Student attends Steria Hacking Challenge in Meudon
The discovery of some two million stolen online passwords this week prompted fresh warnings from security researchers to strengthen protection from hackers. US-based security firm Trustwave said it located the stolen credentials on a server
in the Netherlands, affecting accounts from Facebook, Google, Yahoo and other major firms.
Trustwave said in a blog post that many of the compromised accounts had weak passwords -- sometimes with fewer than four characters.
Only five percent were rated "excellent" with eight or more characters. And many were easy to guess such as "1234" or "123456."
"Unfortunately, there were more terrible passwords than excellent ones, more bad passwords than good, and the majority, as usual, is somewhere in between in the medium category," the blog post said.
The compromised accounts were linked to a "botnet" called Pony, which infected computers with malware and allowed hackers to remotely access the devices.
Victimized computers were found in some 100 countries, the statement said. "The attack is fairly global and ... at least some of the victims are scattered all over the world."
Independent security researcher Graham Cluley said the incident was a large-scale version of a common type of attack.
"Innocent users? computers have become infected with malware, which grabbed login details as they were entered by users," he said in a blog post.
"This data was then transmitted to the cybercriminals -- either so they could access the accounts themselves or (more likely) sell on the details to other online criminals."
Serge Malenkovich of the security firm Kaspersky said cybercriminals can also steal credentials from people who check their emails or Facebook accounts from a public computer.
"This could be quite unpleasant by itself, but the problem will become even worse if you have a habit of re-using the same password for multiple online services," Malenkovich said.
"As password theft happens more often, this habit has become even more dangerous, especially if you consider that your daily routine now includes persistent access to financial transactions -- from classical online banking to fund transfers using Gmail attachments. That?s why a seemingly innocent Twitter password theft might eventually lead to the loss of real money."
Source: AFP
GMT 13:12 2018 Monday ,03 December
Russian embassy indignant over doxing of Russian reporters by British mediaGMT 11:43 2018 Sunday ,18 November
Minister of Media patronizes ceremony honoring winners of "Media Datathon"GMT 20:48 2018 Friday ,16 November
Israel bans entry of senior Arab journalists to West Bank for key eventGMT 15:43 2018 Friday ,19 October
Kremlin hopes situation with missing Saudi journalist in Istanbul will be solvedGMT 05:46 2018 Friday ,05 October
Moscow to ask "additional questions" to London on cyber attacks "Yakovenko"GMT 15:34 2018 Thursday ,04 October
Bassem Youssef holds satire masterclass at Focus Academy in Dubai Media CityGMT 17:09 2018 Friday ,21 September
Russian embassy rejects allegations about plans to help Assange escape from UKGMT 17:32 2018 Saturday ,08 September
YouTube TV subscribers can now pause their membershipsMaintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2021 ©
Maintained and developed by Arabs Today Group SAL.
All rights reserved to Arab Today Media Group 2021 ©
Send your comments
Your comment as a visitor