An actor claiming to be exfilar says Qara’s backend was publicly readable and writable without authentication, allowing live changes to a Saint-Gobain app deployment and exposing data tied to multiple tenants. The alleged leak also includes session tokens, plaintext employee passwords, and records connected to a Saudi government health and safety application, but the claim remains unverified. #Qara #exfilar #SaintGobain #Lidl #SPAR
Keypoints
- exfilar claims Qara’s backend databases were publicly readable and writable without authentication.
- The actor says they changed a Saint-Gobain production deployment configuration and verified it persisted.
- The alleged exposure affects Qara, an Egyptian supply-chain SaaS platform used by more than 14 enterprise tenants.
- The dump reportedly includes session tokens, database admin keys, and plaintext employee passwords.
- Data tied to a Saudi government health and safety application and financial voucher records was also allegedly exposed.
DarkWebInformer.com Providing intel from some of the darkest places on the Dark Web & Clearnet. Breaches, Darknet Markets, Ransomware, Threat Alerts, & more!