Cybersecurity researchers are calling it the largest password compilation leak of all time.
On July 4, a newly registered user on a popular hacking forum posted a file containing nearly 10 billion compromised passwords in plaintext. The post was first noticed by researchers at Cybernews.
"Xmas came early this year," user "ObamaCare" wrote on the forum. "I present to you a new rockyou2024 password list with over 9.9 billion passwords!"
This gigantic list of leaked passwords known as RockYou2024 provides hackers with an important tool that can be utilized in a brute force attack.
A brute force attack is a popular hacking method where the attacker guesses a user's password by trial-and-error. Hackers commonly use automated scripts when carrying out a brute force attack, which enables them to try out a slew of passwords within a short period of time. With a leaked password database this big, hackers have a nearly unlimited pool of passwords to try out.
“In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world," writes Cybernews' researchers. "Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks."
As Cybernews researchers point out, this list may very well be the largest password leak ever, beating the previous record holder known as RockYou2021, which had around 8.4 billion passwords.
In fact, the hacker forum user "ObamaCare" claims they used that older list and updated it with newer password leak data from over the past three years. As a result, 1.5 billion more passwords have been added to the previous compilation to create RockYou2024.
"I updated rockyou21 with collected new data from recent leaked databases in various forums over this and last years," wrote the hacker forum user while adding that they also included recent compromised passwords that they recently obtained themself.
The RockYou2024 leaked password list is new, so at the time of this writing, it's unclear if any private data has been compromised as a direct result of this compilation.
Anyone signed up to any service online should assume that a password that they use is on this list. Cybersecurity researchers recommend that users update their passwords and enable multi-factor authentication wherever possible.
Copyright © 2023 Powered by
This is likely the biggest password leak ever: nearly 10 billion credentials exposed-请自隗始网
sitemap
文章
64
浏览
4
获赞
7892
Mazda's electric MX
Mazda's MX-30 electric crossover — the company's first-ever electric car — is an odd beaDesktop vs. Laptop Gaming with the RTX 2070
Since the launch of Nvidia's RTX GPUs we've been intrigued about the performance difference betweenWebb telescope peers into our galaxy's outskirts, sees stunning scene
The far outskirts of our galaxy are teeming with activity.Astronomers pointed the powerful James WebHow Much Does It Cost to Make a Video Game?
You pay $60 for many of the new games you play, but how much does a blockbuster game cost to make? AICE drops policy banning international students from online study
International students, and the universities where they study, can breathe a little easier.ICE and tBest Custom PC Deal: MAINGEAR RUSH Night Drive Artist Series PC
BEST AMD CUSTOM PC: As of April 16, MAINGEAR’s RUSH Night Drive Artist Series PC is availableTeens prefer iPhones and Instagram to Androids and Snapchat
If you have a teen in your life, this might not come as a shock. A newsurvey from the investment ban4chan down, reportedly hacked as of April 15
4chan, the controversial imageboard where users can anonymously post anything and everything, is expNancy Pelosi steals the show and rips up Trump's State of the Union speech
Speaker of the House Nancy Pelosi made her feelings clear at the conclusion of President Trump's StaBlasts From the Past: TechSpot Staff's Favorite Tech of the Last Decade
In the world of tech, change is constant. R&D relentlessly pushes the limits of size, performancMicrosoft/Minecraft: How much did Redmond overpay?
Earlier this week it was confirmed that Microsoft is acquiring Minecraft maker Mojang for $2.5 billiNASA spacecraft snaps photo of huge volcano forming on distant world
The most volcanic world in our solar system has sprouted a new volcano. And its lava flows are enormSignal tried to run a very honest ad campaign on Instagram. Facebook said no.
Privacy-oriented messaging app Signal tried to run a very candid ad campaign on Facebook-owned InstaBest MacBook Air M4 deal: We found a new record
SAVE $60:Amazon and B&H Photo have the 15-inch Apple MacBook Air (M4)on sale for just $1,139 asJack Dorsey, Elon Musk call to delete IP laws as artists resist
As artists fight to protect their works from being used to train AI models, Jack Dorsey wants to eli