Bbabo NET

Science & Technology News

CDEK customer database leak

On February 25, 2022, information appeared on the raidforums.com forum about the leak of the CDEK customer database.

On February 25, 2022, information appeared on the raidforums.com forum about the leak of the CDEK customer database.

The following is a quote from the channel's telegrams:

Yesterday (25.02.22) the CDEK database was published on raidforums.com which was the largest forum hosting various information leaks (Databases). At the moment, the domain and possibly the forum servers have been arrested, now there is a login page to which the administration of the forum has no relation and access, in they asked to change passwords when the forum works on the main domain. The content of the post about the discharge of SDEK was as follows:

SDEK is a Russian operator of express delivery of documents and goods, founded in 2000 as an assistant in the delivery of goods from the Korzina.ru online store in the Siberian Federal District. However, the Internet project was soon closed, and the logistics operator developed into a federal player.

This is not a complete database, it does not contain delivery addresses, it may be published in the near future.

UPD: The archive of the database itself weighs 30GB. It is yet to be confirmed that this is CDEK data, but they report that the data in the database is correct. The base consists of two files, 466 million lines and 822 million lines.

UPD2:

I searched the numbers.txt file for my phone number in this database, found 6 entries. We make a request with an id from the found results to the base.txt database. The result is impressive.

Okay, let's continue. Making a request for my "private" phone number. There was only one shipment with this number via CDEK (the counterparty mistakenly indicated this number instead of "public".

And I also make a request with the received id:

Oh, and here is my personal mail.

Want to verify your phone number? Write to LS.

CDEK customer database leak