CLOUDBLEED Data Leak: Change Your Passwords TodaysteemCreated with Sketch.

in cloudbleed •  8 years ago  (edited)

cloudbleed.jpg

Let me be clear, this data leak called Cloudbleed does not impact your Steemit keys, as far as I know.

Today I woke up in a bit of a panic after checking my emails.

I got a message from Google telling me that someone is attempting to recover one of my email accounts. Obviously, this was not me. I’ve gotten emails like this before but every time it happens, I become alarmed realizing that someone is trying get access to my account. After checking the security log within my accounts to make sure I have not been hacked, I changed my passwords.

As I was scanning Twitter this morning shortly after my scare, I found out about the Cloudbleed data leak that could have potentially spread people’s passwords and other sensitive personal data around the internet.

Cloudflare is a company that helps optimize the security and performance of 5.5 million websites. It had a bug in the source code that exposed personal information on the internet. Some well-known websites that use Cloudflare are Uber, FitBit and OkCupid and Discord. And the people at Discord are telling you to change your passwords to Medium, Patreon and Reddit also, to be on the safe side.

discord.jpeg
-Discord

Here are some important details to know:

Cloudflare helps optimize the security and performance of over 5.5 million websites. User data from 3,400 websites has been leaked and cached by search engines thanks to a bug in Cloudflare. The leaked data includes usernames, passwords, cookies, authentication tokens, API keys, and others. Among several other popular services, 1Password was also affected by this bug. However, thanks to end-to-end encryption, no customer data was exposed of 1Password users.

“While Cloudflare’s service was rapidly patched to eliminate this bug, data was leaking constantly before this point – for months. Some of this data was cached publicly in search engines such as Google, and is being removed. Other data might exist in other caches and services throughout the Internet.”

-Source: http://wccftech.com/cloudbleed-cloudflare-bug-exposes-user-details/

hacker-1872291_1280.jpg

According to the reports, Cloudflare acknowledged that the leak was severe but is currently downplaying its impact.

The CTO of Cloudflare is saying that people don’t need to do anything in response to the leak, but security experts have a different suggestion: change your passwords.

If you want to read more technical information about Cloudbleed, go here to Cloudflare’s official blog: https://blog.cloudflare.com/incident-report-on-memory-leak-caused-by-cloudflare-parser-bug/

Authors get paid when people like you upvote their post.
If you enjoyed what you read here, create your account today and start earning FREE STEEM!
Sort Order:  

4 of my bank accounts were compromised , approx 560 USD charged ( 6 transactions in total ) by some company called hashcoin or so past week. I had to block all accounts and order new cards. I had the same suspicious emails like you coming in the week before. Not sure if this is related .

jeez......another weird thing happened too.....my father's facebook account seems to have been made unavailable right now...

something very fishy is going on it seems

Really - but are bank accounts linked to cloud bleed? @mammasitta

I use Gmail mail service. I used to cross-check the phone number. You should not download files received unknown

I use two step security for my google account.

Me too :)

yeah, most people do....the phone number linking is what is most vulnerable..

so they stored the passwords in clear? in 2017?!!!

Microsloth still does.

I really dislike Microsoft....but they bought out Minecraft, which really sucks!

Yes, that news was very sad.

But, it is only the latest in the Microsloth buyouts of anything that may compete with them. Buy it out or kill it, that is their motto.

Linkedin is going downhill too now that Microsloth owns it!!!

Safety Jim is crazy creepy! 😱

Thanks for bringing this to our attention, I didn't realise it could affect different account indirectly. 👍

He's Skeevy Jim when at the Gym. I've seen him scoping the girls, lol

no problem.

This is one reason for using 2 factor everywhere that offers it. This was a tiny bug that caused a big problem. Make sure you have a different password on every site. I use Lastpass to manage mine.

This post has been ranked within the top 25 most undervalued posts in the second half of Feb 24. We estimate that this post is undervalued by $12.00 as compared to a scenario in which every voter had an equal say.

See the full rankings and details in The Daily Tribune: Feb 24 - Part II. You can also read about some of our methodology, data analysis and technical details in our initial post.

If you are the author and would prefer not to receive these comments, simply reply "Stop" to this comment.