A Russian crime ring is reported to have collected the largest cache in history of stolen logins: 1.2 billion user name and password combinations, over 500 million email addresses.
“Hackers did not just target U.S. companies, they targeted any website they could get, ranging from Fortune 500 companies to very small websites,” said Alex Holden, founder of Hold Security
--the firm that discovered and announced
“And most of these sites are still vulnerable.”
From the Hold Security announcement:
After more than seven months of research, Hold Security identified a Russian cyber gang which is currently in possession of the largest cache of stolen data. While the gang did not have a name, we dubbed it “CyberVor” (“vor” meaning “thief” in Russian).
The CyberVor gang amassed over 4.5 billion records, mostly consisting of stolen credentials. 1.2 billion of these credentials appear to be unique, belonging to over half a billion e-mail addresses. To get such an impressive number of credentials, the CyberVors robbed over 420,000 web and FTP sites.
From the New York Times
, which first published the news today:
Hold Security has a history of uncovering significant hacks, including the theft last year of tens of millions of records from Adobe Systems.
Hold Security would not name the victims, citing nondisclosure agreements and a reluctance to name companies whose sites remained vulnerable. At the request of The New York Times, a security expert not affiliated with Hold Security analyzed the database of stolen credentials and confirmed it was authentic. Another computer crime expert who had reviewed the data, but was not allowed to discuss it publicly, said some big companies were aware that their records were among the stolen information.
"Russian Gang Amasses Over a Billion Internet Passwords" [NYT]
Coming after improvements to Firefox and continued unease at Google’s life-pervading insight, this image is outperforming the ███████ ████ Virality Control Group today (via). It got me thinking about all the promises that were made. Here’s the earliest article in Google News to contain “Big browser” in its headline, published by Time Magazine on Nov. […]
The WiFi232 is a traditional old-timey old-schooley Hayes-compatible 300-115200 baud modem, no wider than its own parallel DB25 port. Automatically responds with a customizable busy message when already in a call. The killer app seems to be using it to get internet onto ancient retro portables like the TRS-80 Model 102, but it’s been put […]
Most tech-media takes on the iPhone’s 10th anniversary are bland and self-congratulatory, but I like Tom Warren’s at The Verge. He laments how Apple’s pocket computer killed his inner nerd. As a youngster, he’d be constantly tearing down and building computers, even in the sweltering heat of summer. But now… …All of that tinkering and […]
The Fader Stealth Quadcopter from TRNDlabs packs incredible flight performance into a package small enough to land on your phone screen, and it’s available now in the Boing Boing Store.The Fader’s six-axis gyroscope module gives it perfect balance in the air. This makes the onboard 720p HD camera all the better for shooting amazing flight […]
Although fully autonomous vehicles aren’t yet allowed on public streets, they are poised to dominate the roads in the not-too-distant future. But before that happens, Apple, Google, Uber, and other companies now investing in self-driving tech are going to need talented developers that can account for the dizzying array of factors at play when a […]
The PiCar-V learning kit comes with everything you need to build a Python-powered robot, and it’s currently being offered in the Boing Boing Store.