ADVERTISEMENT

Chinese manufacturer exposes data from surveillance devices

Raysharp, a Chinese manufacturer of video cameras, recorders, and other surveillance products, has suffered a data leak that exposed its devices. Cybernews researchers have discovered three billion records in a leaking database from the company’s analytics platform.

Raysharp

Image by Cybernews.

Ernestas Naprys
Ernestas Naprys Senior Journalist
April 18, 2024 Updated: April 18, 2024 2 min read
  • device_uuid: This is likely a unique device identifier. Bad actors can use it to track and identify specific devices. Revealing device ID, together with other information, can compromise the privacy and security of the users and organizations.
  • mobile_token: Used for authentication and authorization purposes in mobile applications, exposed mobile tokens can be exploited for unauthorized access to user accounts or sensitive information.
  • Token_uuid: This is likely a unique identifier associated with authentication tokens. Exposing this data could help gain unauthorized access.
  • appid: The unique identifier for the application itself. While less sensitive, it could be used to target specific applications or services.
  • DeviceName: This could reveal information about the user or organization using the device and be used for targeted attacks or profiling.
  • APNS and push_channel: Researchers also discovered data items suggesting the systems were configured to utilize Apple Push Notification Service (APNS). That is the channel for sending push notifications to iPhones and other iOS devices.
raysharp-leak
ADVERTISEMENT

Exposed logs may originate from product development

ADVERTISEMENT