Cybersecurity researcher Jeremiah Fowler reported to Website Planet that he found a non-password-protected 1.2 TB dataset containing over 3 million records from Builder.ai, a London company that provides AI software and app development solutions without requiring coding skills.
Jeremiah Fowler claimed the unsecured database contained 3,077,542 records, totaling 1.29 TB. A sample of the documents revealed customer proposals, NDA agreements, invoices, tax documents, email screenshots, and internal images.
By infosecbulletin
/ Friday , April 18 2025
Hackers can exploit a vulnerability in Asus routers to execute unauthorized functions. This serious issue, rated 9.2 out of 10,...
Read More
By infosecbulletin
/ Friday , April 18 2025
According to Shadowserver Foundation around 17,000 Fortinet devices worldwide have been compromised using a new technique called "symlink". This number...
Read More
By infosecbulletin
/ Friday , April 18 2025
A critical security flaw has been found in the Erlang/Open Telecom Platform (OTP) SSH implementation, allowing an attacker to run...
Read More
By infosecbulletin
/ Thursday , April 17 2025
On Wednesday, CISA alerted about increased breach risks due to the earlier compromise of legacy Oracle Cloud servers, emphasizing the...
Read More
By infosecbulletin
/ Thursday , April 17 2025
Cisco issued a security advisory about a serious vulnerability in its Webex App that allows unauthenticated remote code execution (RCE)...
Read More
By infosecbulletin
/ Thursday , April 17 2025
On Wednesday, Apple released urgent operating system updates to address two security vulnerabilities that had already been exploited in highly...
Read More
By infosecbulletin
/ Wednesday , April 16 2025
On April 15, 2025, Oracle released a Critical Patch Update for 378 flaws for its products. The patch update covers...
Read More
By infosecbulletin
/ Wednesday , April 16 2025
Check Point Research warns of the active exploitation of a new vulnerability, CVE-2025-24054, which lets hackers leak NTLMv2-SSP hashes using...
Read More
By infosecbulletin
/ Wednesday , April 16 2025
Bengaluru's Whiteboard Technologies Pvt Ltd was hit by a ransomware attack, with hackers demanding a ransom of up to $70,000...
Read More
By infosecbulletin
/ Wednesday , April 16 2025
MITRE Vice President Yosry Barsoum warned that U.S. government funding for the Common Vulnerabilities and Exposures (CVE) and Common Weakness...
Read More
He said another two critical documents contained access and configuration details for two cloud storage databases, including secret access keys. However, if these access keys were misused, they could expose sensitive data.
The database and its documents belong to Engineer.ai and Builder.ai, which are the same company that rebranded in 2019. Builder.ai is a London-based tech firm that offers human-assisted AI for app development, with offices across the US, Asia, Europe, and the Middle East.
Jeremiah Fowler said After a responsible disclosure i got , “unfortunately it’s taking longer than we’d like due to some complexities with dependent systems” the replay from the company.
In a 2023 press release, Builder.ai announced it secured over $250 million in Series D funding, led by the Qatar Investment Authority, bringing its total funding to over $450 million. That year, Builder.ai was ranked #3 in Fast Company’s list of the World’s Most Innovative Companies in the Artificial Intelligence category.
Fowler advised encrypting data and creating an incident response plan with access control to handle breaches primarily.
“Workshop on Cybersecurity Awareness and Needs Analysis” held at BBTA