Helpfeel's image-sharing service Gyazo suffered a security breach involving unauthorized access to its database and exposure of user and image metadata records.

Reader brief
Through the Reader lens: Helpfeel, the company behind Gyazo, reported a security breach where an attacker exploited a vulnerability in an image upload server to gain unauthorized access to its systems and database. The incident resulted in the exposure of approximately 23.62 million user records and 490 million image metadata records, including sensitive information like email addresses, password hashes, and image IDs. While no payment details were compromised, the company has temporarily disabled viewing for some images and advised all users to update their credentials and monitor for suspicious activity.
What to watch next
- Forensic investigation results by outside specialists
- Verification on the status of exposed session IDs
- Notification of individual users identified as affected
Sources1
- [1]The Hacker NewsneutralGyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata Records