Metabase, a data analysis tool used by more than 100,000 organizations worldwide, was hacked through a zero-day vulnerability. QuickNode confirmed that attackers accessed its users’ full names, email addresses, potential Telegram identifiers, and IP addresses on July 30 between 03:21 and 03:34 UTC. Privy, a wallet integration specialist subsidiary of Stripe, has not commented on the incident, while no compromise has been publicly confirmed at N26, although the neobank is listed as a Metabase client. The cybercriminal group ShinyHunters, active since 2019, claimed to have stolen approximately 174 GB of data. For affected users, the main risk now lies in a wave of targeted phishing attacks exploiting the recovered personal information.
Source: Read the original article

