Cyber Security News

Virustotal Apologizes for the Recent Customer Data Leak

The Virustotal platform has issued an apology and provided an update regarding a recent incident of accidental data exposure.

VirusTotal was established in 2004 as a complimentary service that examines files and URLs for viruses, worms, trojans, and other malevolent content.

It is one of the most popular services IT security professionals use to analyze suspicious files to detect malicious activity.

Virus Total recently launched an AI-powered code analysis feature dubbed “Code Insight.”

On June 29, the organization’s employee accidentally uploaded a CSV file to the Virus Total Platform; this file contain include limited information about premium account customers, especially the names of the company, the associated VirusTotal group names, and the email addresses of group administrators. 

CSV File Contains User Data:

A Comma Separated Values (CSV) file is a plain text file containing a data list. These files are often used for exchanging data between different applications. For example, databases and contact managers often support CSV files.

After, they found and removed the file within one hour, which was only accessible to partners and corporate clients.

The organization clarified that it was not the result of a cyber-attack or vulnerability, and they specified it was a human error.

The file contains over 5600 customer names and email addresses that are registered. If accessed by threat actors, this could result in targeted phishing attacks.

An Example of a CSV File:

As a result of this incident, they implemented new internal processes and technical controls to improve the security and safeguarding of customer data.

Stay up-to-date with the latest Cyber Security News; follow us on GoogleNewsLinkedinTwitterand Facebook.

Sujatha

Sujatha is a Cyber security content editor with a passion for creating captivating and informative content. With years of experience under her belt in Cyber Security, she is covering Cyber Security News, technology and other news.

Recent Posts

New Chaosbot Leveraging CiscoVPN and Active Directory Passwords to Execute Network Commands

ChaosBot surfaced in late September 2025 as a sophisticated Rust-based backdoor targeting enterprise networks. Initial…

15 hours ago

Threat Actors Exploiting SonicWall SSL VPN Devices in Wild to Deploy Akira Ransomware

Threat actors have reemerged in mid-2025 leveraging previously disclosed vulnerabilities in SonicWall SSL VPN appliances…

15 hours ago

Nanoprecise partners with AccuKnox to strengthen its Zero Trust Cloud Security and Compliance Posture

Menlo Park, USA, October 10th, 2025, CyberNewsWire AccuKnox, a leader in Zero Trust Cloud Native…

16 hours ago

175 Malicious npm Packages With 26,000 Downloads Attacking Technology, and Energy Companies Worldwide

Socket's Threat Research Team has uncovered a sophisticated phishing campaign involving 175 malicious npm packages…

17 hours ago

RondoDox Botnet Exploits 50+ Vulnerabilities to Attack Routers, CCTV Systems and Web Servers

Since its emergence in early 2025, RondoDox has rapidly become one of the most pervasive…

17 hours ago

Microsoft Defender Incorrectly Flags SQL Server Software as End-of-life

Microsoft Defender for Endpoint is incorrectly flagging specific versions of SQL Server as having reached…

19 hours ago