Friday, January 15, 21:58
Home security Hacker leaked millions of free user files from 18 companies!

Hacker leaked millions of free user files from 18 companies!

A hacker has leaked to dark forum databases, exposing more than 386 million user files, which are said to have been stolen from 18 Companies, after the violations data. As of July 21, a seller of stolen goods data which is known in Internet as a ShinyHunters, began leaking corporate databases for free to a hacking forum known for selling and sharing stolen data. Many of the companies affected are unaware of the breach and leak.


ShinyHunters is responsible for a wide variety of data breaches that occurred in 2019, including those Wattpad, Dave, Chatbooks, Promo.com, Mathway, HomeChef, and the GitHub Private Repository breach of Microsoft.

databases - files - leak

Databases stolen in infringements are usually sold first privately, at prices ranging from $ 500 to $ 100.000. In addition, when databases no longer offer any benefit to threatening agents, they usually publish them in hacking forums to increase the reputation of their community.

Nine of the databases released since July 21 have already been revealed in some way in the past. The other nine though, including Havenly, Indaba Music, Ivoy, Proctoru, Rewards1, Scentbird and Vakinha, not previously disclosed. The companies that have been breached and affected by the leak are the following:

CompanyUser RecordsReported Breach DateKnown?
Appen.com5.8 millionN/ANo
Chatbooks.com15.8 millionMarch 26th, 2020Yes
Dave.com7 millionJuly 2020 *Yes
Drizly.com2.4 millionJuly 2020 *No
GGumim.co.kr2.3 millionMarch 2020 *Yes
Havenly.com 1.3 millionJune 2020 *No
Hurb.com20 millionN/AYes
Indabamusic.com475 ThousandN/ANo
Ivoy.mx127 ThousandN/ANo
Mathway.com25.8 millionJanuary 2020 *Yes
Proctoru.com444 ThousandN/ANo
Promo.com22 millionJuly 2020Yes
Rewards1.com3 millionJuly 2020 *No
Scentbird.com5.8 millionN/ANo
Swvl.com4 millionN/AYes
TrueFire.com602 ThousandN/AYes
Vakinha.com.br4.8 millionN/ANo
Wattpad270 millionJune 2020 *Yes
* Based on threat actor's statements

From the samples displayed in these databases, the addresses e-mail leaked, appear to correspond to accounts belonging to these services. In total, the databases expose more than 386 million user files. Although millions are not included in the millions of files Password, there is a lot of other information on display and therefore, agents can use it threats.


The answer given by the hacker "ShinyHunters" to Bleeping Computer, when asked the reason that led him to the leak of all these databases, is particularly impressive. Specifically, the hacker stated that the leak was done "for the benefit of all".

The companies that allegedly suffered data breaches have not yet commented on the matter. In general, it is a common phenomenon when it is published that a company has suffered infringement do not comment, and it can usually take weeks or even months to confirm the incident.


Users of violated services are advised to change their site password immediately. Also, if they use the same password on other sites, they will have to change the password on them as well, setting a unique and strong password, which they will use only on this site.


Using unique passwords prevents a site breach from affecting users on other sites that they may use. Finally, when it comes to passwords, it is still recommended to use one password manager application.

LEAVE ANSWER

Please enter your comment!
Please enter your name here

Pohackontas
Pohackontashttps://www.secnews.gr
Every accomplishment starts with the decision to try.

LIVE NEWS

Android: How to see which apps have access to your site

It's no secret that smartphone apps have access to many permissions - if you let them. It is important to make sure ...

Canon lets you take pictures from space

Instead of releasing new cameras for CES 2021, Canon is doing something different: It lets you take pictures from space ....

Wikipedia vs Big tech: Who fights misinformation?

As Election Day turned into US Election Week, Facebook, Twitter and YouTube were trying to prevent ...
00:02:36

Tesla: It is called to recall cars due to problematic screens

The touch screen in some Tesla cars seems to have a problem, which could ...

Ransomware is responsible for half of all data breaches in hospitals

Almost half of the data breaches committed in hospitals and the wider healthcare sector are due to ransomware attacks, ...

Astronomers have just found the oldest oversized black hole

A quasar was discovered in a dark corner of space - over 13,03 billion light-years away - and contains a ...

What are the best and most affordable 5G phones for 2021

The market will soon be flooded with mid-range 5G devices. Everything that happens will be really exciting: you will be able to ...

Verified Twitter accounts in a cryptocurrency scam with the name of Elon Musk violated!

Lately, hackers have been violating verified Twitter accounts in a cryptocurrency giveaway scam, in which the name of the CEO is used ...

Classiscam: Fraudsters "fake" brands and deceive users of European markets!

Dozens of criminal gangs publish fake ads in popular online markets, to attract unsuspecting users to "fraudulent" commercial sites or phishing ...

iOS 14.4: Displays a notification for repairs with non-genuine cameras

Starting with the iPhone 11, Apple has added a notification to iOS that tells the user when the device has a ...