged administrator of XSS.is, a Russian-language cybercrime forum, as part of a broader takedown operation.

As of now, the exposed database is offline, according to UpGuard. The Leak Zone administrators’ awareness of the security lapse or their plans to notify users about the incident remain uncertain.

This incident underscores the ongoing challenges posed by cybercrime and the critical need for robust cybersecurity measures to protect user data and privacy in online forums and platforms.

Share Post

Get In Touch

I want to attend:(Required)
Name(Required)
This field is hidden when viewing the form

Discover more from IIPLA

Subscribe now to keep reading and get access to the full archive.

Continue reading

Cybercrime Forum Leak Zone Exposes Users’ IP Addresses Publicly

About Shaina Lumish

Corporate Counsel, Renesas Electronics America Inc. | USA

About Shaina Lumish

Sasha Tan is the founder and CEO of Favful, a TripAdvisor-like platform for beauty products. As a serial entrepreneur, she started her first F&B business in Singapore at age 21. She is also well-versed in growing internet businesses as the former founding team member and VP of the online grocery delivery start-up, HappyFresh. Backed by Segnel Ventures, Gobi Partners, and 500 Startups before its official launch, Favful is now present in three countries, works with 20,000 beauty advisors, partners with over 2,000 brands, and covers more than 40,000 products to date.