Justdial is a renowned Indian hyper-local search engine
which recently became prone to two security breaches in the span of two weeks.
Justdial was laid bare on the dark web and now the reviewers’ data got on the
such reckless mistakes.
addresses, email IDs etc. of over 100 million users which was stored in the search
engine’s database to be laid out in the open.
allowed anyone to access the data of users. Major percentage of the affected included
the hotline number users.
that so thrashed Justdial. They also cited that no specific actions against them
was stored in a double-encrypted format.
the API of Justdial on April 29th.
of their data being exposed.
had been unprotected since the company’s foundation.
all became easily accessible thanks to the loophole.
loophole contributed largely to the data breaches.
number of data stored within it.
for all the breaches Justdial saw in these couple of weeks.
should be employed. Also easily implemented software switch could help in
protecting the access points.
used as a means of learning to help secure the system from future attacks.
operational security and up their game in terms of securing the present
loopholes and possible lacunae.