Wednesday, December 31, 2025
ADVT 
International

Hello Kitty Owner Sanrio Says Fan Website Security Leak Fixed; 3.3m Users Potentially Affected

Darpan News Desk The Canadian Press, 23 Dec, 2015 12:28 PM
    HONG KONG — The Japanese company that owns the Hello Kitty brand said it has fixed a security leak in an online fan site for the character that compromised the personal information of 3.3 million users.
     
    Sanrio Co.'s digital arm said Tuesday that it "corrected" a security vulnerability on the SanrioTown.com website and was investigating. The leak was discovered Saturday by a security researcher.
     
    Hong Kong-based Sanrio Digital said anyone who knew the Internet addresses of "specific vulnerable servers" could have accessed personal information such as names and birthdates. Passwords were also available but encrypted.
     
    However, it added that the data did not include credit card or other payment details, and that no information was stolen.
     
    "We investigated the problem and applied fixes, including securing the servers identified as vulnerable" by the researcher, the company said in a security advisory posted on the site.
     
    The security researcher who identified the problem, Chris Vickery, disputed Sanrio's claim that information was not accessed, since he used multiple IP addresses himself to access data and confirm the vulnerability. He also believes Sanrio would have discovered the problem easily had it paid attention to its security practices.
     
    SanrioTown.com is an online community for Hello Kitty enthusiasts around the world operated by Sanrio Digital. The site lets users play games, watch videos and keep up with news on their favourite cute character.
     
    The site's members include 186,261 minors, said Mark Leeper, whose public relations firm is representing Sanrio Digital.
     
    It's the second Internet security breach in the past month involving a large amount of children's data.
     
    Kids' technology maker VTech reported a data breach that exposed the personal information of 6.4 million children around the world as well as 4.9 million parent accounts to which they were connected. British police have arrested one man on hacking-related charges in that case.
     
    Sanrio Digital is a joint venture between Hong Kong game developer Typhoon Games, which has a 70 per cent stake, and Sanrio, which owns the rest.

    MORE International ARTICLES

    Action on home turf adds to Uber's worldwide woes

    Action on home turf adds to Uber's worldwide woes
    US-based online ride-sharing service Uber, in the eye of a storm over the rape of a passenger in New Delhi by one of its commissioned....

    Action on home turf adds to Uber's worldwide woes

    US judge finds Indian man incompetent for murder trial

    US judge finds Indian man incompetent for murder trial
    A 77-year-old Indian-origin man charged with murder was found incompetent to stand trial in the US state of Pennsylvania after the judge was told that he was....

    US judge finds Indian man incompetent for murder trial

    America reacts with horror to CIA torture report

    America reacts with horror to CIA torture report
     A shocked America reacted with horror to a scathing Senate report detailing CIA's brutal interrogation techniques used in the aftermath of the 9/11 attacks...

    America reacts with horror to CIA torture report

    727 Iraqi Kurdish fighters killed since IS rise in June

    727 Iraqi Kurdish fighters killed since IS rise in June
    The Peshmerga military forces of Iraq's Kurdish semi-autonomous region said Wednesday that up to 727 Kurdish fighters have been killed fighting....

    727 Iraqi Kurdish fighters killed since IS rise in June

    Obama Announcing $1B In Public-private Money To Boost Early Access To Education

    Obama Announcing $1B In Public-private Money To Boost Early Access To Education
    WASHINGTON — President Barack Obama is following up on his promise to expand early education opportunities for tens of thousands of children by announcing a $1 billion public-private investment in programs for the nation's youngest learners.

    Obama Announcing $1B In Public-private Money To Boost Early Access To Education

    After Delhi Ban, Uber Slapped With Cheating Case; Driver A Serial Offender

    After Delhi Ban, Uber Slapped With Cheating Case; Driver A Serial Offender
    US-based online global cab company Uber was in for more trouble Tuesday after Delhi Police slapped a case of cheating and violating lawful orders after one of its drivers was arrested for raping a 25-year-old woman business analyst. 

    After Delhi Ban, Uber Slapped With Cheating Case; Driver A Serial Offender