Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Intel Employee Data Exposed by Vulnerabilities

Posted on August 20, 2025August 20, 2025 By CWS

A researcher this week disclosed the main points of a number of vulnerabilities that allowed him to achieve entry to the data of Intel workers. 

Safety researcher Eaton Zveare found the vulnerabilities within the fourth quarter of 2024 they usually had been patched on the time by Intel.

Zveare initially found a vulnerability that enabled him to bypass authentication on an inside Intel India web site designed to permit workers to order enterprise playing cards. 

“The supposed objective of the web site is for an Intel India worker to seek out their title within the worker listing after which kind their enterprise card primarily based on the info,” the researcher defined. 

Whereas the location was related to Intel India operations, Zveare found that the data of Intel workers from world wide was saved within the database. Additional evaluation revealed that the main points of each Intel worker may have been downloaded by an attacker.

The uncovered data included title, e-mail deal with, cellphone quantity, and position. Extra delicate data resembling Social Safety numbers and wage knowledge weren’t included, the researcher stated. 

Zveare later found two different inside web sites that uncovered the main points of all Intel workers, on account of hardcoded credentials that offered admin entry. The affected websites had been designed for including merchandise to an software and organizing product teams.

A fourth inside Intel web site, one designed for provider knowledge administration, was discovered to be affected by an authentication bypass flaw that might have been exploited to achieve entry not solely to the main points of all Intel employees, but additionally “massive quantities of confidential details about Intel’s suppliers”.Commercial. Scroll to proceed studying.

In accordance with the researcher, these web sites uncovered the data of 270,000 Intel workers and employees. 

Responding to a SecurityWeek inquiry, Intel identified that there was no breach, knowledge leak, or unauthorized entry to the corporate’s knowledge.

“In October 2024, an exterior safety researcher reported a vulnerability affecting a number of portals. Upon notification, quick corrective actions had been taken, and full remediation was accomplished promptly at the moment,” an Intel spokesperson stated. “Intel stays firmly dedicated to the continual analysis and strengthening of our safety practices to guard our methods and data of our prospects and workers.”

When Zveare reported his findings to Intel, a majority of these inside web sites weren’t lined by the corporate’s bug bounty program. The chip large has since expanded this system to cowl cloud companies and SaaS platforms, with rewards of as much as $5,000.

Associated: Chipmaker Patch Tuesday: Many Vulnerabilities Addressed by Intel, AMD, Nvidia

Associated: Intel TDX Join Bridges the CPU-GPU Safety Hole

Associated: Intel Patched 374 Vulnerabilities in 2024

Security Week News Tags:Data, Employee, Exposed, Intel, Vulnerabilities

Post navigation

Previous Post: Chrome High-Severity Vulnerability Let Attackers Crash Browser or Execute Arbitrary Code
Next Post: High-Severity Vulnerabilities Patched in Chrome, Firefox

Related Posts

Oracle Patches 200 Vulnerabilities With July 2025 CPU Security Week News
Major Enterprise AI Assistants Can Be Abused for Data Theft, Manipulation Security Week News
NASA Needs Agency-Wide Cybersecurity Risk Assessment: GAO Security Week News
Claude AI APIs Can Be Abused for Data Exfiltration Security Week News
New Attack Targets DDR5 Memory to Steal Keys From Intel and AMD TEEs  Security Week News
Microsoft Highlights Security Risks Introduced by New Agentic AI Feature Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Hackers Leveraging WhatsApp That Silently Harvest Logs and Contact Details
  • Elite Cyber Veterans Launch Blast Security with $10M to Turn Cloud Detection into Prevention
  • PoC released for W3 Total Cache Vulnerability that Exposes 1+ Million Websites to RCE Attacks
  • CISA Confirms Exploitation of Recent Oracle Identity Manager Vulnerability
  • 800+ npm Packages and Thousands of GitHub Repos Compromised

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Hackers Leveraging WhatsApp That Silently Harvest Logs and Contact Details
  • Elite Cyber Veterans Launch Blast Security with $10M to Turn Cloud Detection into Prevention
  • PoC released for W3 Total Cache Vulnerability that Exposes 1+ Million Websites to RCE Attacks
  • CISA Confirms Exploitation of Recent Oracle Identity Manager Vulnerability
  • 800+ npm Packages and Thousands of GitHub Repos Compromised

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2025 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark