FB pixel

Security researcher finds facial recognition company left database exposed online without authentication

 

Dutch security researcher Victor Gevers with the GDI Foundation discovered this week that a Chinese facial recognition company left its database exposed online, revealing information about millions of people, CNET reports.

Shenzhen-based SenseNets was founded in 2015 and offers face recognition, crowd analysis and personal verification.

Gevers discovered yesterday that one of SenseNets’ MongoDB databases had been left exposed online without authentication. The database contained more than 2.5 million records on people, including names, ID card numbers, ID card issue date, ID card expiration date, sex, nationality, home addresses, dates of birth, photos, employer and GPS coordinates for locations where SenseNets’ facial recognition technology had spotted them.

Gevers also revealed that in the last 24 hours more than 6.8 million GPS coordinates were recorded, noting that anyone would be able to use these records to track a person’s movements based on SenseNets’ real-time facial recognition. The researcher found that there were 1,039 unique devices tracking people across China and that logged locations include police stations, hotels, tourism spots, parks, internet cafes and mosques.

The GDI Foundation warned SenseNets about the open database, which has been available since July.

According to IHS Markit research, cities around the world spent $3 billion on city surveillance in 2017, and the market will grow at an average annual rate of 14.6 percent to 2021. China is the biggest market for security equipment in city surveillance, taking up a two-thirds share.

Article Topics

 |   |   |   |   |   | 

Latest Biometrics News

 

Ring and Flock call off integration as scrutiny of camera-to-police partnership intensifies

Amazon-owned Ring and Flock Safety have canceled their planned partnership, stepping back from an integration that would have linked one…

 

MOSIP pursues democratization of digital identity with unconference conversations

A democratic vision of digital identity is central to the non-profit, open-source mandate of MOSIP. As the organization and the…

 

Liveness is king: FaceTec’s Jay Meier in conversation with Chris Burt 

It’s best, says Jay Meier, to think about identity management as a system of symbiotic systems. Which is to say,…

 

Ofcom fines Kick, threatens 4chan as OSA enforcement steadily dials up

UK regulator Ofcom has faced criticism for being too slow and lenient with its power to enforce the Online Safety…

 

Innovatrics, ROC improve rankings in NIST ELFT, rising to 2 and 3 respectively

Innovatrics is celebrating success in the latest National Institute of Standards and Technology (NIST) Evaluation of Latent Fingerprint Technologies (ELFT)…

 

Meta plans launch of facial recognition to smart glasses in ‘dynamic political environment’

Meta is reportedly planning to roll out facial recognition capabilities for its smart glasses as early as this year, taking…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events