Original Release Date: 9/23/2019
On September 16, an individual shared Lumin PDF user information on a hacking forum. The individual claims they notified Lumin PDF administrators of a publicly available MongoDB database that contained data on nearly 24.4 million Lumin PDF users, but received no response back. The data contains full names, email addresses, gender, locale settings, and hashed password strings or Google access tokens, though Lumin PDF denies the claim that Google access tokens were valid. According to Lumin PDF, they resolved the security vulnerabilities that led to the breach.