A security researcher has come across an unsecured Elasticsearch database that left 2.4 million sensitive records totaling 4.4GB exposed to the internet. The records are part of the Dow Jones Watchlist, which contains sensitive information on shady companies and individuals with links to organized crime and terrorist networks.
Even though the list is a collection of publicly available data, its contents are kept secret on purpose. After being notified by the researcher, Dow Jones took steps to rectify the error, which it blamed on a third party with authorized access to the data.