|
RockYou hack compromises 32 million passwords |
|
|
|
Source: SC Magazine - Posted by Alex
|
A hacker was able to break into the database of RockYou and obtain 32 million clear-text passwords through an SQL vulnerability.
Researchers at database security firm Imperva discovered the flaw in RockYou.com, which provides applications and services for social networking sites like Facebook and MySpace.
Imperva notified the site then issued a warning about the flaw, Amichai Shulman, CTO of Imperva, told SCMagazineUS.com on Tuesday.
But before RockYou could fix the bug, at least one hacker, using the alias “igigi,” claims to have broken into the database and obtained the RockYou credentials of all users – totaling more than 32.6 million.
He was able to steal the information because users' email addresses and passwords were stored in clear text, meaning they were not rendered unreadable through encryption or any other methods, Shulman said. Individuals must use their webmail address and password as their RockYou credentials to register for applications.
Read this full article at SC Magazine
Only registered users can write comments. Please login or register. Powered by AkoComment! |