UPDATED 17:33 EDT / JUNE 14 2016

NEWS

1k websites suffer data breaches thanks to VerticalScope hack

A group of hackers has struck at multiple websites, stealing the personal data of over 45 million people. While over 1,000 websites have been compromised in this hacking spree, common targets include car, sports, and tech sites, and all of them were run on a VerticalScope platform.

VerticalScope Inc., a Canadian company that owns and operates online communities and content portals, was breached some time back in February 2016. The hackers responsible are unknown, as are the methods used, but LeakedSource believes that the breach is so large due to VerticalScope storing all of the data on interconnected servers, or even the same server.

The stolen information includes email addresses, usernames, IP addresses, and one or more passwords per person, and was taken from over 1100 websites. VerticalScope believes that the breach is limited to that information, so no financial information was lost, nor was any personal information that could be used for a data breach.

However, Motherboard reports that about 74 percent of the stolen passwords are easy to crack, due to the weak MD5 algorithm’s use in hashing and encoding them. As always, investigation of the stolen passwords reveals a shockingly high usage of weak and easily guessed passwords, including the ever-popular “123456,” “password,” and “qwerty.”

If your password was compromised in this breach (or if you use any of those weak passwords on any site at all) you should change your password immediately. As with any data breach, be sure to change any identical or similar passwords used on any other site, as repeating a password means that once one is stolen, all of them are.

VerticalScope has responded to the incident, and is currently investigating and gathering data for law enforcement. The company is reviewing its security policies and putting security changes into play, particularly regarding password strength and expiration policies, although as its poor processes and protection did make it easier for the hackers to steal as much information as they did, it’s a lesson learned all too late.

Image by Sir Mildred Pierce

A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.
About SiliconANGLE Media
SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.