9 days ago
--- GLOBAL SECURITY NOTICE: YOUR DATA IS AT RISK --- We have successfully exfiltrated and backed up your databases. The original records have been removed from this server. We will keep your data for 30 days; after this period, it will be publicly disclosed on dark web forums and permanently deleted from our servers. To ensure your privacy and recover your files, we offer two options: OPTION 1: RECOVERY SERVICE + LEAK PROTECTION Transfer 0.015 BTC to the address below. Includes: Full database restoration (SQL dump) and a guarantee that your data will be permanently deleted from our servers without disclosure. OPTION 2: LEAK PROTECTION ONLY Transfer 0.008 BTC to the address below. Includes: We will NOT leak your data publicly and will delete our copy. No recovery service/backup will be provided. PAYMENT ADDRESS (BTC): BC1Q982LGQ8C6HDH9FSWF7L09E35PVZ5XHU0TL650H ---------------------------------------------------------------------------------- IMPORTANT INSTRUCTIONS: - Do not change your database login details during this process. - After payment, send the Transaction ID and your Server IP to: rescuedatabase@hotmail.com - Failure to pay within 30 days will result in the sale of your data to competitors or public release. HOW TO PURCHASE BITCOIN: If you do not have Bitcoin, you can purchase it using a credit card or other methods at: Top Tier Exchanges: - Coinbase: https://www.coinbase.com/ - Binance: https://www.binance.com/ - Crypto.com: https://www.crypto.com/ - MoonPay: https://www.moonpay.com/buy Alternative Platforms: - Paybis: https://paybis.com/ - Changelly: https://changelly.com/buy - Paxful: https://paxful.com/ - Coinmama: https://coinmama.com/ - HodlHodl: https://hodlhodl.com For users in specific regions (e.g., China): - CoinCola: https://www.coincola.com/ - BitValve: https://www.bitvalve.com/ Note: PayPal, WeTransfer, and direct credit card transfers to us are NOT accepted. Only Bitcoin. ---------------------------------------------------------------------------------- Thank you for your cooperation. Good luck.
Our database was deleted this morning, and it contained this content. What should we do to prevent this from happening again?
1 Replies
9 days ago
This thread has been marked as public for community involvement, as it does not contain any sensitive or personal information. Any further activity in this thread will be visible to everyone.
Status changed to Open Railway • 9 days ago
9 days ago
Make sure you don't expose any environment variables in any of your services, nor should they be hardcoded in your codebase.
In the future, if you ever suspect any sort of leak, immediately rotate all API keys.
Additionally, I would highly recommend having scheduled backups of your database in the case of a destructive action. (Click on your database > Backups > Edit schedule)
Status changed to Awaiting User Response Railway • 9 days ago
a day ago
This thread has been marked as solved automatically due to a lack of recent activity. Please re-open this thread or create a new one if you require further assistance. Thank you!
Status changed to Solved Railway • 1 day ago