Earlier today, December 5th 2018, “Ergo Hacker“ of Pryzraky, Brasil announced a major hack and data leak of the Rio Grande Town Hall in Rio Grande do Sul, Brasil. In a translated message to the public, Ergo states that the “Data leakage from municipality of Rio Grande contains names, CPF, date and birth of +220,000 people, including over 30,000 vehicles, vehicle plate numbers, makes/models and ownership titles.“ Additionally, the data contained below “includes sensitive data on local pharmacies, organizations, tourism, schools, teachers and students.” Moreover, Ergo claims to have been able to hack the files attached to the Rio Grande Town Hall website through a misconfigured/unprotected php database which was left open/vulnerable to SQL Injection.
Website Effected: hxxp://riogrande.rs.gov.br
Raw Leak: https://ghostbin.com/paste/uoygr
File Download 1 (Veiculos/Vehicles): https://anonfile.com/deberfm5b8/veiculo_csv
File Download 2 (Pessoas/People): https://anonfile.com/dcg5r6m7bl/pessoa_csv
File Download 3 (Farmacia/Pharmacies): https://anonfile.com/zff2r3mfbe/item_csv
File Download 4 (Escola/Schools): https://anonfile.com/s7i0r6mab2/escola_csv