Sunday , August 2 2026
man

TrackMan exposes nearly 32 Million Records

Nearly 32 million records and about 110 TB of data from Trackman users were left exposed online. This database included user names, email addresses, device information, IP addresses, and security tokens. Security researcher Jeremiah Fowler discovered the vulnerability and reported it to Website Planet, noting that the database lacked password protection for an unknown period. Trackman is a company that provides swing and shot analysis technology for golfers worldwide.

Fowler highlighted several risks associated with exposed data, including sensitive user information that could be exploited in cyberattacks. TrackMan’s technology, used in golf simulators and launch monitors, employs radar and imaging to collect accurate data on ball flight and player movement.

CISA alerts to cyberattacks affecting U.S. water utilities

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warns of a big rise in attacks on internet-connected programmable logic controllers...
Read More
CISA alerts to cyberattacks affecting U.S. water utilities

“CyberStrike” AI-Driven Security Platform for Automated Testing

A new open-source project named CyberStrike aims to be the first AI tool made for offensive security. It can turn...
Read More
“CyberStrike” AI-Driven Security Platform for Automated Testing

AIDCQ Propose to invest $2 billion in AI data center in Bangladesh

Many countries are now showing interest to invest in the data center industry in Banglades especially in AI data centers....
Read More
AIDCQ Propose to invest $2 billion in AI data center in Bangladesh

NVIDIA BlueField Flaw Enables Code Execution Attacks

NVIDIA has revealed a big flaw with its BlueField DPUs and ConnectX networking systems. This issue could let attackers run...
Read More
NVIDIA BlueField Flaw Enables Code Execution Attacks

Massive customer data from India’s Bank of Baroda surfaced online

India's leading state-owned lender Bank of Baroda acknowledged Monday a security incident after reports that approximately 1 terabyte of customer...
Read More
Massive customer data from India’s Bank of Baroda surfaced online

Active Exploits Hit Fortinet, Arista: AI Discovered Linux Kernel Zero-Day

CISA has put the Fortinet FortiOS vulnerability CVE-2025-68686 in its list of known exploited flaws after ongoing attacks. The flaw...
Read More
Active Exploits Hit Fortinet, Arista: AI Discovered Linux Kernel Zero-Day

Sam Altman Claims AI “singularity” has arrived, Where Systems Improve by Themselves

OpenAI's CEO Sam Altman says that AI has reached a big milestone. The technology can now make itself better, leading...
Read More
Sam Altman Claims AI “singularity” has arrived, Where Systems Improve by Themselves

Shinyhunters claimed and set deadline to publish E&Y data

ShinyHunters has publicly claimed responsibility for the Ernst & Young (EY) data breach. The group posted a message on their...
Read More
Shinyhunters claimed and set deadline to publish E&Y data

Microsoft, NVIDIA and CrowdStrike Initiate Alliance for Open-Source AI Security

Nvidia and over 30 tech firms started a group on Monday to create open-source AI tools for protecting against cyber...
Read More
Microsoft, NVIDIA and CrowdStrike Initiate Alliance for Open-Source AI Security

Google Search Results Reportedly Show Claude AI Shared Chats

Claude's share links from Anthropic showed up in public search results. This raised new privacy worries for users who shared...
Read More
Google Search Results Reportedly Show Claude AI Shared Chats

The exposed records contained “session” reports with analytics from TrackMan Performance Studio, a popular performance analysis tool. Major networks like the Golf Channel, BBC, and CNN World rely on TrackMan’s technology to provide real-time data and improved viewing experiences for sports fans.

The exposure of personal data like names and email addresses raises concerns about phishing and social engineering threats, specially for TrackMan’s high-profile athlete clients. Though there’s no indication of actual misuse, the risks remain. The exposed data also included GUIDS and Wi-Fi details. While GUIDs are less sensitive, they can help identify device vulnerabilities. additionally, Wi-Fi and hardware information may be exploited for attacks targeting specific devices, increasing the risk of unauthorized access.

Fowler emphasized the need for sports technology companies like TrackMan to adopt strong security measures for large user data. Essential practices include encryption, multi-factor authentication, regular software updates, and restricted access to sensitive information. He recommends regular security audits to identify vulnerabilities and protect data from unauthorized access.

Although TrackMan did not respond to his notice before publication, Fowler noted that the database was secured shortly after his report. He stated that his investigation aims to raise awareness about data security and does not imply any wrongdoing by TrackMan. He urged companies to proactively protect their data, as public access could pose significant risks to both the company and its users.

(The views shared in this post are solely those of the indivisual contributors and do not necesarily represent the opinions of Infosecbulletin)

Check Also

IBM

IBM-managed instance breach exposes personal data of 70,000 in Singapore

The Singapore Land Authority (SLA) has announced that the personal details of around 70,000 people …