Darren
A
In response to RA.
I'll concede, your interactions with me have been more conversational which I appreciate.

But it definitely has not been the same with other people that have had an "investor" tag. I've been attacked by multiple people throughout the day because I dared to point out an error to the CEO.
01:58 PM - Feb 05, 2024
0
0
Darren
A
In response to RA.
You should be questioning the CEO of the platform you invested in, instead of attacking users who succumbed to a data leak due to his poor site practices.
01:50 PM - Feb 05, 2024
1
1
Darren
A
In response to RA.
I'm not saying they personally singled me out. I'm just saying that I DIDN'T GET AN EMAIL. Others have said the same thing. There could be a million reasons why.

And it's been six hours of me defending myself against "Investors" all because I questioned the site's CEO about an awful data leak.
01:47 PM - Feb 05, 2024
2
1
Darren
A
In response to RA.
They didn't. They may have "bothered" to notify other people, not not me.
01:34 PM - Feb 05, 2024
1
0
Darren
A
In response to Jim Plunkett.
What does it matter how I said it? His site leaked my info, full stop.

And emails and phone numbers alone are considered PII. But they absolutely leaked passwords and even 2FA codes.

Please educate yourself:
https://www.troyhunt.com/h...
01:33 PM - Feb 05, 2024
1
1
Darren
A
In response to RA.
I'm not denying they sent out emails. I'm saying I didn't get one, and people replied to my initial spout saying the same thing.

They also should have forced reset passwords and 2FA codes.
01:29 PM - Feb 05, 2024
1
0
Darren
A
In response to Fiona Bski.
I still believe it was handled poorly, as not all users got notified. There should have been a forced reset of password and 2FA codes.
01:18 PM - Feb 05, 2024
2
1
Darren
A
In response to Jim Plunkett.
I said "he" because he is the CEO of this organization, and responsible for what happens on it.

And no, I don't owe him an apology - his site's poor configuration leaked my PII and he didn't even bother to notify me.
01:17 PM - Feb 05, 2024
2
0
Darren
A
In response to BattleFuzz.
They absolutely did. Please look up with a "data leak" is, and then read the HIPB article about what happened.
01:14 PM - Feb 05, 2024
0
0
Darren
A
In response to Fiona Bski.
Yes, but a live pod session doesn't do me any good if it's in the past.
01:05 PM - Feb 05, 2024
1
0
Darren
A
In response to BattleFuzz.
Yeah, I'm not an active user of this platform. This part is obvious. But I'm still a user and Spoutible is still responsible for keeping my data safe and not leaking it, and notifying users who are affected.

They also should have forced a password and 2FA reset for anyone affected.
01:03 PM - Feb 05, 2024
1
1
Darren
A
In response to BattleFuzz.
I never got an email from Spoutible on this telling me that I was affected or next steps. The first time I did was this morning when I was notified by HIPB.
12:52 PM - Feb 05, 2024
1
0
Darren
A
In response to Jim Plunkett.
I disagree with your definition of a data leak, and I believe you are misconstruing data leak with data breach.

A data leak is simply the unintended release of sensitive info. It doesn't have to be because of a bad actor, it could just be due to poor security practices - exactly what happened here.
12:30 PM - Feb 05, 2024
2
1
Darren
A
In response to Fiona Bski.
Sure, but my point is that not everyone got notified.
11:50 AM - Feb 05, 2024
1
0
Darren
A
In response to Araquiel Gaerwing.
That's not what I said, and you know that. How old are you?
11:19 AM - Feb 05, 2024
0
0
Darren
A
In response to Araquiel Gaerwing.
All I did was ask the CEO a question. You chose to reply to me dismissing my concerns, so I think you're the one stirring the pot.
11:17 AM - Feb 05, 2024
1
0
Darren
A
In response to Araquiel Gaerwing.
And my point is that not everyone was notified, like myself and the people who have replied to me saying the same thing.
11:14 AM - Feb 05, 2024
1
0
Darren
A
In response to Araquiel Gaerwing.
Except people weren't notified of the leak, so they have no idea they should reset it. It should be done by the site itself.
11:07 AM - Feb 05, 2024
2
0
Darren
A
In response to Sabine.
The data was inadvertently leaked by the way the creators set up the site, but the data could be used by bad actors.
11:06 AM - Feb 05, 2024
0
0
Darren
A
In response to Jim Plunkett.
Or, can you admit there's a possibility Spoutible didn't send the email to everyone?

Also, this was a leak, see here for more info:
https://www.troyhunt.com/h...
11:04 AM - Feb 05, 2024
1
0
Darren
A
In response to Sabine.
Because I think site admins have a responsibility to protect their users from bad actors when they leak user info.
10:33 AM - Feb 05, 2024
1
1
Darren
A
In response to Geannie Bastian.
I didn't get an email and I don't see any sort of notification in my history.

This account wasn't unwanted, it was just unused. Why should I have to deactivate it? Would deactivating it have stopped my info being leaked?
10:31 AM - Feb 05, 2024
1
0
Darren
A
In response to Jim Plunkett.
I didn't receive an email. I am not mischaracterizing anything.

Why didn't Spoutible force a password or 2FA reset for its affected users?
10:27 AM - Feb 05, 2024
1
0
Darren
A
In response to Rachael Elizabeth.
I'm not sure you have data to back up that 99% claim.

But regardless, this was a serious leak, why didn't Spoutible force a password and 2FA reset for affected users?
10:25 AM - Feb 05, 2024
0
0
Darren
A
In response to Erik Siegrist.
That's a very weird way of getting out of it, but it doesn't explain why Spoutible didn't force a password/2FA reset of all affected users.
10:22 AM - Feb 05, 2024
2
0
Darren
A
In response to Tenacious “T” WillResist.
Yep, that's really bad too
10:01 AM - Feb 05, 2024
1
1
Darren
A
In response to Araquiel Gaerwing.
Why didn't Spoutible force a password and 2FA reset for all affected accounts?
09:44 AM - Feb 05, 2024
1
0
Darren
A
In response to Jack Mcgraw.
09:29 AM - Feb 05, 2024
0
0
Darren
A
In response to L Geisenest.
Yeah, the timing is wild that I came back when I found out my PII was leaked and I wasn't notified, then get attacked when I ask a simple question!
09:28 AM - Feb 05, 2024
2
0
Darren
A
In response to L Geisenest.
It's not a part of that breach. I'm also not a troll account.

Educate yourself, and ask why Spoutible didn't force a password/2FA reset for all affected users:

https://www.troyhunt.com/h...
09:25 AM - Feb 05, 2024
1
0
loading...
{{ notificationModalContent }} {{ promptModalMessage }}