A bug on marketing tech company Klaviyo’s website resulted in the accidental sharing of user sign-up information, including passwords, with third-party advertisers. Dozens of companies may have been affected by the data leak.
The issue stemmed from a technical error that mistakenly shared data intended for internal use with external parties. According to TechCrunch, this included personal data and users’ passwords. The extent of the breach is still being determined, but Klaviyo confirmed multiple advertisers received the information.
Klaviyo has not yet released details on how many users were impacted or what specific steps are being taken to mitigate the damage. However, the company acknowledged the error and stated it is investigating the incident. The reason for the data exposure was a bug in their system that allowed sign-up information to be improperly shared.
The accidental sharing of passwords raises significant security concerns, as it could potentially allow malicious actors to gain access to user accounts on other platforms if those users reuse passwords. Experts recommend immediately changing passwords on any account where the same credentials may have been used.
We don't rate truth. We strip the spin and show you which perspectives covered the story. You decide.
Read the original coverage
💬 Comments
📜 Comment Policy