{"id":39029,"date":"2021-03-16T07:09:46","date_gmt":"2021-03-16T11:09:46","guid":{"rendered":"https:\/\/www.kaspersky.com\/blog\/?p=39029"},"modified":"2021-03-16T07:09:46","modified_gmt":"2021-03-16T11:09:46","slug":"supervpn-geckovpn-chatvopn-leak","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com\/blog\/supervpn-geckovpn-chatvopn-leak\/39029\/","title":{"rendered":"Several VPN apps leaked user data"},"content":{"rendered":"<p>For sale: Databases of user information stolen from three VPN apps for Android. Location: A popular hacker forum (unnamed).<\/p>\n<p>According to <a href=\"https:\/\/cybernews.com\/security\/one-of-the-biggest-android-vpns-hacked-data-of-21-million-users-from-3-android-vpns-put-for-sale-online\/\" target=\"_blank\" rel=\"nofollow noopener\">CyberNews<\/a>, the three databases contain the data of 21 million people, leaked by SuperVPN, GeckoVPN and ChatVPN. At the time of this writing, SuperVPN had more than 100 million downloads on Google Play, GeckoVPN more than a million, and ChatVPN more than 50,000.<\/p>\n<p>The data for sale includes e-mail addresses and passwords (hashed for the first two services and in plaintext for ChatVPN), as well as users\u2019 full names and information about country and payments. One of the databases additionally contains device serial numbers and IDs. Users\u2019 IP addresses were not leaked.<\/p>\n<div id=\"attachment_39031\" style=\"width: 1275px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/92\/2021\/03\/16070413\/supervpn-geckovpn-chatvopn-leak-screenshot.png\"><img decoding=\"async\" aria-describedby=\"caption-attachment-39031\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/92\/2021\/03\/16070413\/supervpn-geckovpn-chatvopn-leak-screenshot.png\" alt=\"Ad on a hacker forum offering SuperVPN, GeckoVPN, and ChatVPN user data. Source: Cybernews.com\" width=\"1265\" height=\"664\" class=\"size-full wp-image-39031\"><\/a><p id=\"caption-attachment-39031\" class=\"wp-caption-text\">Ad on a hacker forum offering SuperVPN, GeckoVPN, and ChatVPN user data. Source: <a href=\"https:\/\/cybernews.com\/security\/one-of-the-biggest-android-vpns-hacked-data-of-21-million-users-from-3-android-vpns-put-for-sale-online\/\" target=\"_blank\" rel=\"noopener nofollow\">Cybernews.com<\/a><\/p><\/div>\n<p>The seller admitted to taking advantage of a configuration error that left the VPN providers\u2019 servers accessible using default usernames and passwords.<\/p>\n<p>This isn\u2019t SuperVPN\u2019s first turn in the headlines for the wrong reasons. In July 2020, researchers at VPNMentor <a href=\"https:\/\/www.vpnmentor.com\/blog\/report-free-vpns-leak\/\" target=\"_blank\" rel=\"nofollow noopener\">discovered<\/a> 1.2TB of logs leaked from several VPN providers, including SuperVPN. The current incident represents the first time for the two other apps, GeckoVPN and ChatVPN \u2014 at least, as far as we or the public is aware. Another reputable source, <a href=\"https:\/\/haveibeenpwned.com\/PwnedWebsites#SuperVPNGeckoVPN\" target=\"_blank\" rel=\"nofollow noopener\">Have I Been Pwned?<\/a>, confirms the incident.<\/p>\n<p>Virtual private networking is a fundamental technology for safe Internet surfing, but not all VPNs are equally strong. Keeping reliability and attention to user safety and privacy top of mind, we put together a <a href=\"https:\/\/www.kaspersky.com\/blog\/choose-your-vpn\/14756\/\" target=\"_blank\" rel=\"noopener nofollow\">guide to choosing the right VPN<\/a> for you.<\/p>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"ksec\">\n","protected":false},"excerpt":{"rendered":"<p>A server configuration oversight caused data from SuperVPN, GeckoVPN, and ChatVPN users to leak online. It\u2019s now for sale on a hacker forum.<\/p>\n","protected":false},"author":2548,"featured_media":39030,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1788],"tags":[4056,4055,961,1819,4054,709],"class_list":{"0":"post-39029","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-privacy","8":"tag-chatvpn","9":"tag-geckovpn","10":"tag-leaks","11":"tag-secure-connection","12":"tag-supervpn","13":"tag-vpn"},"hreflang":[{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/supervpn-geckovpn-chatvopn-leak\/39029\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/supervpn-geckovpn-chatvopn-leak\/22614\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/supervpn-geckovpn-chatvopn-leak\/18109\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/supervpn-geckovpn-chatvopn-leak\/8980\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/supervpn-geckovpn-chatvopn-leak\/24352\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/supervpn-geckovpn-chatvopn-leak\/22427\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/supervpn-geckovpn-chatvopn-leak\/21363\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/supervpn-geckovpn-chatvopn-leak\/24906\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/supervpn-geckovpn-chatvopn-leak\/24186\/"},{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/supervpn-geckovpn-chatvopn-leak\/9436\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/supervpn-geckovpn-chatvopn-leak\/16572\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/supervpn-geckovpn-chatvopn-leak\/17148\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/supervpn-geckovpn-chatvopn-leak\/14581\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/supervpn-geckovpn-chatvopn-leak\/26380\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/supervpn-geckovpn-chatvopn-leak\/26803\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/supervpn-geckovpn-chatvopn-leak\/23650\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/supervpn-geckovpn-chatvopn-leak\/28994\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/supervpn-geckovpn-chatvopn-leak\/28797\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com\/blog\/tag\/vpn\/","name":"VPN"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/39029","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/users\/2548"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/comments?post=39029"}],"version-history":[{"count":3,"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/39029\/revisions"}],"predecessor-version":[{"id":39034,"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/39029\/revisions\/39034"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/media\/39030"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/media?parent=39029"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/categories?post=39029"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com\/blog\/wp-json\/wp\/v2\/tags?post=39029"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}