Google Chrome Platform Notification Analysis

Google Chrome Platform Notification Analysis

An overwhelming amount of forensic information is tied up in the Google LevelDB format and is being missed by forensic examiners. This includes numerous databases present in Chromium-based browsers and a massive amount of data sitting behind Electron-based applications.  Open-source support for LevelDB analysis is sparse, but some vendors are starting to incorporate capabilities within their tool suites. In this post, we use the new Arsenal Recon LevelDB Recon tool to examine the Chrome Platform Notifications database extracting a surprising amount of information, including over six months of calendar reminders.  If you have not been paying attention to LevelDB artifacts let this short post be your wake-up call!

Read More

Cutout.Pro – 19,972,829 breached accounts

In February 2024, the AI-powered visual design platform Cutout.Pro suffered a data breach that exposed 20M records. The data included email and IP addresses, names and salted MD5 password hashes which were subsequently broadly distributed on a popular hacking forum and Telegram channels.

Read More

Tangerine – 243,462 breached accounts

In February 2024, the Australian Telco Tangerine suffered a data breach that exposed over 200k customer records. Attributed to a legacy customer database, the data included physical and email addresses, names, phone numbers and dates of birth. Whilst the Tangerine login process involves sending a one-time password after entering an email address and phone number, it previously used a traditional password which was also exposed as a bcrypt hash.

Read More
X