Huddle’s ‘highly secure’ work tool exposed sensitive files
The BBC is reporting that it has discovered a security flaw in the office collaboration tool Huddle leading to private documents being exposed to unauthorised parties.
A BBC journalist was inadvertently signed in to a KPMG account, with full access to private financial documents.
Huddle is an online tool that lets work colleagues share content and describes itself as “the global leader in secure content collaboration”.
The company said it had fixed the flaw.
Its software is used by the Home Office, Cabinet Office, Revenue & Customs, and several branches of the NHS to share documents, diaries and messages.
“If somebody is putting themselves out there as a world-class service to look after information for you, it just shouldn’t happen,” said Prof Alan Woodward, from the University of Surrey.
“Huddles contain some very sensitive information.”
Read more Huddle’s ‘highly secure’ work tool exposed KPMG and BBC files
PENETRATION TESTING SERVICES BASED IN EXETER, DEVON
Pentesting UK is based in Exeter, Devon helps organisations identify their vulnerabilities, through penetration testing, ASV scanning, application testing and vulnerability scanning for businesses and organisations across the UK and beyond. Contact us for more info…
