Russion hackers get 1.2 billion usernames/passwords

Page 3 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.

darkewaffle

Diamond Member
Oct 7, 2005
8,152
1
81
FYI, an article explaining why this is probably just FUD, courtesy of Fark:

http://www.theverge.com/2014/8/6/5973729/the-problem-with-the-new-york-times-biggest-hack-ever

TL,DR:
- they bought bunches of old stale passwords from other hacking groups
- the user-password combo from a 2-year old hack that you read about 18 months ago is nothing to worry about unless you ignored the warning back then and use the same password everywhere

Yeah, OPs article basically made it out like it was not one mass hack but more just a... large scale compilation? I got the impression it was moreso a bunch of data put together from smaller, unique breaches over a few years.

All the same, I still really enjoy talking about the practice and protection, it's fascinating stuff imo.
 

SunnyD

Belgian Waffler
Jan 2, 2001
32,674
145
106
www.neftastic.com
FYI, an article explaining why this is probably just FUD, courtesy of Fark:

http://www.theverge.com/2014/8/6/5973729/the-problem-with-the-new-york-times-biggest-hack-ever

TL,DR:
- they bought bunches of old stale passwords from other hacking groups
- the user-password combo from a 2-year old hack that you read about 18 months ago is nothing to worry about unless you ignored the warning back then and use the same password everywhere

And that's the thing - the majority of those individuals tend to not do anything about those warnings due to various reasons. I mean after all, how numb have you gotten to things like phishing spam password reset emails these days? And how many people do you think have legit emails that either just go unread or straight to spam?

And to make your life a bit more scary, why this sort of information, old or new, is a big deal when put in the wrong hands: http://arstechnica.com/security/201...t-puts-a-personal-touch-on-password-cracking/
 

darkewaffle

Diamond Member
Oct 7, 2005
8,152
1
81
Well, in a way, yes. But good crackers aren't stupid people, if they knew that they got hold of the hashed AT forum passwords they might consider also making a list of all the user names and adding them to their dictionary. Or since it's AT they might make a list of tech related terms to add to their list, or maybe run a text analysis on AT articles or forum posts and add the top 100 most frequently mentioned terms or most commonly matched words/phrases to their list.


Hahaha, told you so!
 

ch33zw1z

Lifer
Nov 4, 2004
37,995
18,344
146
For the above password this site predicts:

"It would take a desktop PC about 25 thousand years to crack your password"

I used similar passwords to what mine really are, and they range from 78 days to 26 sextillion years.

seriously starting to think about something like lastpass
 

T9D

Diamond Member
Dec 1, 2001
5,320
6
0
I used similar passwords to what mine really are, and they range from 78 days to 26 sextillion years.

seriously starting to think about something like lastpass

yomamaissofat

would take a million years? Yeah ok.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |