ADVERTISEMENT

India’s Cherrinet ISP leaks user data, exposes accounts to abuse attempts

Some Indian internet users should worry about their data being in the wrong hands. The Cybernews research team discovered an open 1.8TB data trove belonging to internet service provider Cherrinet.

Cherrinet leak

Image by Cybernews.

Ernestas Naprys
Ernestas Naprys Senior Journalist
January 10, 2024 Updated: January 11, 2024 3 min read
Cherrinet leaked data

Affected users susceptible to attacks

  • RADIUS (Remote Authentication Dial In User Service) traffic: This client-server protocol verifies user identity, determines if they have access to the network resources, and keeps track of data usage for billing.
  • NAS (Network Access Server) traffic: NAS is a device on the ISP’s network to which the customer router connects, and it handles authentication. Therefore, NAS logs contain information about customers and their routers.
  • PPPoE (Point to Point Protocol over Ethernet) credentials: The username and password combination establishes a secure connection with the ISP. However, the ISP sets the passwords and, therefore, they cannot be reused for credential stuffing or similar attacks.
ADVERTISEMENT

Keep your Kibana private

ADVERTISEMENT