Close Menu
TechZappi

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Can Meta’s Muse Convince Users to Trust Its AI?

    September 28, 2026

    Truecaller Expands Scam Protection Beyond Caller ID With New Web-Based Scam Checker

    September 28, 2026

    Thousands of Supabase Databases Are Exposing Sensitive User Data Online

    September 28, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Vimeo Pinterest YouTube
    TechZappi
    Subscribe Login
    • Home
    • AI

      Can Meta’s Muse Convince Users to Trust Its AI?

      September 28, 2026

      Anthropic Signs $11.6 Billion Akamai Cloud Deal as AI Compute Demand Surges

      September 25, 2026

      Google DeepMind Creates New Institute to Expand the AGI Conversation

      September 18, 2026

      Meta’s Muse Climbs to No. 2 in the U.S. App Store as AI Agent Race Heats Up

      September 11, 2026

      OpenAI Pauses $200 Pro Plan Sign-Ups as Astra Demand Overwhelms Infrastructure

      September 11, 2026
    • Technology
      1. AI
      2. Cybersecurity
      3. Crypto
      4. App
      5. Security
      6. View All

      Can Meta’s Muse Convince Users to Trust Its AI?

      September 28, 2026

      Anthropic Signs $11.6 Billion Akamai Cloud Deal as AI Compute Demand Surges

      September 25, 2026

      Google DeepMind Creates New Institute to Expand the AGI Conversation

      September 18, 2026

      Meta’s Muse Climbs to No. 2 in the U.S. App Store as AI Agent Race Heats Up

      September 11, 2026

      Thousands of Supabase Databases Are Exposing Sensitive User Data Online

      September 28, 2026

      Australia Investigates OpenAI After AI Agent Breached Government Health Systems

      September 24, 2026

      The Biggest Cyberattacks of 2026: Data Leaks, Ransomware and Infrastructure Under Threat

      September 15, 2026

      Chrome Moves to a Two-Week Update Cycle as Browser Security Enters the AI Era

      September 8, 2026

      Binance to Restrict Transactions With HTX and 10 Other Crypto Platforms

      August 14, 2026

      Robinhood Acquires Bitstamp for $200M to Bolster Crypto Presence

      July 18, 2024

      CoinDCX Expands Globally with Acquisition of BitOasis

      July 4, 2024

      IRS Finalizes New Regulations for Crypto Tax Reporting

      July 4, 2024

      Truecaller Expands Scam Protection Beyond Caller ID With New Web-Based Scam Checker

      September 28, 2026

      Google Photos Turns Your Outfits Into an AI-Powered Virtual Closet

      September 24, 2026

      Amazon launches Alexa+ in India with Hindi support

      September 16, 2026

      Meta’s Muse Climbs to No. 2 in the U.S. App Store as AI Agent Race Heats Up

      September 11, 2026

      The Best Antivirus Software in 2026 – Tested, Ranked, and Worth Your Money

      April 7, 2026

      Kaspersky to Cease US Operations and Lay Off Employees Following Government Ban

      July 17, 2024

      Data Breach Exposes Millions of mSpy Customers’ Data

      July 12, 2024

      HealthEquity Describes Data Breach as an ‘Isolated Incident’

      July 4, 2024

      Can Meta’s Muse Convince Users to Trust Its AI?

      September 28, 2026

      Truecaller Expands Scam Protection Beyond Caller ID With New Web-Based Scam Checker

      September 28, 2026

      Thousands of Supabase Databases Are Exposing Sensitive User Data Online

      September 28, 2026

      Anthropic Signs $11.6 Billion Akamai Cloud Deal as AI Compute Demand Surges

      September 25, 2026
    • Contact
    TechZappi
    Home » Thousands of Supabase Databases Are Exposing Sensitive User Data Online
    Cybersecurity

    Thousands of Supabase Databases Are Exposing Sensitive User Data Online

    September 28, 20263 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp VKontakte Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    A new security investigation has uncovered a large number of publicly accessible databases hosted on Supabase, potentially exposing sensitive information belonging to people around the world.

    Cybersecurity company UpGuard said its research identified approximately 16,000 Supabase databases containing some form of personal information that could be accessed from the public internet.

    Supabase is a popular development platform that allows developers to build applications and store their databases without having to manage the underlying infrastructure themselves. Its popularity has grown rapidly as more developers use AI-powered coding tools to create websites and applications.

    The latest findings, however, highlight a security challenge that can arise when developers configure these systems incorrectly.

    Personal information found in exposed databases

    According to UpGuard, researchers discovered publicly accessible records containing names, addresses, telephone numbers and passwords. A smaller number of databases also exposed authentication tokens and other credentials.

    The exposed information was not limited to a particular type of application.

    Researchers found databases containing private conversations from an Indian adult streaming service, thousands of vehicle license plates belonging to a U.S. valet company and contact information associated with an immigration and relocation service.

    In one case, UpGuard identified a database connected to an African government consulate in France.

    Another exposed database was associated with a virtual SIM operation used to receive text messages containing one-time verification codes. Such services can potentially be abused for account takeovers, scams and phishing campaigns.

    While many of the exposed databases were located in the United States, UpGuard said the problem extends well beyond the country.

    AI-powered development adds another security challenge

    The findings also highlight a growing concern surrounding so-called AI-assisted or “vibe-coded” applications.

    Modern AI coding tools allow people with limited programming experience to build functioning websites and applications relatively quickly. However, generating an application is only part of the process. Developers still need to correctly configure databases, authentication systems and access controls.

    A poorly configured database can therefore leave sensitive information exposed even when the application itself appears to work normally.

    Similar configuration mistakes have previously resulted in major leaks involving government information, immigration records, identification documents and other sensitive data.

    With more developers turning to AI tools to build applications, security researchers are increasingly concerned that these mistakes could occur at a much larger scale.

    Supabase says security is a shared responsibility

    Supabase has introduced several security improvements over the years, including additional controls around database access and project configuration.

    The company’s Chief Information Security Officer, Bil Harmer, said Supabase had not reviewed the specific research when contacted, but maintained that projects are secure by default.

    Harmer emphasized that security is shared between Supabase and its customers. The platform provides security tools and default protections, while developers remain responsible for how they configure their individual projects.

    He also said the company works to notify customers when security problems are identified.

    A growing problem for modern developers

    The research illustrates a broader issue facing today’s software industry: making application development easier does not automatically make applications secure.

    As AI makes it possible to build software faster, developers still need to understand permissions, authentication, database policies and other security controls.

    For organizations handling personal or confidential information, a simple configuration mistake can potentially expose thousands or even millions of records.

    UpGuard researcher Greg Pollock said the company’s investigation is intended to raise awareness about the risks of publicly accessible databases and encourage developers to take greater care when deploying applications.

    The findings serve as another reminder that convenience and rapid development need to be balanced with proper security practices—particularly as AI-driven development continues to expand.

    cybersecurity
    Share. Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Email
    Previous ArticleAnthropic Signs $11.6 Billion Akamai Cloud Deal as AI Compute Demand Surges
    Next Article Truecaller Expands Scam Protection Beyond Caller ID With New Web-Based Scam Checker
    admin
    • Website

    Related Posts

    Can Meta’s Muse Convince Users to Trust Its AI?

    September 28, 2026

    Truecaller Expands Scam Protection Beyond Caller ID With New Web-Based Scam Checker

    September 28, 2026

    Anthropic Signs $11.6 Billion Akamai Cloud Deal as AI Compute Demand Surges

    September 25, 2026

    Google Photos Turns Your Outfits Into an AI-Powered Virtual Closet

    September 24, 2026
    Leave A Reply Cancel Reply

    Our Picks

    Can Meta’s Muse Convince Users to Trust Its AI?

    September 28, 2026

    Truecaller Expands Scam Protection Beyond Caller ID With New Web-Based Scam Checker

    September 28, 2026

    Thousands of Supabase Databases Are Exposing Sensitive User Data Online

    September 28, 2026

    Anthropic Signs $11.6 Billion Akamai Cloud Deal as AI Compute Demand Surges

    September 25, 2026
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Don't Miss
    AI

    Can Meta’s Muse Convince Users to Trust Its AI?

    September 28, 2026

    Meta is making a major push into consumer AI with Muse, a personal AI agent…

    Truecaller Expands Scam Protection Beyond Caller ID With New Web-Based Scam Checker

    September 28, 2026

    Thousands of Supabase Databases Are Exposing Sensitive User Data Online

    September 28, 2026

    Anthropic Signs $11.6 Billion Akamai Cloud Deal as AI Compute Demand Surges

    September 25, 2026

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

      About Us
      About Us

      TechZappi is your go-to source for the latest tech news, digital trends, and innovation stories. We cover topics ranging from AI and apps to cybersecurity and online tools, helping readers stay informed about what’s happening in the technology world.

      Our Picks

      Can Meta’s Muse Convince Users to Trust Its AI?

      September 28, 2026

      Truecaller Expands Scam Protection Beyond Caller ID With New Web-Based Scam Checker

      September 28, 2026

      Thousands of Supabase Databases Are Exposing Sensitive User Data Online

      September 28, 2026

      Subscribe to Updates

      Get the latest creative news from Techzappi about Ai, Apps and Cybersecurity.

        Facebook X (Twitter) Instagram Pinterest Vimeo YouTube
        • Home
        • AI
        • App
        • Cybersecurity
        © 2026 TechZappi. All Rights Reserved. Privacy Policy | Terms Of Service

        Type above and press Enter to search. Press Esc to cancel.

        Sign In or Register

        Welcome Back!

        Login to your account below.

        Lost password?