Yahoo breached, once again, time to change your password(s)

Started by steve58, December 15, 2016, 10:44:26 AM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

steve58

Got an email from Yahoo this morning about this... >:(

Quote
Internet giant Yahoo announced a massive data breach Wednesday that affected over one billion accounts  :wow:, making it by far the largest data breach in history. This follows the disclosure in September of a different breach that affected more than 500 million of the company's customers.

What stands out with this new security compromise is that it occurred over three years ago, in August 2013, and that hackers walked away with password hashes that can be easily cracked.

http://www.pcworld.com/article/3150953/security/5-things-you-should-do-following-the-yahoo-breach.html
Government is not the solution to our problem—government is the problem.   Ronald Reagan
The democracy will cease to exist when you take away from those who are willing to work and give to those who would not.   Thomas Jefferson
During times of universal deceit, telling the truth becomes a revolutionary act.   George Orwell  The truth is quiet...It's the lies that are loud.   Jesus Revolution
If you ever find yourself in need of a safe space then you're probably going to have to stop calling yourself a social justice warrior. You cannot be a warrior and a pansy at the same time   Mike Adams (RIP Mike)

mirth

They were still using MD5 for hashing. Even for 2013, that's inexcusably weak.

My Yahoo email address is my oldest and most widely circulated. It would be a pain to stop using, but it may be time. Yahoo's security is atrocious.
"45 minutes of pooping Tribbles being juggled by a drunken Horta would be better than Season 1 of TNG." - SirAndrewD

"you don't look at the mantelpiece when you're poking the fire" - Bawb

"Can't 'un' until you 'pre', son." - Gus

bbmike

If I'm reading this right the breach occurred three years ago? I've changed my passwords not too long ago so I should be ok?
"My life is spent in one long effort to escape from the commonplace of existence."
-Sherlock Holmes

"You know, just once I'd like to meet an alien menace that wasn't immune to bullets."
-Brigadier Lethbridge-Stewart

"There's a horror movie called Alien? That's really offensive. No wonder everyone keeps invading you!"
-The Doctor

"Before Man goes to the stars he should learn how to live on Earth."
-Clifford D. Simak

mirth

Quote from: bbmike on December 15, 2016, 11:02:13 AM
If I'm reading this right the breach occurred three years ago? I've changed my passwords not too long ago so I should be ok?

You should be okay. Yahoo recently did a forced password change for all users (which is when I knew they were screwed).

The main thing is not to reuse passwords. Especially for anything mission critical (banking, etc).
"45 minutes of pooping Tribbles being juggled by a drunken Horta would be better than Season 1 of TNG." - SirAndrewD

"you don't look at the mantelpiece when you're poking the fire" - Bawb

"Can't 'un' until you 'pre', son." - Gus

bbmike

Thanks. I really wish someone would come up with a better way for security than all these passwords.  :uglystupid2:
"My life is spent in one long effort to escape from the commonplace of existence."
-Sherlock Holmes

"You know, just once I'd like to meet an alien menace that wasn't immune to bullets."
-Brigadier Lethbridge-Stewart

"There's a horror movie called Alien? That's really offensive. No wonder everyone keeps invading you!"
-The Doctor

"Before Man goes to the stars he should learn how to live on Earth."
-Clifford D. Simak