13.5Mn User Accounts May Be Compromised in 000Webhost Breach

  • 28 October 2015
  • 2 replies
  • 7 views

Userlevel 7
Badge +54
28 Oct 2015  By Tara Seals
 
About 13.5 million user accounts from one of the larger free web hosting companies in the world, 000Webhost, appear to have been compromised—with far-reaching consequences to potentially many millions of individuals.
 
User accounts have had their passwords reset, but the Lithuania-based company has not acknowledged the breach, nor has it given any direct notice to customers.
 
The issue was first brought to light by independent security researcher Troy Hunt, a Microsoft veteran who runs the service Have I been pwned? (HIBP). HIBP allows people to discover whether their personal data has been compromised on the web. When a breach hits the public airwaves, he loads in the affected email addresses, and those  who subscribe to the free service are then notified if they’ve been compromised.
 
Full Article
 
More info here:
The Register - http://www.theregister.co.uk/2015/10/28/hackers_snatch_000webhost_passwords/
The Hacker News - http://thehackernews.com/2015/10/free-web-hosting-hacking.html
Security Affairs - http://securityaffairs.co/wordpress/41521/cyber-crime/free-web-hosting-000webhost-hacked.html

2 replies

Userlevel 7
Ouch.
Userlevel 7
OUCH...INDEED!
 
That has got to hurt and hurt bad. 

Reply