Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

New “KnoWay” robot taxis wreak havoc in the upcoming Grand Theft Auto Online DLC

All the biggest news from AWS’s big tech show re:Invent 2025

After checking out Spotify Wrapped 2025, explore these copies

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    All the biggest news from AWS’s big tech show re:Invent 2025

    6 December 2025

    Ex-Googler’s Yoodle Triples Valuation to $300M+ with AI Designed to Assist, Not Replace Humans

    6 December 2025

    ChatGPT’s user growth has slowed, according to the report

    5 December 2025

    Chicago Tribune Sues Perplexity | TechCrunch

    5 December 2025

    Anthropic’s CEO Weighs in on AI Bubble Talks and Risk-Taking Among Competitors

    4 December 2025
  • Apps

    After checking out Spotify Wrapped 2025, explore these copies

    6 December 2025

    Meta signs commercial AI data agreements with publishers to deliver real-time news about Meta AI

    6 December 2025

    Meta acquires AI device startup Limitless

    5 December 2025

    TikTok is rolling out a ‘Near Stream’ to display local content in select countries

    5 December 2025

    Meta gathers Facebook and Instagram support, tests AI support assistant

    4 December 2025
  • Crypto

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025

    Why Benchmark Made a Rare Crypto Bet on Trading App Fomo, with $17M Series A

    6 November 2025

    Solana co-founder Anatoly Yakovenko is a big fan of agentic coding

    30 October 2025

    MoviePass opens Mogul fantasy league game to the public

    29 October 2025

    Only 5 days until Disrupt 2025 sets the startup world on fire

    22 October 2025
  • Fintech

    Walmart-backed PhonePe shuts down Pincode app in yet another step back in e-commerce

    5 December 2025

    Nexus stays out of AI, keeping half of its new $700M fund for India startup

    4 December 2025

    Fintech firm Marquis notifies dozens of US banks and credit unions of data breach after ransomware attack

    3 December 2025

    Revolut hits $75 billion valuation in new capital raise

    24 November 2025

    Credit risk automation platform Kaaj raises $3.8 million from Kindred Ventures

    19 November 2025
  • Hardware

    eSIM adoption is on the rise thanks to travel and device compatibility

    6 December 2025

    AWS re:Invent was an all-in pitch for AI. Customers may not be ready.

    5 December 2025

    Apple’s executive shakeup continues with departures of general counsel and chief policy officer

    5 December 2025

    Amazon’s new Kindle Scribe and Kindle Scribe Colorsoft launch on December 10th

    4 December 2025

    Nothing in sight in his community to raise $5 million, wants to be “IPO ready” in 3 years

    3 December 2025
  • Media & Entertainment

    The New York Times is suing Perplexity for copyright infringement

    6 December 2025

    A new streaming channel is launching to give viewers a glimpse into city council meetings

    6 December 2025

    Netflix to acquire Warner Bros. in a disruptive $82.7 billion deal

    5 December 2025

    YouTube publishes the first summary of the videos you’ve watched

    5 December 2025

    Netflix is ​​releasing a mobile-friendly version of Red Dead Redemption

    4 December 2025
  • Security

    Petco confirms that customers’ personal data has been exposed to security breaches

    6 December 2025

    Spyware maker Intellexa had direct access to victims of government espionage, according to investigators

    5 December 2025

    ‘End-to-end encrypted’ smart toilet camera isn’t actually end-to-end encrypted

    4 December 2025

    After strong backlash, India takes up the mandate to pre-install the government app on smartphones

    3 December 2025

    A data breach at analytics giant Mixpanel leaves many open questions

    3 December 2025
  • Startups

    This startup created a Fitbit for your brain to combat chronic stress

    5 December 2025

    From the NFL to the Startup Battlefield: How Alltroo Built a Winning Brand

    4 December 2025

    The future of deep tech will be explained to you at StrictlyVC Palo Alto on December 3rd

    3 December 2025

    Simular’s AI agent wants to run your Mac, Windows computer for you

    2 December 2025

    How AI PR startup Clipbook won Mark Cuban’s investment from a cold email

    1 December 2025
  • Transportation

    New “KnoWay” robot taxis wreak havoc in the upcoming Grand Theft Auto Online DLC

    6 December 2025

    Waymo issues software recall on how robotaxis behave around school buses

    6 December 2025

    Feds find more complaints about Tesla’s FSD running red lights and crossing lanes

    5 December 2025

    Feds question Waymo over robotaxi that repeatedly drives past school buses in Austin

    5 December 2025

    Musk says new Tesla software allows texting and driving, which is illegal in most states

    4 December 2025
  • Venture

    Sources: AI-powered synthetic research startup Aaru raises Series A at $1B ‘headline’ valuation

    6 December 2025

    Why Day One Ventures’ Masha Bucher believes VCs and storytelling go hand in hand

    5 December 2025

    Micro1, a Scale AI competitor, surpasses $100M ARR

    5 December 2025

    Legal AI startup Harvey confirms $8 billion valuation

    4 December 2025

    What are bending spoons? Everything you need to know about the Eventbrite buyer

    4 December 2025
  • Recommended Essentials
TechTost
You are at:Home»Security»Flaw in jury systems used by several US states exposed sensitive personal data
Security

Flaw in jury systems used by several US states exposed sensitive personal data

techtost.comBy techtost.com27 November 202504 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Flaw In Jury Systems Used By Several Us States Exposed
Share
Facebook Twitter LinkedIn Pinterest Email

Several public websites designed to allow courts in the United States and Canada to manage the personal information of potential jurors had a simple security flaw that easily exposed their sensitive data, including names and home addresses, according to TechCrunch exclusively.

A security researcher, who asked not to be named for this story, contacted TechCrunch with details about the easy-to-exploit vulnerability and identified at least a dozen jury sites built by government software maker Tyler Technologies that appear to be vulnerable given that they run on the same platform.

Locations are located across the country, including California, Illinois, Michigan, Nevada, Ohio, Pennsylvania, Texas and Virginia.

Tyler told TechCrunch that he is fixing the flaw after we notified the company about the information leaks.

The bug meant it was possible for anyone to obtain information about jurors being selected for service. To log into these platforms, jurors are provided with a unique numerical identifier assigned to them, which could be brute force as the number was sequentially incremented. The platform also had no mechanism to prevent anyone from flooding the login pages with large numbers of guesses, a feature known as “rate throttling”.

In early November, the security researcher told TechCrunch that they identified at least one jury management portal for a county in Texas as vulnerable. Inside that portal, TechCrunch saw their full names, dates of birth, occupation, email addresses, mobile phone numbers, and home and mailing addresses.

Other exposed data included information shared on questionnaires that potential jurors must fill out to see if they are fit to serve on a jury.

In the portal seen by TechCrunch, the questions asked about gender, nationality, education level, employer, marital status, children, whether the person was a citizen, whether they were over 18, and whether they have been convicted of or are facing theft or felony charges.

The vulnerability could have exposed personal health data within a juror’s profile in some cases. For example, if a juror had asked to be excused from service on health grounds, they may have disclosed what medical reason they believe disqualifies them. TechCrunch also saw an example of this.

Contact us

Do you have more information about vulnerabilities in Tyler Technologies products? Or other cybernetic technology? From a non-working device, you can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382 or via Telegram and Keybase @lorenzofb or via email.

TechCrunch alerted Tyler to the issue on November 5. Tyler acknowledged the vulnerability on November 25th.

In a statement, Tyler spokeswoman Karen Shields said the company’s security team confirmed that “there is a vulnerability where some juror information may have been accessed through a brute force attack.”

“We have deployed a remediation to prevent unauthorized access and are communicating with our customers about next steps,” the statement said.

The spokesman did not respond to a series of follow-up questions, including whether Tyler has the technical means to determine whether jurors’ personal information was maliciously accessed and whether it plans to notify individuals whose data was exposed.

This isn’t the first time Tyler has left sensitive personal data exposed online. In 2023, a security researcher found that, due to a separate security flaw, some online US court records systems exposed sealed, confidential, and sensitive data, such as witness lists and testimony, mental health evaluations, detailed allegations of abuse, and corporate trade secrets.

In that case, Tyler patched vulnerabilities in the Case Management System Plus product, which was used throughout the state of Georgia.

Two other state technology providers were exposing data in that case: Catalis, through its CMS360 product, a system used in several US states; and Henschen & Associates, through the CaseLook court system, used in Ohio.

courts cyber security data Exclusive exposed flaw information security infosec jury personal security vulnerability sensitive states systems Tyler Tyler Technologies
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleThe revamp of GM’s technology staff continues in the software group
Next Article The future will be explained to you in Palo Alto
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Sources: AI-powered synthetic research startup Aaru raises Series A at $1B ‘headline’ valuation

6 December 2025

Meta signs commercial AI data agreements with publishers to deliver real-time news about Meta AI

6 December 2025

Petco confirms that customers’ personal data has been exposed to security breaches

6 December 2025
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

New “KnoWay” robot taxis wreak havoc in the upcoming Grand Theft Auto Online DLC

6 December 2025

All the biggest news from AWS’s big tech show re:Invent 2025

6 December 2025

After checking out Spotify Wrapped 2025, explore these copies

6 December 2025
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Walmart-backed PhonePe shuts down Pincode app in yet another step back in e-commerce

5 December 2025

Nexus stays out of AI, keeping half of its new $700M fund for India startup

4 December 2025

Fintech firm Marquis notifies dozens of US banks and credit unions of data breach after ransomware attack

3 December 2025
Startups

This startup created a Fitbit for your brain to combat chronic stress

From the NFL to the Startup Battlefield: How Alltroo Built a Winning Brand

The future of deep tech will be explained to you at StrictlyVC Palo Alto on December 3rd

© 2025 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.