Naughty America
March 14, 2016
•[ hack, misconfiguration, technology ]
In March 2016, the adult website Naughty America was hacked and the data consequently sold online. The breach included data from numerous systems with various personal identity attributes, the largest of which had passwords stored as easily crackable MD5 hashes. There were 1.4 million unique email addresses in the breach.
worldchess
March 11, 2016
•[ hack, ddos, technology ]
Controversial website worldchess.com, broadcasting in exclusive the World Chess Candidates Tournament, is the target of a DDoS attack.
Staminus
March 11, 2016
•[ hack, technology ]
In March 2016, the DDoS protection service Staminus was "massively hacked" resulting in an outage of more than 20 hours and the disclosure of customer credentials (with unsalted MD5 hashes), support tickets, credit card numbers and other sensitive data. 27k unique email addresses were found in the data which was subsequently released to the public. Staminus is no longer in operation.
Litecointalk Forum
March 10, 2016
•[ hack, technology ]
The Litecointalk forum is hacked, and all users are forced to reset their passwords.
Unnamed South Korean news-clipping firm
March 5, 2016
•[ hack, technology ]
South Korean officials launch an investigation into whether an Islamic State militant group hacked a South Korean news-clipping firm's computer network. Data on 20 South Koreans was reportedly acquired in the attack.
Mansueto Ventures
March 4, 2016
•[ financial, phishing, technology ]
Another victim of a payroll phish: unknown criminals obtain the IDs of 90 percent of the employees of Mansueto Ventures and use the data to file the fraudulent tax returns.
GCI
March 4, 2016
•[ financial, leak, phishing ]
GCI notifies more than 2,500 employees that their W-2 forms were stolen in an apparent phishing scam in February.
Seagate
March 1, 2016
•[ social, phishing, technology ]
Seagate is the last victim of a payroll phish. A Seagate employee sends the data to an outside e-mail address after receiving an e-mail purportedly from Seagate's CEO Stephen Luczo requesting 2015 W-2 data for current and former Seagate employees.
Mate1
February 29, 2016
•[ leak, misconfiguration, technology ]
A hacker on the dark web forum Hell claims to have sold the email addresses and plaintext passwords of over 27 million users of dating site Mate1.com.
KM.RU
February 29, 2016
•[ leak, technology ]
In February 2016, the Russian portal and email service KM.RU was the target of an attack which was consequently detailed on Reddit. Allegedly protesting "the foreign policy of Russia in regards to Ukraine", KM.RU was one of several Russian sites in the breach and impacted almost 1.5M accounts including sensitive personal information.
primodominio
February 27, 2016
•[ hack, leak, technology ]
LulzSec Italia hacks primodominio.it and dumps 126,422 usernames and passwords.
Linux Mint
February 21, 2016
•[ hack, malware, technology ]
In February 2016, the website for the Linux distro known as Linux Mint was hacked and the ISO infected with a backdoor. The site also ran a phpBB forum which was subsequently put up for sale complete with almost 145k email addresses, passwords and other personal subscriber information.
Linux Mint Distribution
February 20, 2016
•[ hack, malware, technology ]
Clem Lefebvre, the creator of the Linux Mint Distribution reveals that an intrusion on the distribution's web site took place, in which hackers made a modified Linux Mint ISO, with a backdoor in it, and managed to hack the website to point to it.
Bohemia Interactive
February 19, 2016
•[ hack, technology ]
Bohemia Interactive announces a potential security breach of the Mantis Feedback Tracker systems, used to collect feedback and bug reports for the games Arma 3 and DayZ.
SkTorrent
February 19, 2016
•[ hack, misconfiguration, technology ]
In February 2016, the Slovak torrent tracking site SkTorrent was hacked and over 117k records leaked online. The data dump included usernames, email addresses and passwords stored in plain text.
bfsihiring
February 17, 2016
•[ hack, technology ]
Bravewanderer hacks bfsihiring.com and dumps 24,317 usernames and clear text passwords.
Difference Games
February 16, 2016
•[ hack, technology ]
Team Fursec hack differencegames.com and dump 16,589 usernames and hashed passwords.
Spotify
February 15, 2016
•[ hack, leak, technology ]
Hundreds of Spotify Premium account details are compromised and leaked online by an unknown hacker. A number of separate data dumps containing email addresses, passwords, account types and renewal dates appear online.
Xbox Live
February 15, 2016
•[ hack, ddos, technology ]
The New World Hackers crew takes down the Xbox Live Service.
Webafrica
February 12, 2016
•[ hack, technology ]
In name of #OpAfrica, Tobitow, a member of Team Hack Argentino and Anonymous Argentina, exploit a vulnerability in the Web hosting service of Webafrica and defaced 2,532 South African websites.