Stories
Slash Boxes
Comments

SoylentNews is people

posted by Cactus on Thursday February 27 2014, @03:30PM   Printer-friendly
from the uses-same-password-for-everything dept.

c0lo writes:

"Reuters reports that security company Hold Security LLC has uncovered stolen log in credentials from some 360 million online accounts that are available for sale on cyber black markets. Some of the more salient points in the article include:

  • The data was made available over the past three weeks, meaning an unprecedented amount of stolen credentials are available for sale underground.
  • The security firm is unsure where the credentials came from or what they can be used to access; the worst case scenario may include online bank account and private health records.
  • The credentials were stolen in breaches that have yet to be publicly reported. The companies attacked may be unaware for the present.

The same source reports the stash was obtained in multiple breaches, but the log in credentials of 105 million accounts may have been taken in a single attack. If confirmed, this would make the largest single breach to date.

Hold Security LLC is the same company that uncovered the Adobe customer data breach in October 2013."

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: 5, Interesting) by Buck Feta on Thursday February 27 2014, @05:33PM

    by Buck Feta (958) on Thursday February 27 2014, @05:33PM (#8063) Journal
    > Designers / administrators who sign off on systems

    Who would ever take one of these jobs then?
    --
    - fractious political commentary goes here -
    Starting Score:    1  point
    Moderation   +4  
       Insightful=1, Interesting=2, Informative=1, Total=4
    Extra 'Interesting' Modifier   0  

    Total Score:   5  
  • (Score: 5, Interesting) by SMI on Thursday February 27 2014, @05:40PM

    by SMI (333) on Thursday February 27 2014, @05:40PM (#8067)

    Yeah, really. Eventually the omniscient upper-management, who are responsible for oversight, ought to have to be held accountable. Not any time soon, obviously, but eventually!

  • (Score: 0) by Anonymous Coward on Friday February 28 2014, @12:50AM

    by Anonymous Coward on Friday February 28 2014, @12:50AM (#8184)

    Not like they usually get to sign off on systems themselves. They're more likely to be told to stuff their paranoia, and just get things done.