Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

Roku is launching a standalone app for Howdy, its $2.99 ​​streaming service

North Korean hackers accused of hijacking popular open source project Axios to spread malware

The company behind ClassPass and Mindbody just got a lot bigger with a $7.5 billion merger

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    With its new app store, Ring bets on artificial intelligence to overcome home security

    31 March 2026

    As more Americans adopt AI tools, fewer say they can trust the results

    31 March 2026

    AI chip startup Rebellions raises $400 million at $2.3 billion valuation in pre-IPO round

    30 March 2026

    Data centers are gearing up — the Senate wants to see your power bills

    30 March 2026

    Anthropic’s Claude’s popularity with paying consumers is skyrocketing

    29 March 2026
  • Apps

    Speechify’s Windows app uses local models for transcription and dictation

    31 March 2026

    Meta begins testing a premium Instagram subscription

    31 March 2026

    Reddit takes on bots with new ‘human verification’ requirements for fish behavior

    30 March 2026

    Google launches music production model Lyria 3 Pro

    30 March 2026

    These iPad apps will make you wish you had more free time

    29 March 2026
  • Crypto

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025

    Why Benchmark Made a Rare Crypto Bet on Trading App Fomo, with $17M Series A

    6 November 2025

    Solana co-founder Anatoly Yakovenko is a big fan of agentic coding

    30 October 2025

    MoviePass opens Mogul fantasy league game to the public

    29 October 2025
  • Fintech

    Doss raises $55 million for AI inventory management that connects to ERP

    24 March 2026

    Despite stiff competition, Kalshi, Polymarket CEOs back $35m VC fund projections

    23 March 2026

    Amid legal turmoil, Kalshi is temporarily banned in Nevada

    20 March 2026

    Nominations for the Startup Battlefield 200 are still open

    19 March 2026

    Kalshi’s legal woes pile up as Arizona files first criminal charges for ‘illegal gambling operation’

    17 March 2026
  • Hardware

    The Pixel 10a doesn’t have a camera bump, and it’s great

    30 March 2026

    Let’s take a look at retro tech making a comeback

    28 March 2026

    Whoop has LeBron – now he wants your mom

    28 March 2026

    Memory chip giant SK hynix could help end ‘RAMmageddon’ with successful US IPO

    27 March 2026

    Arm releases the first in-house chip in its 35-year history

    24 March 2026
  • Media & Entertainment

    Roku is launching a standalone app for Howdy, its $2.99 ​​streaming service

    31 March 2026

    SXSW is making a comeback as a premier networking, ideas festival for founders and VCs

    30 March 2026

    ‘Project Hail Mary’ becomes Amazon MGM’s biggest box office hit

    30 March 2026

    Sora’s shutdown could be a reality check moment for video AI

    29 March 2026

    Netflix confirms it’s raising prices again

    27 March 2026
  • Security

    North Korean hackers accused of hijacking popular open source project Axios to spread malware

    31 March 2026

    Apple will hide your email address from apps and websites, but not from the police

    30 March 2026

    Federal immigration agents filmed making arrests at airport as Trump calls on ICE to reduce security line delays

    28 March 2026

    Apple says no one using Lockdown Mode has been hacked with spyware

    28 March 2026

    Iranian hackers claim to have breached FBI Director Kash Patel’s personal email account

    27 March 2026
  • Startups

    The company behind ClassPass and Mindbody just got a lot bigger with a $7.5 billion merger

    31 March 2026

    What we’re looking for in Startup Battlefield 2026 and how to pitch your best app

    31 March 2026

    ScaleOps Raises $130M to Improve Computing Performance Amid AI Demand

    30 March 2026

    Lucid Bots raises $20 million to meet demand for its window-washing drones

    28 March 2026

    Why Hiring the Weird Works

    27 March 2026
  • Transportation

    TechCrunch Mobility: When a robotaxi needs to call 911

    30 March 2026

    DoorDash Introduces Relief Payments for Drivers as Iran-US War Raises Gas Prices

    28 March 2026

    Waymo’s ridership surge in a graph

    28 March 2026

    Sony and Honda abandon their joint EV project

    27 March 2026

    A little-known Croatian startup is coming to the robotaxi market with the help of Uber

    27 March 2026
  • Venture

    Exclusive: Runway Launches $10M Fund, Builders Program to Back Early-Stage AI Startups

    31 March 2026

    Former Coatue Partner Raises Massive $65M Seed Fund for Enterprise AI Agent Startup

    31 March 2026

    From Moon Hotels to Cattle Grazing: 8 Startup Investors Hunted at YC Demo Day

    28 March 2026

    16 of the most interesting startups from the YC W26 Demo Day

    27 March 2026

    BKR Capital Raises $14.5M (So Far) to Invest in Black Founders

    26 March 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»API Apisec Test Company showed customer data during security expiration
Security

API Apisec Test Company showed customer data during security expiration

techtost.comBy techtost.com1 April 202503 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Api Apisec Test Company Showed Customer Data During Security Expiration
Share
Facebook Twitter LinkedIn Pinterest Email

API Testing Company Every day He has confirmed that he has secured an exposed internal database containing customer data, which was connected to the internet for several days without password.

The exposed APISEC database stores files dating back to 2018, including names and email addresses of employees and users of its customers, as well as details of the security attitude of Apisec’s corporate customers.

Much of the data was created by Apisec as it monitors its customers’ APIs for security weaknesses, according to UPGUARD, the security company that found the database.

UPGUARD found the data leaking on March 5 and shared Apisec on the same day. Apisec secured the database soon after.

Apisec, which claims to have worked with Fortune 500 companies, the accounts themselves as a company that tests APIS for its various customers. API allows two or more things on the internet to communicate with each other, such as the back-end systems of a company with users accessing the application and their website. Insecure API can take advantage of chiffon -sensitive data from a company’s systems.

In A report nowwhich was shared with TechCrunch before its release, UPGUard stated that exposed data included information on Apisec’s customer attack surfaces, such as details of whether multi -factor authentication was activated on a customer’s account. UPGUARD said that this information could provide useful technical intelligence to a malicious opponent.

When it was achieved for comments by TechCrunch, Apisec Faizel Lakhani founder initially downgraded the delay of delay, saying the database contained Apisec “test data” to test and identify its product. Lakhani added that the database was not “not our production database” and “there were no customer data in the database”. Lakhani confirmed that the exhibition was due to the “human error” and not to a malicious incident.

“We quickly closed the public access. The data in the database is not usable,” Lakhani said.

However, UPGUARD said it found information in the database of Apisec’s real corporate clients, including the results of scanning from its customers’ final API points on security issues.

The data also included certain personal information of employees and users of its customers, including names and email addresses, UPGUARD said.

Lakhani Backtracted when TechCrunch provided the company evidence of leakage data. In a later email, the founder said the company completed an investigation on the day of the UPGUARD report and “returned and repeated the survey again this week”.

Lakhani said the company subsequently informed customers whose personal information was in the public that were accessible to the public. Lakhani will not provide TechCrunch when asked, a copy of the data breach that the company allegedly sent to customers.

Lakhani refused to comment further when asked if the company plans to alert the general lawyers, as required by the data notice laws.

UPGUARD also found a set of private keys for AWS and credentials on behalf of Slack and Github in the data set, but the researchers could not determine if the credentials were active, as the use of unlawful credentials would be illegal. Apisec said the keys belonged to a former employee who left the company two years ago and was disabled on their departure. It is not clear why the AWS keys stayed in the database.

API API security Apisec company customer cyberspace data data breach Exclusive expiration security showed test
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleTime territories are $ 146 million in flat valuation, Eyes Agentic AI Extension
Next Article Beagle has a new long range drone with more than one applications
bhanuprakash.cg
techtost.com
  • Website

Related Posts

North Korean hackers accused of hijacking popular open source project Axios to spread malware

31 March 2026

The company behind ClassPass and Mindbody just got a lot bigger with a $7.5 billion merger

31 March 2026

Exclusive: Runway Launches $10M Fund, Builders Program to Back Early-Stage AI Startups

31 March 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

Roku is launching a standalone app for Howdy, its $2.99 ​​streaming service

31 March 2026

North Korean hackers accused of hijacking popular open source project Axios to spread malware

31 March 2026

The company behind ClassPass and Mindbody just got a lot bigger with a $7.5 billion merger

31 March 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Doss raises $55 million for AI inventory management that connects to ERP

24 March 2026

Despite stiff competition, Kalshi, Polymarket CEOs back $35m VC fund projections

23 March 2026

Amid legal turmoil, Kalshi is temporarily banned in Nevada

20 March 2026
Startups

The company behind ClassPass and Mindbody just got a lot bigger with a $7.5 billion merger

What we’re looking for in Startup Battlefield 2026 and how to pitch your best app

ScaleOps Raises $130M to Improve Computing Performance Amid AI Demand

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.