Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

agnos.is Forums

  1. Home
  2. Technology
  3. Have I Been Pwned adds 284M accounts stolen by infostealer malware

Have I Been Pwned adds 284M accounts stolen by infostealer malware

Scheduled Pinned Locked Moved Technology
technology
31 Posts 23 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • C [email protected]

    Use the 'Notify me' option and verify your email address, and then it will show the expanded list of domains that were exposed from the malware:

    B This user is from outside of this forum
    B This user is from outside of this forum
    [email protected]
    wrote on last edited by
    #22

    Mine just said it was found, but no domains were associated. So... Yea. I don't know what it has, and the inability to query it for more information sucks.

    B 1 Reply Last reply
    0
    • captainautism@lemmy.dbzer0.comC [email protected]
      This post did not contain any content.
      Q This user is from outside of this forum
      Q This user is from outside of this forum
      [email protected]
      wrote on last edited by
      #23

      Just checked my emails and both were pwned. Bummer

      1 Reply Last reply
      0
      • M [email protected]

        For stealerlogs yes, it means malware was on your system, and exfiltrated data, typically from your browsers.

        P This user is from outside of this forum
        P This user is from outside of this forum
        [email protected]
        wrote on last edited by
        #24

        I don't think that's guaranteed to be true.

        A very old email of mine which I haven't used in many years was in the breach.
        None of my other email addresses were in there, so it's highly unlikely that I was affected by this malware in the last decade.
        That email has been in many other breaches however, so I wouldn't be surprised if somebody who had access to an old dump was infected.
        My money's on some random skid who downloaded an old database dump and got infected when they downloaded some bad warez.

        Either that, or this includes credentials from people who had the malware 15+ years ago.

        M 1 Reply Last reply
        0
        • B [email protected]

          Mine just said it was found, but no domains were associated. So... Yea. I don't know what it has, and the inability to query it for more information sucks.

          B This user is from outside of this forum
          B This user is from outside of this forum
          [email protected]
          wrote on last edited by
          #25

          You're not alone. I'm on the list, but no domain data and I don't have the 'stealer log entries' available.

          1 Reply Last reply
          0
          • simple@lemm.eeS [email protected]

            Finally, a data breach that doesn't include me. Good to know I dodged it.

            C This user is from outside of this forum
            C This user is from outside of this forum
            [email protected]
            wrote on last edited by
            #26

            Its the opposite for me, first time I actually got caught in one.

            1 Reply Last reply
            0
            • J [email protected]

              I don't understand how to find out which specific sites had my data leaked. Without that I can't take any action.
              I'm subscribed to email alerts but the alert did not include any details like the article said it would.

              illecors@lemmy.cafeI This user is from outside of this forum
              illecors@lemmy.cafeI This user is from outside of this forum
              [email protected]
              wrote on last edited by
              #27

              Rent a domain
              Set up email
              Use a unique address for every website

              I usually pick the domain of the website as the username part.

              So if, say, I have email set up on lemmy.cafe and want to sign up to flatearth.com - I'd probably use flatearth.com@lemmy.cafe for an email address. If they ever leak it - I'll be reveiving spam sent to this address.

              In the six years of hosting my own email I've only had one such occurence when namecheap got breached. It was nice being able to tell where the culprit was!

              1 Reply Last reply
              0
              • C [email protected]

                Use the 'Notify me' option and verify your email address, and then it will show the expanded list of domains that were exposed from the malware:

                J This user is from outside of this forum
                J This user is from outside of this forum
                [email protected]
                wrote on last edited by
                #28

                Thanks, I finally found it. I was already subscribed and verified, but still couldn't find this anywhere. To get to it I had to:

                • Signup again from the HIBP website
                • Get the verification email telling me I was already verified
                • Click through it
                • Scroll to the VERY bottom of the page and find the stealer logs.

                My natural question is of course how my credentials were stolen logging into gmail.com (yay 2-factor), but at least know I know that's where I need to change my password.

                1 Reply Last reply
                0
                • P [email protected]

                  I don't think that's guaranteed to be true.

                  A very old email of mine which I haven't used in many years was in the breach.
                  None of my other email addresses were in there, so it's highly unlikely that I was affected by this malware in the last decade.
                  That email has been in many other breaches however, so I wouldn't be surprised if somebody who had access to an old dump was infected.
                  My money's on some random skid who downloaded an old database dump and got infected when they downloaded some bad warez.

                  Either that, or this includes credentials from people who had the malware 15+ years ago.

                  M This user is from outside of this forum
                  M This user is from outside of this forum
                  [email protected]
                  wrote on last edited by
                  #29

                  Then they must have tried your password and saved it to one of a specific number of places. Infostealers are by definition a class of malware, which means it's got to be installed somewhere with access to the directory storing the credential.

                  Or it was from an old computer, or mislabeled.

                  https://www.youtube.com/watch?v=L3f9do5mtT8

                  Here's a good talk on infostealers for anyone curious.

                  1 Reply Last reply
                  0
                  • J [email protected]

                    I don't understand how to find out which specific sites had my data leaked. Without that I can't take any action.
                    I'm subscribed to email alerts but the alert did not include any details like the article said it would.

                    B This user is from outside of this forum
                    B This user is from outside of this forum
                    [email protected]
                    wrote on last edited by
                    #30

                    As another poster detailed, this is not a company that exposed your info: these credentials are all from stealer logs, which are logs of credentials stolen by keyloggers installed on machines. If your credentials were in this report, it means that you've entered that username and password on a machine with malware on it. Could be your personal machine, or it could be some other computer you've used.

                    J 1 Reply Last reply
                    0
                    • B [email protected]

                      As another poster detailed, this is not a company that exposed your info: these credentials are all from stealer logs, which are logs of credentials stolen by keyloggers installed on machines. If your credentials were in this report, it means that you've entered that username and password on a machine with malware on it. Could be your personal machine, or it could be some other computer you've used.

                      J This user is from outside of this forum
                      J This user is from outside of this forum
                      [email protected]
                      wrote on last edited by
                      #31

                      That's true. My point was just that the important thing here is knowing personally which domains were affected so one can personally change those sets of credentials. If I don't know which of my credentials leaked then there's no value to me.

                      I was able to finally get access and did change the specific credential that had leaked (again, not assigning blame to any specific site here).

                      1 Reply Last reply
                      0
                      • System shared this topic on
                      Reply
                      • Reply as topic
                      Log in to reply
                      • Oldest to Newest
                      • Newest to Oldest
                      • Most Votes


                      • Login

                      • Login or register to search.
                      • First post
                        Last post
                      0
                      • Categories
                      • Recent
                      • Tags
                      • Popular
                      • World
                      • Users
                      • Groups