Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Intel Employee Data Exposed by Vulnerabilities

Posted on August 20, 2025August 20, 2025 By CWS

A researcher this week disclosed the main points of a number of vulnerabilities that allowed him to achieve entry to the data of Intel workers. 

Safety researcher Eaton Zveare found the vulnerabilities within the fourth quarter of 2024 they usually had been patched on the time by Intel.

Zveare initially found a vulnerability that enabled him to bypass authentication on an inside Intel India web site designed to permit workers to order enterprise playing cards. 

“The supposed objective of the web site is for an Intel India worker to seek out their title within the worker listing after which kind their enterprise card primarily based on the info,” the researcher defined. 

Whereas the location was related to Intel India operations, Zveare found that the data of Intel workers from world wide was saved within the database. Additional evaluation revealed that the main points of each Intel worker may have been downloaded by an attacker.

The uncovered data included title, e-mail deal with, cellphone quantity, and position. Extra delicate data resembling Social Safety numbers and wage knowledge weren’t included, the researcher stated. 

Zveare later found two different inside web sites that uncovered the main points of all Intel workers, on account of hardcoded credentials that offered admin entry. The affected websites had been designed for including merchandise to an software and organizing product teams.

A fourth inside Intel web site, one designed for provider knowledge administration, was discovered to be affected by an authentication bypass flaw that might have been exploited to achieve entry not solely to the main points of all Intel employees, but additionally “massive quantities of confidential details about Intel’s suppliers”.Commercial. Scroll to proceed studying.

In accordance with the researcher, these web sites uncovered the data of 270,000 Intel workers and employees. 

Responding to a SecurityWeek inquiry, Intel identified that there was no breach, knowledge leak, or unauthorized entry to the corporate’s knowledge.

“In October 2024, an exterior safety researcher reported a vulnerability affecting a number of portals. Upon notification, quick corrective actions had been taken, and full remediation was accomplished promptly at the moment,” an Intel spokesperson stated. “Intel stays firmly dedicated to the continual analysis and strengthening of our safety practices to guard our methods and data of our prospects and workers.”

When Zveare reported his findings to Intel, a majority of these inside web sites weren’t lined by the corporate’s bug bounty program. The chip large has since expanded this system to cowl cloud companies and SaaS platforms, with rewards of as much as $5,000.

Associated: Chipmaker Patch Tuesday: Many Vulnerabilities Addressed by Intel, AMD, Nvidia

Associated: Intel TDX Join Bridges the CPU-GPU Safety Hole

Associated: Intel Patched 374 Vulnerabilities in 2024

Security Week News Tags:Data, Employee, Exposed, Intel, Vulnerabilities

Post navigation

Previous Post: Chrome High-Severity Vulnerability Let Attackers Crash Browser or Execute Arbitrary Code
Next Post: High-Severity Vulnerabilities Patched in Chrome, Firefox

Related Posts

New UK Framework Pressures Vendors on SBOMs, Patching and Default MFA Security Week News
Trump Cybersecurity Executive Order Targets Digital Identity, Sanctions Policies Security Week News
Google Ships Android ‘Advanced Protection’ Mode to Thwart Surveillance Spyware Security Week News
Russian Hackers Bypass Gmail MFA with App Specific Password Ruse Security Week News
Highly Popular NPM Packages Poisoned in New Supply Chain Attack Security Week News
Why Scamming Can’t Be Stopped—But It Can Be Managed Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Microsoft Warns of Hackers Abuse Teams Features and Capabilities to Deliver Malware
  • Why Threat Prioritization Is the Key SOC Performance Driver  
  • BK Technologies Data Breach – Hackers Compromise IT Systems and Exfiltrate Data
  • BatShadow Group Uses New Go-Based ‘Vampire Bot’ Malware to Hunt Job Seekers
  • Google’s New AI Doesn’t Just Find Vulnerabilities — It Rewrites Code to Patch Them

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Microsoft Warns of Hackers Abuse Teams Features and Capabilities to Deliver Malware
  • Why Threat Prioritization Is the Key SOC Performance Driver  
  • BK Technologies Data Breach – Hackers Compromise IT Systems and Exfiltrate Data
  • BatShadow Group Uses New Go-Based ‘Vampire Bot’ Malware to Hunt Job Seekers
  • Google’s New AI Doesn’t Just Find Vulnerabilities — It Rewrites Code to Patch Them

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News