UPDATED 19:49 EST / APRIL 25 2016

NEWS

Dating website “Beautiful People” deals with data breach

Dating sites are often prime targets for hackers looking for personal information to steal, and a site that boasts elitism and just a little bit of egotism makes an inviting target. Such is the case for beautifulpeople.com, which was the victim of a data breach resulting in the theft of over 1.1 million users’ data.

To make things just a little bit worse, it could have been prevented if Beautiful People were just a little more cautious with their security.

According to Wired, the hack was made possible by the database-management software, MongoDB, which uses blank default credentials. That is to say, users who don’t set up a password for their database would leave it unprotected, and among the unprotected databases was the user dataset for Beautiful People.

While the website was informed of its exposed database, its response was not fast enough and the entire dataset was stolen. This includes phone numbers, email addresses, and even salary information. However, Beautiful People says that no passwords or financial data were exposed.

Any users who have joined prior to July 2015 may have been affected by the data breach. Those who joined later in the month are safe, as the vulnerability was closed by then. Additionally, Beautiful People is notifying all impacted members, as they did when the vulnerability was originally found. The company is trying to excuse the breach, by stating it only affected a “test server,” but that does nothing to change the fact that private user information was stolen.

It’s important to note that the leaking of data is occurring now, even though the initial breach occurred months ago. In the delay, Beautiful People may have assumed that they stopped the security flaw in time, but it is far more likely that the thieves were examining the information to see what it had to offer before selling it.

Any potentially impacted members should check for notifications regarding their own data to see if their information is safe. And perhaps choose a dating site that puts more focus on security than on selecting its users.

Photo by William Christiansen


A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.
About SiliconANGLE Media
SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.