Jul 12, 2012

Yahoo Password Leak

Around half a million of username passwords were stolen from Yahoo by D33d's who took the responsibility for the deed. Though according to Yahoo they were stored on an old file (seems like it was there to be stolen only) and  only 5% of the passwords were in actual use. Usernames and passwords not only included Yahoo but also Gmail and others. So those lazy souls using Yahoo services and have not changed their passwords for long better change them now.
If you want to check if your Email id and password were present in that unfortunate file you can visit
Sucuri Yahooleak

As for Yahoo they 'explain'  :

At Yahoo! we take security very seriously and invest heavily in protective measures to ensure the security of our users and their data across all our products. We confirm that an older file from Yahoo! Contributor Network (previously Associated Content) containing approximately 400,000 Yahoo! and other company users names and passwords was stolen yesterday,July 11. Of these, less than 5% of the Yahoo! accounts had valid passwords. We are fixing the vulnerability that led to the disclosure of this data, changing the passwords of the affected Yahoo! users and notifying the companies whose users accounts may have been compromised. We apologise to affected users. We encourage users to change their passwords on a regular basis and also familiarise themselves with our online safety tips at security.yahoo.com.

Aww, familiarising with security tips won't help if the password database itself gets stolen. Many things are leaking these days from password, usernames, economies to scandals etc etc.

No comments:

Post a Comment

Real Time Web Analytics