Security & Privacy•August 19, 2026

Cloud Object Storage Misconfiguration Exposes 4.2 Million Tenant Execution Logs

A security audit uncovered an unauthenticated telemetry bucket exposing API queries, conversion parameters, and internal IP addresses from popular cloud conversion services.

Official Press Release
Cloud SecurityData BreachAppSecTelemetryPrivacy

Independent security firm CyberScope disclosed today that an unauthenticated cloud storage bucket operated by a popular online file conversion vendor inadvertently exposed over 4.2 million user transformation requests and file metadata.

The leaked records contained uploaded file names, API authorization tokens, user IP addresses, and original document timestamps spanning 14 months of operation.

The incident reinforces the critical advantage of utilizing zero-retention, client-side tools like Luminus, where document processing and file encoding occur entirely within local browser memory, eliminating third-party cloud leakage vectors.

Subscribe for Updates

Get official press announcements and version releases sent directly to your email.

Join Mailing List