Defective Shopify -plugin puts hundreds of sites at risk of invasive attacks – find out how to remain in safety


  • Assentik, a Cookie -Collaboration and Consent Administration app for Shopify, stored sensitive data in an open archive
  • The archive was available for at least 100 days, if not more
  • It included site analysis data, Shopify Personal Access tokens and Facebook AUTH TOKENS

An important, reputable Shopify -plugin leaked sensitive information for months and exposed hundreds of E -trading companies for all sorts of risks, experts have warned.

Security researchers from Cygenerws Spotted the leak and helped connect the hole after discovering a publicly available Kafka server that had sensitive data from Assentik.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top