新足迹

 找回密码
 注册

精华好帖回顾

· 复活节出游踏秋@Victoria Alps纪实( COMPLETED!!!) (2013-4-2) pangpang · 【PowerMao指路】墨尔本精华游指南 (2006-7-27) powermao
· 参加征文活动: 我曾经的一份工作,网店小二,大结局填坑完毕 (2009-9-29) Mylittlelover · 庆祝新足迹一周年生日快乐!小豹子dorin倾情演唱祝兴《你最珍贵》 (2009-1-13) dorin
Advertisement
Advertisement
查看: 1439|回复: 6

650万LinkedIn用户密码泄露 [复制链接]

2010年度奖章获得者

发表于 2012-6-7 11:36 |显示全部楼层
此文章由 JuJu 原创或转贴,不代表本站立场和观点,版权归 oursteps.com.au 和作者 JuJu 所有!转贴必须注明作者、出处和本声明,并保持内容完整
http://www.itnews.com.au/News/303935,linkedin-hit-by-65m-password-leak.aspx

评分

参与人数 1积分 +2 收起 理由
ccqm + 2 感谢分享

查看全部评分

Advertisement
Advertisement

2010年度奖章获得者

发表于 2012-6-7 11:37 |显示全部楼层
此文章由 JuJu 原创或转贴,不代表本站立场和观点,版权归 oursteps.com.au 和作者 JuJu 所有!转贴必须注明作者、出处和本声明,并保持内容完整
Users warned of phishing attempts.
Social networking site LinkedIn has confirmed claims of a breach to user accounts on the social network after a file containing almost 6.5 million passwords for the site was leaked to a Russian internet forum.

After initially investigating reports of the breach at about 11pm AEST, LinkedIn director Vincente Silveira confirmed that "some of the passwords that were compromised correspond to LinkedIn accounts".

Some users reported finding their password as hashes on the leaked list, a 118 MB ZIP file posted online sometime overnight.

BBC News reported that the alleged hackers were seeking help to decrypt the password file.

Silveira said affected users would be prompted to change their passwords when they next logged into the social network and would receive further information on the issue in near future.

"It is worth noting that the affected members who update their passwords and members whose passwords have not been compromised benefit from the enhanced security we just recently put in place," Silveira said.

The enhanced security, he said, included hashing and salting of password databases, a measure security researchers said was not available on the passwords leaked overnight.

Both Silveira and F-Secure's Mikko Hypponen warned users to "prepare for scam emails about Linkedin password changes, linking to phishing sites".

iOS security

The breach comes less than a day after researchers discovered poor security practices in LinkedIn’s iOS app, which appeared to send detailed calender entries entered by users – including times, addresses and personal meeting notes – to its servers without encryption.

Adi Sharabani and Yair Amit said transmission of the calendar entries took place without prompting or warning users.

LinkedIn denied the notion of information being transmitted without user approval.

"In order to provide our calendar service to those who choose to use it, we need to send information about your calendar events to our servers so we can match people with LinkedIn profiles," mobile product head Joff Redfern said.

"That information is sent securely over SSL and we never share or store your calendar information."

The social network committed to stop sending data from user-added meeting notes in the iOS app to LinkedIn servers, Redfern said.

LinkedIn reports some 150 million users currently.

Copyright © iTnews.com.au . All rights reserved.

发表于 2012-6-7 11:55 |显示全部楼层
此文章由 ECILA 原创或转贴,不代表本站立场和观点,版权归 oursteps.com.au 和作者 ECILA 所有!转贴必须注明作者、出处和本声明,并保持内容完整
LINKIN的网站已经上不去了

发表于 2012-6-7 12:47 |显示全部楼层
此文章由 夜游神 原创或转贴,不代表本站立场和观点,版权归 oursteps.com.au 和作者 夜游神 所有!转贴必须注明作者、出处和本声明,并保持内容完整
离关门大吉不远了 这些大妈们每次都要搞到这种地步才会开始考虑花钱搞security相关的投资 可惜都晚了~~~

特殊贡献奖章

发表于 2012-6-7 15:46 |显示全部楼层
此文章由 kr2000 原创或转贴,不代表本站立场和观点,版权归 oursteps.com.au 和作者 kr2000 所有!转贴必须注明作者、出处和本声明,并保持内容完整
破解密码的成本还是很大的,估计不会有大规模的帐号丢失
不过这个新闻对linkedin是真的非常不幸

发表于 2012-6-7 21:36 |显示全部楼层
此文章由 ericlgq 原创或转贴,不代表本站立场和观点,版权归 oursteps.com.au 和作者 ericlgq 所有!转贴必须注明作者、出处和本声明,并保持内容完整
哇靠,我说怎么LINKED IN给我发邮件要求我重设密码。。。
Advertisement
Advertisement

发表于 2012-6-7 21:45 |显示全部楼层
此文章由 ccqm 原创或转贴,不代表本站立场和观点,版权归 oursteps.com.au 和作者 ccqm 所有!转贴必须注明作者、出处和本声明,并保持内容完整
1.5亿用户,4.3%的泄漏。。。。。。

发表回复

您需要登录后才可以回帖 登录 | 注册

本版积分规则

Advertisement
Advertisement
返回顶部