You can save this article by registering for free here. Or sign-in if you have an account.
Cybersecurity firms are built like a pyramid with tier 1 positions forming a wide base, typically young people who have completed a two-year college degree, university co-op placements or internships in high school during the summer months.Photo by iStock /GETTY IMAGES
Article content
Cybersecurity researchers have unearthed what they are describing as the “mother of all breaches,” including more than 16 billion individual records.
Advertisement 2
Story continues below
This advertisement has not loaded yet, but your article continues below.
THIS CONTENT IS RESERVED FOR SUBSCRIBERS ONLY
Subscribe now to read the latest news in your city and across Canada.
Unlimited online access to articles from across Canada with one account.
Get exclusive access to the Toronto Sun ePaper, an electronic replica of the print edition that you can share, download and comment on.
Enjoy insights and behind-the-scenes analysis from our award-winning journalists.
Support local journalists and the next generation of journalists.
Daily puzzles including the New York Times Crossword.
SUBSCRIBE TO UNLOCK MORE ARTICLES
Subscribe now to read the latest news in your city and across Canada.
Unlimited online access to articles from across Canada with one account.
Get exclusive access to the Toronto Sun ePaper, an electronic replica of the print edition that you can share, download and comment on.
Enjoy insights and behind-the-scenes analysis from our award-winning journalists.
Support local journalists and the next generation of journalists.
Daily puzzles including the New York Times Crossword.
REGISTER / SIGN IN TO UNLOCK MORE ARTICLES
Create an account or sign in to continue with your reading experience.
Access articles from across Canada with one account.
Share your thoughts and join the conversation in the comments.
Enjoy additional articles per month.
Get email updates from your favourite authors.
THIS ARTICLE IS FREE TO READ REGISTER TO UNLOCK.
Create an account or sign in to continue with your reading experience.
Access articles from across Canada with one account
Share your thoughts and join the conversation in the comments
A collection of 30 databases was reportedly discovered, including passwords, for government accounts, Apple, Google, Facebook, Telegram and more websites.
Some databases had vague names such as ‘logins’ or credentials,’ making it difficult for the team to establish exactly what they contained.
However, others offered clues about where the data came from.
According to the researchers, the records were most likely compiled by cybercriminals using various infostealing malware. They noted, however, that some data may also have been collected by so-called ‘white hat’ hackers.
Cybernews, which found the records, said the information was only briefly available to the wider internet before being locked down, but it is not possible to determine who owned the databases.
Your Midday Sun
Your noon-hour look at what's happening in Toronto and beyond.
By signing up you consent to receive the above newsletter from Postmedia Network Inc.
Thanks for signing up!
A welcome email is on its way. If you don't see it, please check your junk folder.
The next issue of Your Midday Sun will soon be in your inbox.
We encountered an issue signing you up. Please try again
Article content
Advertisement 3
Story continues below
This advertisement has not loaded yet, but your article continues below.
Article content
More than 5.5 billion people worldwide use the internet. As such, researchers warned that a staggering number of people likely had at least some of their accounts compromised.
Users across the globe are being urged to change their passwords immediately to protect their data from falling into the hands of cybercriminals.
“The inclusion of both old and recent infostealer logs makes this data particularly dangerous for organizations lacking multi-factor authentication or credential hygiene practices,” the researchers said, per the U.K. Daily Mail.
Cybernews said its researchers identified a database of 184 million records that was previously uncovered in May, found by data breach hunter and security researcher Jeremiah Fowler.
Advertisement 4
Story continues below
This advertisement has not loaded yet, but your article continues below.
Article content
“It barely scratches the top 20 of what the team discovered,’ Cybernews said. “Most worryingly, researchers claim new massive datasets emerge every few weeks, signaling how prevalent infostealer malware truly is.”
The database of 184 million records contained secure login data for millions of private citizens but also had stolen account information connected to multiple governments around the world.
While looking at a sample of 10,000 of these stolen accounts, Fowler found 220 email addresses with .gov domains, linking them to more than 29 countries, including the U.S., U.K., Australia, Canada, China, India, Israel, and Saudi Arabia.
“This is probably one of the weirdest ones I’ve found in many years,” Fowler told WIRED.
“As far as the risk factor here, this is way bigger than most of the stuff I find, because this is direct access into individual accounts. This is a cybercriminal’s dream working list,” the cybersecurity expert continued.
Postmedia is committed to maintaining a lively but civil forum for discussion. Please keep comments relevant and respectful. Comments may take up to an hour to appear on the site. You will receive an email if there is a reply to your comment, an update to a thread you follow or if a user you follow comments. Visit our Community Guidelines for more information.
This website uses cookies to personalize your content (including ads), and allows us to analyze our traffic. Read more about cookies here. By continuing to use our site, you agree to our Terms of Use and Privacy Policy.
Postmedia is committed to maintaining a lively but civil forum for discussion. Please keep comments relevant and respectful. Comments may take up to an hour to appear on the site. You will receive an email if there is a reply to your comment, an update to a thread you follow or if a user you follow comments. Visit our Community Guidelines for more information.