Skip to main content

No one is taking the blame for leaking the registration info of 191 million US voters

researchers use ambient light sensor data to steal browser exhausted man computer problems desk hacking hackers malware frust
Shutterstock
Someone left 300 gigabytes of voter registration data sitting out on the Web, and no one seems to want to take responsibility for it. The database includes the voter registration information for over 191 million American voters, and is ripe for abuse by scammers, marketers, and basically anyone who wants the personal address and phone number of anyone registered to vote.

Included in the user data is sensitive information like names, addresses, political affiliation, phone numbers, voting records, and email address, depending on how much you provided when you registered to vote. Thankfully, it doesn’t include Social Security numbers or other information that’s useful for identity theft, but is still useful to scammers and telemarketers, who can’t normally use voter databases for marketing purposes.

The data was found by a white hat hacker, Chris Vickery, who says the database is still available for download, although he obviously doesn’t detail how to go about finding it. Vickery includes a redacted screenshot with his own information from the database in the report on Databreach.net. The report blames a misconfigured database for the malfunction.

Granted, the information included in the database isn’t necessarily confidential depending on what state you’re in. While some states put strict regulations on access and use, other states make the information a matter of public record. Regardless, there are companies that charge top dollar for access to that information who will surely be unhappy with its availability for free.

More importantly, none of the major campaign database providers have stepped forward to claim the database. And until someone does, it’s going to remain out on the open Web for anyone to download and use however they like. There are obvious security risks associated with addresses tied to name, religion, and ethnicity in a single database, and Vickery has also notified the proper authorities to attempt to have it removed.

Editors' Recommendations

Brad Bourque
Former Digital Trends Contributor
Brad Bourque is a native Portlander, devout nerd, and craft beer enthusiast. He studied creative writing at Willamette…
Here’s how to protect yourself from the Capital One data breach
how to protect yourself from capital one data breach credit card

By now, you may have heard that Capital One has recently announced a massive data breach that has reportedly affected approximately 100 million people in the United States and six million in Canada. While this news can understandably induce panic, it’s important to remember that there are ways to protect yourself in the event that you and your accounts are one of the ones affected in massive data breaches like this one or the recently settled Equifax breach.

Capital One has issued its own set of guidelines and FAQ answers regarding the breach and how to handle it. That's a good place to start. In addition, we’ve gathered a few other tips to keep in mind to help you safeguard your accounts.
Unsure if you were affected? Here’s how to find out
According to Capital One’s guidelines on the matter, the bank holding company will notify those affected by the breach “through a variety of channels.” In addition, Capital One has advised its customers to “enroll in account alerts” to better help them review their accounts and spot suspicious activity. Capital One customers have also been advised to call the number on the back of their cards to report any unusual activity on their credit card accounts.

Read more
New Capital One data breach affects 100 million people. Here’s the very latest
Capital One Data Breach

A massive data breach of Capital One exposed the personal information of approximately 100 million people after a former Amazon employee stole credit card application data, including about 80,000 bank account numbers and 140,000 Social Security numbers.

Federal authorities arrested a Seattle-area woman, Paige A. Thompson, on Monday over the hack. They said Thompson, who had previously worked for Amazon Web Services, stole the data from the bank’s credit card applications in March, according to Bloomberg. Amazon handles Capital One's cloud database.

Read more
British Airways hit with a massive fine for 2018 data breach
british airways cabin crew given ipads

A data breach in 2018 that saw hackers steal personal data belonging to hundreds of thousands of British Airways customers has cost the company nearly 184 million British pounds (about $230 million), making it the biggest fine ever imposed for an incident of this kind.

The U.K.’s Information Commissioner’s Office (ICO) said it handed down the fine for breaches of data protection law that it said resulted from “poor security arrangements” at the company.

Read more