Facebook with Latestnigeriannews  Twieet with latestnigeriannews  RSS Page Feed
Home  |  All Headlines  |  Punch  |  Thisday  |  Daily Sun  |  Vanguard   |  Guardian  |  The Nation  |  Daily Times  |  Daily Trust  |  Daily Independent
World  |  Sports  |  Technology  |  Entertainment  |  Business  |  Politics  |  Tribune  |  Leadership  |  National Mirror  |  BusinessDay  |  More Channels...

Viewing Mode:

Archive:

  1.     Tool Tips    
  2.    Collapsible   
  3.    Collapsed     
Click to view all Entertainment headlines today

Click to view all Sports headlines today

Yahoo Downplays Its Billion-Password Security Breach In Emails To Users

Published by Huffington Post on Fri, 16 Dec 2016


Yahoo is emailing at least some of the 1 billion users whose account information was hackedin 2013. Thursdays email seems to imply that hackers didnt acquire users passwords. Thats misleading.Heres a portion of the email Yahoo sent users(emphasis ours):The stolen user account information may have included names, email addresses, telephone numbers, dates of birth, hashed passwords (using MD5) and, in some cases, encrypted or unencrypted security questions and answers. [...] The stolen information did not include passwords in clear text, payment card data, or bank account information.Lets break it down. First, hackers accessed at least a billion hashed passwords (which look like 286755fad04869ca523320acce0dc6a4); second, hackers did not access clear-text passwords (which look like password).Yahoos email refers to its web page, which says that passwords that have been hashedcant be reversed into the original plain text password.This statement is misleading. There are plenty of tools online that quickly convert a hashed password into a plain text password.I have to assume any guessable password was guessed quickly, says Jeffrey Goldberg, who works for the password-management company 1Password.Goldberg estimates the hackers could have calculated 800 million to 900 million Yahoo usernames and passwords within weeks of the breach.So why does Yahoo claim hashed passwords cant be reversed' Because its going with a very specific definition of reverse. For readers without math degrees, youre getting these two mixed messages, says Goldberg. For password-security experts, youknow exactly what this means.It means the attackers probably guessed most passwords very quickly.If Yahoo had salted userspasswords ' a technical process that prevents passwords from being discovered on certain websites ' then reversing them would take far longer. Goldberg assumes Yahoo didnt salt its passwords, because the companys email doesnt mention it.When asked Thursday, Yahoo refused to say whether it salted passwords in 2013. The company says it salts its passwordsnow, and it did when hackers stole 500 million users account information in 2014.The company is now disabling affected users accounts until they change their passwords.Goldberg suggests users go one step further: If the password you used on Yahoo is used on any other service, you should assume its compromised there as well.So ignore the top half of Yahoos email. Follow the instructions near the bottom:Change your passwords and security questions and answers for any other accounts on which you used the same or similar information used for your Yahoo account. -- This feed and its contents are the property of The Huffington Post, and use is subject to our terms. It may be used for personal consumption, but may not be distributed on a website.
Click here to read full news..

All Channels Nigerian Dailies: Punch  |  Vanguard   |  The Nation  |  Thisday  |  Daily Sun  |  Guardian  |  Daily Times  |  Daily Trust  |  Daily Independent  |   The Herald  |  Tribune  |  Leadership  |  National Mirror  |  BusinessDay  |  New Telegraph  |  Peoples Daily  |  Blueprint  |  Nigerian Pilot  |  Sahara Reporters  |  Premium Times  |  The Cable  |  PM News  |  APO Africa Newsroom

Categories Today: World  |  Sports  |  Technology  |  Entertainment  |  Business  |  Politics  |  Columns  |  All Headlines Today

Entertainment (Local): Linda Ikeji  |  Bella Naija  |  Tori  |  Daily News 24  |  Pulse  |  The NET  |  DailyPost  |  Information Nigeria  |  Gistlover  |  Lailas Blog  |  Miss Petite  |  Olufamous  |  Stella Dimoko Korkus Blog  |  Ynaija  |  All Entertainment News Today

Entertainment (World): TMZ  |  Daily Mail  |  Huffington Post

Sports: Goal  |  African Football  |  Bleacher Report  |  FTBpro  |  Kickoff  |  All Sports Headlines Today

Business & Finance: Nairametrics  |  Nigerian Tenders  |  Business Insider  |  Forbes  |  Entrepreneur  |  The Economist  |  BusinessTech  |  Financial Watch  |  BusinessDay  |  All Business News Headlines Today

Technology (Local): Techpoint  |  TechMoran  |  TechCity  |  Innovation Village  |  IT News Africa  |  Technology Times  |  Technext  |  Techcabal  |  All Technology News Headlines Today

Technology (World): Techcrunch  |  Techmeme  |  Slashdot  |  Wired  |  Hackers News  |  Engadget  |  Pocket Lint  |  The Verge

International Networks:   |  CNN  |  BBC  |  Al Jazeera  |  Yahoo

Forum:   |  Nairaland  |  Naij

Other Links: Home   |  Nigerian Jobs