Data Storage Today

CIO Today Network Sites:   Top Tech News  |   CIO Today   |   Mobile Tech Today   |   Data Storage Today
News & Information for Data Storage Professionals
Commvault Simpana® 10
Protect, manage, access, and
realize the untapped value of data.

www.commvault.com
Tuesday, June 18th 
Panasonic Toughbook® mobile computers
Home
Data Centers
Storage Solutions
Storage Networks
Data Storage Issues
Data Security
Enterprise I.T.
DST Press Releases
 
Free Newsletters
Top CIO News
 
Mobile Tech Today
 

Advertisement

Data Security

400,000+ Users' Data Exposed at Yahoo Voices

400,000+ Users
July 12, 2012 10:57AM

Bookmark and Share
Yahoo confirmed the breach at Yahoo Voices, which occurred on July 11 from what it called an "older file" on the Yahoo Contributor Network, and apologized to its users. Yahoo Voices allows users to post their own text, photos and video as stories for others to see. The company said less than 5 percent of the posted Yahoo Voices passwords were valid.

CommVault is a data and information management software company dedicated to providing organizations worldwide with a radically better way to manage data and information. Their unique Solving Forward philosophy allows them to deliver complete solutions with infinite scalability and unprecedented control over data and costs. Be among the first to experience Simpana 10 software. Click here now.

Yahoo Voices has been hacked. More than 400,000 accounts have been exposed, according to TrustedSec. The firm reports that clear-text passwords were posted online.

"The most alarming part to the entire story was the fact that the passwords were stored completely unencrypted and the full 400,000-plus usernames and passwords are now public," the firm said. "The method for the compromise was apparently an SQL Injection attack to extract the sensitive information from the database."

A hacker group named D33DS Company posted the e-mails and passwords online. Security firm Sophos said in a company blog post that it hoped the parties responsible for managing the security of the subdomain would take it as a wake-up call rather than a threat.

Yahoo Apologizes

Yahoo confirmed the breach, which occurred on July 11 from what it called an "older file" on the Yahoo Contributor Network, and apologized to its consumers. Yahoo Voices allows users to post their own text, photos and video as stories for others to see.

"Of these, less than 5 percent of the Yahoo! accounts had valid passwords," Yahoo said in a published statement. "We are fixing the vulnerability that led to the disclosure of this data Relevant Products/Services, changing the passwords of the affected Yahoo! users and notifying the companies whose users accounts may have been compromised."

Social Breaches

We caught up with Anna Branding, a security analyst for Sophos, to get her take on the Yahoo breach. Sophos has reported several similar breaches over the past few weeks, including at Last.fm, LinkedIn and eHarmony.

"It's really about the bad guys targeting sites and services which are commonly used," Branding told us. "Hackers follow people, so by their very nature social applications are prime targets. There's little point in targeting services with very few users."

What can Yahoo and the rest learn about security in the wake of these breaches -- or, perhaps more pointed, what should they learn? Branding said you can never be sure something is 100 percent secure Relevant Products/Services, with hackers constantly finding new ways to access information.

"Organizations must ensure their systems and software Relevant Products/Services are as secure as possible by encrypting the data stored on them -- so even if an attacker manages to gain access, the data they steal will be of little use to them," Branding said. "We're not talking just the obvious data such as usernames, passwords and credit card details, even innocuous information such as e-mail addresses should be stored securely."

Branding said security should be a consideration from Day One of a project. Attempting to retrospectively secure a poorly designed application or system is always going to be more difficult. In some of these cases, she said, the organizations affected have been slower to react than one would hope. Anyone can become a victim of an attack, she concluded, but it's important to inform customers as soon as possible so they take action.

Password Protection

We asked Fred Touchette, senior security analyst at AppRiver, how consumers can protect Relevant Products/Services themselves. He told us the first step is to create a strong password.

"Even though it's nearly impossible to make anything 100 percent secure," Touchette said, "by utilizing multi-layered security practices, beginning with your password, you will make it much harder for anyone to get a hold of your private data and information."

Tell Us What You Think
Comment:

Name:

Advertisement



 Data Security
1. Yahoo, Apple Disclose Data Requests
2. Prism's Secret: Bigger Data Seizure
3. MS, Facebook Tell of Security Requests
4. Study: Gap in Cloud Perception, Reality
5. Coalition To Thwart Phone Thefts


advertisement


 Most Popular Articles
1. New Nvidia Chip Boosts Citrix Graphics for Remote Workers
2. Verizon Enters Cloud Storage Wars with a Wisp
3. Dell Kills Its Public Cloud Effort, Will Offer Partner Marketplace
4. Blue Coat Beefs Up Big Data Security with Solera Buy
5. Security Alert: Beware of Tiffany Trojan on the Attack


advertisement

Have an informed opinion on this story?
Send a Letter to the Editor.
We want to know what you think.
Send us your Feedback.

 Related Topics  Latest News & Special Reports

  Yahoo, Apple Disclose Data Requests
  Prism's Secret: Bigger Data Seizure
  Samsung Offers Tiny, Superfast SSDs
  MS, Facebook Tell of Security Requests
  New Facebook Servers All Home Grown

 Technology Marketplace
BYOD & MDM
Forrester Research Inc., Report: BYOD from AT&T. Make everyone more efficient.
 
Cloud & Virtualization
Brocade technologies help enable the full benefits of virtualization.
 
Contact Centers
Unlock the potential in your people with Microsoft Dynamics
Improve your customer relationships with Microsoft Dynamics
 
Customer Service
Unlock the potential in your people with Microsoft Dynamics
Improve your customer relationships with Microsoft Dynamics
 
Data Security
Simpana® 10 software: an exponential leap forward
 
Data Storage
Brocade makes it easier to deploy, manage, and scale networks.
 
Enterprise Hardware
Panasonic Toughbook® mobile computers are built to keep you running.
 
Enterprise Software
Simpana® 10 software: an exponential leap forward
 
Hardware
The best document scanner for you? Try KODAK's scanner selector
 
Innovation
The best document scanner for you? Try KODAK's scanner selector
 
Laptops & Tablets
Panasonic Toughbook® mobile computers are built to keep you running.
 
Network Security
Brocade makes it easier to deploy, manage, and scale networks.
 
Enterprise Hardware Spotlight

Samsung Offers Tiny, Superfast PCIe SSDs for Ultrabooks
Solid-state drives are continuing their march forward. On Monday, Samsung Electronics announced it has started to mass produce the first PCI-Express 3.0 SSDs for the new wave of Ultrabooks.

Amazon.com Joins 3D Printer Craze, Enabling Wide Availability
Commercially available 3D printers have recently moved from being expensive hobbyist devices to being pricey but accessible consumer and manufacturing machines. And now, Amazon.com will sell 3D printers & supplies online.

New Facebook Data Center Uses All Home-Grown Servers
Facebook has opened its new data center in Lulea, Sweden. The data center is a first in two ways: the first in Europe and the first to be equipped with all Facebook-designed, Open Compute servers.

Advertisement
Navigation
Data Storage Today
Home/Top News | Data Centers | Storage Solutions | Storage Networks | Data Storage Issues | Data Security | Enterprise I.T.
DST Press Releases
Also visit these Enterprise Technology Sites
Top Tech News | CIO Today | Mobile Tech Today | Data Storage Today

Services:
FreeNewsFeed | Free Newsletters | XML/RSS Feed

About CIO Today Network | How To Contact Us | Article Reprints | Services for PR Pros (In partnership with NewsFactor) | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2013 Data Storage Today. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.