Inside a fresh leak

A wave is rising in the media about the data leakage of Muscovites who have recovered from the corona. Some media outlets  report that information about 300 thousand people has leaked. A little less than a gigabyte of various documents (941 MB unpacked) appeared in the public domain. I got this archive into my hands too. I suggest you watch it and give answers to the main question: "and what?".






What has leaked.  Various hodgepodge: orders, screenshots, screenshots, software, instructions for setting up software and, of course, personal data (a total of 2,493 files). Basically, the information refers to the period March-May 2020. But the data from 10/30/2020 were also met.





Why is this leak dangerous?  For ordinary people, it is dangerous because a lot of data on patients were entered. If we take one of the "thickest" files, we will see that it contains data on 105+ thousand people. As a rule, the columns are filled:





  • Surname;





  • Name;





  • Middle name;





  • Date of Birth;





  • Address of the place of residence (and registration, and updated actual);





  • Phone (s);





  • When and at what address did the ambulance arrive;





  • The severity of the condition at the time of arrival;





  • Solution (hospitalization, observation, home quarantine, etc.);





  • If hospitalization, then in which hospital.





, . . . . , , 104.





- . , :





  1. . . , .





  2. , . . . , ,    ... . , , .





, . -   . , , .





.  . \ , 105+ . , .





  1. . .





( ). .





- . 30 ( ). 2020.





2. . - . , . . , :





, - . "inetpub". Internet Information Server.





, , .





- , , -, . , - .





It should be understood that all this right now will not lead to anything serious. But this information is very useful for those who will conduct a targeted attack. At the very least, it significantly reduces the cost, because it is clear in which software (and in which versions) it is necessary to exploit vulnerabilities.





Conclusions and morality will not be.








All Articles