The defective shopify complement places hundreds of websites at risk of invasive attacks: discover how to stay safe




  • Consentik, an application for the consent and consent management of cookies for Shopify, maintained confidential data in an open file
  • The file was available for at least 100 days, if not more
  • It included sites analysis data, Shopify personal access tokens and Facebook authentication tokens

An important Shopify complement of good reputation was to filter confidential information for months, exposing hundreds of electronic commerce companies to all types of risks, experts warned.

Security researchers Cybernews He saw the escape and helped connect the hole, after having discovered a Kafka public access server containing Consentik confidential data.

Leave a Comment

Your email address will not be published. Required fields are marked *