318,000 Facebook accounts
70,000 Gmail, Google+ and YouTube accounts
22,000 Twitter accountsTwo million Facebook, Gmail and Twitter passwords stolen
31–40 of 107 posts
Re: Two million Facebook, Gmail and Twitter passwords stolen
#32What platform(s) was the keylogger written for and how was it spread?
Given the vast amount of passwords farmed, I would say it was targetted for the Windows platform.
Re: Two million Facebook, Gmail and Twitter passwords stolen
#3357.06% of the passwords stolen were for the Facebook domain. Sigh!
At least nothing of value was lost?
Re: Two million Facebook, Gmail and Twitter passwords stolen
#34I wonder if connected..
Re: Two million Facebook, Gmail and Twitter passwords stolen
#35Earlier quoted context omitted.
At least nothing of value was lost?
The ADP -- a payroll service -- passwords (which, interestingly, aren't in the headline), are probably the ones that, despite being smallest in number, offer the most opportunity for direct financial disruption.
The ADP employee site hasn't changed in the past ten years and still uses basic auth. It's horrible. And freaky. When you login to your new company account, it shows all paystubs from your past employers too. [With the implication of your current payroll department being able to see how much you were getting paid at all your previous jobs since it's the same account?]
Re: Two million Facebook, Gmail and Twitter passwords stolen
#362 Factor Authentication, 2 Factor Authentication, 2 Factor Authentication! I've had 2 factor authentication enabled on my gmail account for over a year now, and once you get past the initial setup phase, it's really not that inconvenient. I have even been able to train my parents to use 2 factor auth, I just need to get them using a password manager now...
Yup, exactly why I made https://GAuthify.com , keep it standard via Google Authenticator and allow other options like SMS, Voice and Email. If you want to add it to your app and can't afford it, shoot support and email and I'll try to set you up with a discount/free-er account.
Re: Two million Facebook, Gmail and Twitter passwords stolen
#37Re: Two million Facebook, Gmail and Twitter passwords stolen
#38Earlier quoted context omitted.
What happens if I'm i) outside the country, so no SMS for me, ii) outside cell tower coverage but with wifi (happens every day for me inside buildings), or I got my cellphone stolen for instance. How does 2fauth works in that case? (Just wondering, as the above are the reasons I decided not to use it)
2-factor authentication does not require the second factor every time. It typically only asks for the second factor if the device is unrecognized, or the usage pattern is unfamiliar. So, your laptop that's logged into GMail will stay logged in when you're out of the country. Unless you explicitly log out, it will stay this way. I enter maybe one two-factor auth code a week, if that. So: i) Prepare ahead and log into…
Re: Two million Facebook, Gmail and Twitter passwords stolen
#39Ugh. Actually, 410k Facebook, Gmail, and Twitter passwords stolen: 318,000 Facebook accounts 70,000 Gmail, Google+ and YouTube accounts 22,000 Twitter accounts
Re: Two million Facebook, Gmail and Twitter passwords stolen
#40Ugh. Actually, 410k Facebook, Gmail, and Twitter passwords stolen: 318,000 Facebook accounts 70,000 Gmail, Google+ and YouTube accounts 22,000 Twitter accounts
There were thousands of services attacked, there isn't room in the headline for all of them.
Or: "Two million passwords stolen, including from Facebook, Gmail, and Twitter".