change your important passwords.

I am Carbon

shade tree mechanic
Messages
4,156
Reaction score
199
Points
63
Location
Fort Myers,Florida
Russian cyber gang steals 1.2 billion usernames and passwords, 500 million email addresses: report
The massive breach, possibly the largest ever, targeted large, well-known websites and smaller ones as well, according to a New York Times report. Many of the sites remain vulnerable to attacks from the Russia-based hackers


Read more: http://www.nydailynews.com/news/nat...swords-report-article-1.1893190#ixzz39fAPErSH.

A Russian gang of computer hackers has gathered a staggering cache of some 1.2 billion stolen usernames and passwords, exposing vulnerability in some 400,000 websites targeted, according to a report Tuesday.
The find by Hold Security, a Milwaukee-based firm, also included some 542 million email addresses culled by the crew of twentysomethings based in a small south central Russian city, the New York Times reported.
"Hackers did not just target U.S. companies, they targeted any website they could get, ranging from Fortune 500 companies to very small websites,"Alex Holden, the founder and chief information security officer of Hold Security, told The Times. "And most of these sites are still vulnerable."
The virtual criminals do not appear to be working for the Russian government, Holden told the paper, and the gang has not sold the information. Rather, they've been paid by third-party groups to use their powerful holding of online information to send spam on social media.
The Russian government rarely pursues hackers, meaning the gang can likely continue operating unimpeded, according to The Time


"There is a division of labor within the gang,"Holden told The Times. "Some are writing the programming, some are stealing the data. It's like you would imagine a small company; everyone is trying to make a living."
Holden said he is trying to contact all the violated websites, but "most of these sites are still vulnerable,"he said. The hackers use botnets to determine a site's vulnerabilities, then clear out each site's database of any available information.
News of the massive breach comes as hundreds of hackers, online security and other tech companies gather in Las Vegas for the annual Black Hat conference, scheduled to run through Friday. The disclosure could shape future online security measures as breaches become larger, more invasive and more costly.
"Companies that rely on usernames and passwords have to develop a sense of urgency about changing this,"Avivah Litan, a security analyst at research firm Gartner, told The Times. "Until they do, criminals will just keep stockpiling people's credentials.


Read more: http://www.nydailynews.com/news/nat...swords-report-article-1.1893190#ixzz39fAoJlJd
 
Was on eBay earlier today, and things got wacky. The servers lost all routing data and couldn't reacquire. Had to shutdown and unplug for awhile. The news broadcast mentioned that this hacking included ip redirects and when you think you're on a website, you're really passing thru a proxy that's probably monitoring your activities. Best to keep looking for the lock symbol and ensure that https:// is shown during secure transactions, especially during password changes...
 
Doesn't look like we go to a secure site on this forum when changing passwords.

Just went to check and don't see the https indicator.
 
Russian cyber gang steals 1.2 billion usernames and passwords, 500 million email addresses: report
The massive breach, possibly the largest ever, targeted large, well-known websites and smaller ones as well, according to a New York Times report. Many of the sites remain vulnerable to attacks from the Russia-based hackers


Read more: http://www.nydailynews.com/news/nat...swords-report-article-1.1893190#ixzz39fAPErSH.

A Russian gang of computer hackers has gathered a staggering cache of some 1.2 billion stolen usernames and passwords, exposing vulnerability in some 400,000 websites targeted, according to a report Tuesday.
The find by Hold Security, a Milwaukee-based firm, also included some 542 million email addresses culled by the crew of twentysomethings based in a small south central Russian city, the New York Times reported.
"Hackers did not just target U.S. companies, they targeted any website they could get, ranging from Fortune 500 companies to very small websites,"Alex Holden, the founder and chief information security officer of Hold Security, told The Times. "And most of these sites are still vulnerable."
The virtual criminals do not appear to be working for the Russian government, Holden told the paper, and the gang has not sold the information. Rather, they've been paid by third-party groups to use their powerful holding of online information to send spam on social media.
The Russian government rarely pursues hackers, meaning the gang can likely continue operating unimpeded, according to The Time


"There is a division of labor within the gang,"Holden told The Times. "Some are writing the programming, some are stealing the data. It's like you would imagine a small company; everyone is trying to make a living."
Holden said he is trying to contact all the violated websites, but "most of these sites are still vulnerable,"he said. The hackers use botnets to determine a site's vulnerabilities, then clear out each site's database of any available information.
News of the massive breach comes as hundreds of hackers, online security and other tech companies gather in Las Vegas for the annual Black Hat conference, scheduled to run through Friday. The disclosure could shape future online security measures as breaches become larger, more invasive and more costly.
"Companies that rely on usernames and passwords have to develop a sense of urgency about changing this,"Avivah Litan, a security analyst at research firm Gartner, told The Times. "Until they do, criminals will just keep stockpiling people's credentials.


Read more: http://www.nydailynews.com/news/nat...swords-report-article-1.1893190#ixzz39fAoJlJd

good idea to do this, but this happened about 6 months ago...we are now being told. they say the reason for delay is that they were affraid other hackers would join in on this. they know the hackers and more then likely nothing will happen to them. bummer. thats why i only have four sites i use. this shit keeps happening.
 
Back
Top