Close Menu
5gantennas.org5gantennas.org
  • Home
  • 5G
    • 5G Technology
  • 6G
  • AI
  • Data
    • Global 5G
  • Internet
  • WIFI
  • 5G Antennas
  • Legacy

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

What's Hot

4 Best Wi-Fi Mesh Networking Systems in 2024

September 6, 2024

India is on the brink of a new revolution in telecommunications and can lead the world with 6G: Jyotiraditya Scindia

August 29, 2024

Speaker Pelosi slams California AI bill headed to Governor Newsom as ‘ignorant’

August 29, 2024
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
5gantennas.org5gantennas.org
  • Home
  • 5G
    1. 5G Technology
    2. View All

    Deutsche Telekom to operate 12,500 5G antennas over 3.6 GHz band

    August 28, 2024

    URCA Releases Draft “Roadmap” for 5G Rollout in the Bahamas – Eye Witness News

    August 23, 2024

    Smart Launches Smart ZTE Blade A75 5G » YugaTech

    August 22, 2024

    5G Drone Integration Denmark – DRONELIFE

    August 21, 2024

    Hughes praises successful private 5G demo for U.S. Navy

    August 29, 2024

    GSA survey reveals 5G FWA has become “mainstream”

    August 29, 2024

    China Mobile expands 5G Advanced, Chunghwa Telecom enters Europe

    August 29, 2024

    Ateme and ORS Boost 5G Broadcast Capacity with “World’s First Trial of IP-Based Statmux over 5G Broadcast” | TV Tech

    August 29, 2024
  • 6G

    India is on the brink of a new revolution in telecommunications and can lead the world with 6G: Jyotiraditya Scindia

    August 29, 2024

    Vodafonewatch Weekly: Rural 4G, Industrial 5G, 6G Patents | Weekly Briefing

    August 29, 2024

    Southeast Asia steps up efforts to build 6G standards

    August 29, 2024

    Energy efficiency as an inherent attribute of 6G networks

    August 29, 2024

    Finnish working group launches push for 6G technology

    August 28, 2024
  • AI

    Speaker Pelosi slams California AI bill headed to Governor Newsom as ‘ignorant’

    August 29, 2024

    Why Honeywell is betting big on Gen AI

    August 29, 2024

    Ethically questionable or creative genius? How artists are engaging with AI in their work | Art and Design

    August 29, 2024

    “Elon Musk and Trump” arrested for burglary in disturbing AI video

    August 29, 2024

    Nvidia CFO says ‘enterprise AI wave’ has begun and Fortune 100 companies are leading the way

    August 29, 2024
  • Data
    1. Global 5G
    2. View All

    Global 5G Enterprise Market is expected to be valued at USD 34.4 Billion by 2032

    August 12, 2024

    Counterpoint predicts 5G will dominate the smartphone market in early 2024

    August 5, 2024

    Qualcomm’s new chipsets will power affordable 5G smartphones

    July 31, 2024

    Best Super Fast Download Companies — TradingView

    July 31, 2024

    Crypto Markets Rise on Strong US Economic Data

    August 29, 2024

    Microsoft approves construction of third section of Mount Pleasant data center campus

    August 29, 2024

    China has invested $6.1 billion in state-run data center projects over two years, with the “East Data, West Computing” initiative aimed at capitalizing on the country’s untapped land.

    August 29, 2024

    What is the size of the clinical data analysis solutions market?

    August 29, 2024
  • Internet

    NATO believes Russia poses a threat to Western internet and GPS services

    August 29, 2024

    Mpeppe grows fast, building traction among Internet computer owners

    August 29, 2024

    Internet Computer Whale Buys Mpeppe (MPEPE) at 340x ROI

    August 29, 2024

    Long-term internet computer investor adds PEPE rival to holdings

    August 29, 2024

    Biden-Harris Administration Approves Initial Internet for All Proposals in Mississippi and South Dakota

    August 29, 2024
  • WIFI

    4 Best Wi-Fi Mesh Networking Systems in 2024

    September 6, 2024

    Best WiFi deal: Save $200 on the Starlink Standard Kit AX

    August 29, 2024

    Sonos Roam 2 review | Good Housekeeping UK

    August 29, 2024

    Popular WiFi extender that eliminates dead zones in your home costs just $12

    August 29, 2024

    North American WiFi 6 Mesh Router Market Size, Share, Forecast, [2030] – அக்னி செய்திகள்

    August 29, 2024
  • 5G Antennas

    Nokia and Claro bring 5G to Argentina

    August 27, 2024

    Nokia expands FWA portfolio with new 5G devices – SatNews

    July 25, 2024

    Deutsche Telekom to operate 12,150 5G antennas over 3.6 GHz band

    July 24, 2024

    Vodafone and Ericsson develop a compact 5G antenna in Germany

    July 12, 2024

    Vodafone and Ericsson unveil new small antennas to power Germany’s 5G network

    July 11, 2024
  • Legacy
5gantennas.org5gantennas.org
Home»Data»Only 134 million emails were leaked, company acknowledges incident
Data

Only 134 million emails were leaked, company acknowledges incident

5gantennas.orgBy 5gantennas.orgAugust 20, 2024No Comments8 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email


In August, hackers dumped 2.7 billion data records, including Social Security numbers, on a dark web forum, in one of the largest data breaches in history. The owner of the data, National Public Data Co., has now acknowledged the incident and blamed it on “third-party malicious actors” who hacked the company in December 2023.

The background check service acknowledged the breach in a statement posted on August 12. The company explained that it had taken “additional security measures” to prevent future incidents, but encouraged those affected to “take preventative measures” rather than offering any remedial measures.

Troy Hunt, a security expert and founder of the Have I Been Pwned breach checking service, investigated the leaked dataset and found that it contained just 134 million unique email addresses and 70 million rows from the U.S. criminal records database. The email addresses were not associated with SSNs.

Other records in the dataset include individuals’ names, mailing addresses and Social Security numbers, but some also contain other sensitive information, such as the names of relatives, according to Bloomberg.

How the data was stolen

The breach is linked to an April 8 incident, in which a known cybercrime group going by the name USDoD claimed to have access to the personal data of 2.9 billion people in the US, UK and Canada, and that it was selling the information for $3.5 million, according to a class action complaint. USDoD is believed to have obtained the database from another threat actor using the alias “SXUL.”

The data was allegedly stolen from National Public Data, also known as Jericho Pictures, and the perpetrators claimed it contained records of all individuals in the three countries. At the time, malware website VX-Underground said the data dump did not include information on people who use data opt-out services.

“Not everyone who used some kind of data opt-out service was in attendance,” the post on X read.

See also: Nearly 10 billion passwords leaked in biggest breach in history

Since then, many cybercriminals have posted various samples of this data, many of which were different entries and contained phone numbers and email addresses. However, earlier this month, a user named “Fenice” leaked 2.7 billion unencrypted records in the form of two csv files totaling 277 GB on a dark web site called “Breached.” These did not contain any phone numbers or email addresses, and Fenice said the data came from SXUL.

A screenshot of a forum entry on the dark website BreachedForums.
A user named “Fenice” leaked 2.7 billion unencrypted records in the form of two csv files totaling 277 GB on the dark web site “BreachedForums.” Source: BleepingComputer

A sister site of National Public Data may have provided an entry point.

According to an investigation by Krebs on Security, the hackers may have gained initial access to the national public data records via sister service RecordsCheck, another background check service.

Until August 19th, “recordscheck.net” hosted an archive called “members.zip” that contained source code for various components of the site, including the administrator, as well as plain text usernames and passwords. According to the archive, all users of the site were given the same six-character password by default, but many users never changed their passwords.

Moreover, recordscheck.net “looks similar to nationalpublicdata.com, even the login page is identical,” Krebs wrote. National Public Data founder Salvatore “Sal” Bellini later told Krebs that “members.zip” was “an older version of the site that contained non-working codes and passwords” and that RecordsCheck would cease operations “in the next week or so.”

Beyond the plaintext passwords, there’s other evidence that RecordsCheck provided an entry point into Verini’s assets. Krebs said RecordsCheck ran background checks on people by matching their records with a National Public Data database from a data broker called USInfoSearch.com. In November, it was revealed that a number of USInfoSearch accounts had been hacked and were being used by cybercriminals.

Must-Read Security Coverage

Not all of the 2.7 billion leaked records are accurate or unique, but some are.

Because each individual has multiple records associated with them, one for each previous address, this breach does not expose the information of 2.7 billion different people. Additionally, according to BleepingComputer, some affected individuals confirmed that the SSNs associated with their information in the data dump were incorrect.

BleepingComputer also found that some of the records did not list current addresses for individuals, suggesting that at least some of the information is out of date, but others confirmed that the data contained legitimate information for people and their families, including those who have passed away.

The class action complaint adds that National Public Data collects and profiles billions of people’s personally identifiable information from undisclosed sources, meaning those affected may not have knowingly provided their data. Anyone living in the United States is likely affected by this breach.

Several websites have been set up to allow individuals to check whether their information has been exposed in a national public data breach, including npdpentester.com and npdbreach.com.

Experts TechRepublic spoke to suggested that individuals affected by the breach should consider monitoring or freezing their credit reports and remain vigilant against phishing attacks targeting their emails and phone numbers.

Companies must ensure that all personal data they hold is encrypted and stored securely, and they should also implement other security measures such as multi-factor authentication, password managers, security audits, employee training, and threat detection tools.

See also: How to avoid data breaches

TechRepublic has reached out for answers to Florida-based National Public Data, which is currently under investigation by Schubert Jonckheer & Kolbe LLP.

Plaintiff Christopher Hoffman said he received notice from his identity theft protection service provider on July 24 that his personal information had been leaked and made public on the dark web as a direct result of the nationalpublicdata.com breach.

What security experts are saying about the breach

Why are national public data records so valuable to cybercriminals?

John Miller, CEO and co-founder of anti-ransomware platform Halcyon, said the value of a national public data record from a criminal’s perspective comes from the fact that it is collected and organized.

“Much of this information is already available to attackers, but it would have taken a lot of money and effort to collect similar data, so NPD has done them a favor by making it easier,” he said in an email to TechRepublic.

See also: How organizations can deal with data breaches

Oren Coren, CPO and co-founder of security platform Veriti, added that information about deceased individuals could be reused for malicious purposes. He wrote in an email to TechRepublic: “With this ‘starting point,’ an individual could try to create a birth certificate, voting certificate, etc., which would be valid because some of the necessary information would be there, most importantly the Social Security number.”

How can we stop data aggregators from being breached?

Paul Bischoff, a consumer privacy advocate at tech research firm Comparitech, told TechRepublic in an email, “Background check companies like National Public Data are essentially data brokers, collecting as much personally identifiable information as they can and selling it to anyone who will pay for it. They collect a lot of data without the data subjects’ knowledge or consent, and most people have no idea what National Public Data is or what it does.”

“Data brokers need stronger regulation and transparency. They should be required to notify data subjects when their information is added to their databases, limit web scraping, and allow data subjects to view, change, and delete their data.”

“National Public Data and other data brokers should be required to show data subjects the origin of their information so people can take proactive steps to protect their privacy at the source. Furthermore, any breached data cannot have been unencrypted.”

Miller added, “The monetization of our personal information, including the information we choose to make public, goes far beyond the legal protections that govern who can collect what, how it can be used, and most importantly, who is responsible for protecting it.”

Can businesses and individuals prevent themselves from becoming victims of a data breach?

Chris Deibler, vice president of security at security solutions provider DataGrail, said many of the cyber hygiene principles available to businesses and individuals would not have been of much use in this case.

“In this environment, we are reaching the limits of what individuals can reasonably do to protect themselves, and real solutions will need to come at the corporate and regulatory levels, including standardizing data privacy regulations through international treaties,” he told TechRepublic in an email.

“The current balance of power is not in favor of the individual. While the GDPR and the various state and national regulations enacted online are good steps, it is clear that the prevention and consequence model currently in place will not stop the mass aggregation of data.”



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticlePakistan’s internet tampering attempts cause economic turmoil – The Diplomat
Next Article Tecno’s foldable smartphone journey: Design evolution from Phantom V Fold 5G to V Fold 2, V Flip 5G to V Flip 2
5gantennas.org
  • Website

Related Posts

Crypto Markets Rise on Strong US Economic Data

August 29, 2024

Microsoft approves construction of third section of Mount Pleasant data center campus

August 29, 2024

China has invested $6.1 billion in state-run data center projects over two years, with the “East Data, West Computing” initiative aimed at capitalizing on the country’s untapped land.

August 29, 2024

Comments are closed.

Latest Posts

4 Best Wi-Fi Mesh Networking Systems in 2024

September 6, 2024

India is on the brink of a new revolution in telecommunications and can lead the world with 6G: Jyotiraditya Scindia

August 29, 2024

Speaker Pelosi slams California AI bill headed to Governor Newsom as ‘ignorant’

August 29, 2024

Crypto Markets Rise on Strong US Economic Data

August 29, 2024
Don't Miss

Business News | Communications Minister Scindia promotes 6G leadership and nationwide broadband in meeting with telecom operators

By 5gantennas.orgAugust 24, 2024

New Delhi [India]August 24 (ANI): Union Telecom Minister Jyotiraditya Scindia along with Minister of State…

SingTel and SK Telecom prepare for the 6G future

July 8, 2024

Apple focuses on 6G for future iPhones

December 11, 2023

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to 5GAntennas.org, your reliable source for comprehensive information on 5G technology, artificial intelligence (AI), and data-related advancements. We are passionate about staying at the forefront of these cutting-edge fields and bringing you the latest insights, trends, and developments.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

4 Best Wi-Fi Mesh Networking Systems in 2024

September 6, 2024

India is on the brink of a new revolution in telecommunications and can lead the world with 6G: Jyotiraditya Scindia

August 29, 2024

Speaker Pelosi slams California AI bill headed to Governor Newsom as ‘ignorant’

August 29, 2024
Most Popular

Will 5G make 2024 the most connected year in the industry?

December 1, 2023

The current state of 5G in the US and how it can improve

September 28, 2023

How 5G technology will transform gaming on the go

January 31, 2024
© 2025 5gantennas. Designed by 5gantennas.
  • Home
  • About us
  • Contact us
  • DMCA
  • Privacy Policy
  • About Creator

Type above and press Enter to search. Press Esc to cancel.