A techie family member sent me a story from Tech Radar which was published today.
The headline is “Massive data leak exposes 1.6 million Etsy and other TikTok shop customer details - here's what we know.”
The Tech Radar story only mentions buyers. What I’d like to know is if sellers’ information is also compromised.
Full story @ https://www.techradar.com/pro/security/massive-data-leak-exposes-1-6-million-etsy-and-other-tiktok-s...
Thank you.
"What I’d like to know is if sellers’ information is also compromised." the data is buyer info, likely from one business only. Since the researchers could not even identify that business, how would any other seller info get out?
If you didn't buy from "a Vietnamese-based embroidery service", you are probably fine.
This is a huge breach, one article notes that no credit card info was part of the breach. At least they have not said anything about credit cards.
The article says "Researchers outlined the risk this brings to those exposed, such as convincing social engineering attacks from cybercriminals posing as Etsy or TikTok shop - urging customers to give their details, resulting in potential financial loss." We're used to this.
"What I’d like to know is if sellers’ information is also compromised." the data is buyer info, likely from one business only. Since the researchers could not even identify that business, how would any other seller info get out?
If you didn't buy from "a Vietnamese-based embroidery service", you are probably fine.
I’m wondering if buyers that are also sellers are at additional (possible future) risk.
Sigh.
The article title and story seem a little misleading and like click bait - the few actual details included sound like a particular company might have been hacked and the stolen data includes information on their Etsy customers, not that Etsy itself was in any way compromised. The primary risk whenever data like this is exposed is when someone uses the same eMail address on multiple sites, and it does make it easier to send spoofed eMails because the scammer knows that that eMail address was used on a specific site.
Highly misleading is more like it.
Uh, Etsy hasn't been hacked. The company in question had their shipping and order information hacked. Even that isn't highly classified information, most you can find online fairly easily and for free.
This is not something to be panicked over.