NurseryCam, the remote video monitoring service for parents with young children at nurseries that was dogged with claims of troubling security issues last week, has suffered a data breach.
As BBC News reports, NurseryCam says that a “loophole” allowed an unauthorised party to access parents’ accounts – stealing usernames, passwords, names, and email addresses.
From the sound of things, the breach was not done with malicious intent, but with the hope of getting NurseryCam to recognise that its security was insufficient:
“The person who identified the loophole has so far acted responsibly,” said NurseryCam’s director Dr Melissa Kao.
“He stated he has no intention to use this to do any harm [and] wants to see NurseryCam raise the overall standards of our security measures.”
NurseryCam says that it does not believe the data breach is related to the alleged flaws previously described by security consultant Andrew Tierney, and first reported to NurseryCam by a concerned parent in 2015.
For more details of the data breach, and how it was brought to NurseryCam’s attention, check out this article at The Register.
At the time of writing, NurseryCam’s website (nurserycam.co.uk) is offline.
Found this article interesting? Follow Graham Cluley on Twitter or Mastodon to read more of the exclusive content we post.
One comment on “NurseryCam suffers data breach after security concerns raised”
I don't think the service is down. Using a VPN, it works for me from some places, but not others.