link1s.site

The largest password leak in history exposes nearly 10 billion credentials

The largest collection of stolen passwords ever has been leaked to a notorious crime marketplace, according to cybersecurity researchers at Cybernews.

This leak, dubbed RockYou2024 by its original poster “ObamaCare,” holds a file containing nearly 10 billion unique plaintext passwords.

Allegedly gathered from a series of data breaches and hacks accumulated over several years, the passwords were posted on July 4th and hailed as the most extensive collection of stolen and leaked credentials ever seen on the forum.

“In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world,” the researchers told Cybernews. “Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks.”

Credential stuffing attacks are among the most common methods criminals, ransomware affiliates, and state-sponsored hackers use to access services and systems.

Threat actors could exploit the RockYou2024 password collection to conduct brute-force attacks against any unprotected system and “gain unauthorized access to various online accounts used by individuals whose passwords are included in the dataset,” the research team said.

This could affect online services, cameras and hardware

This could affect various targets, from online services to internet-facing cameras and industrial hardware.

“Moreover, combined with other leaked databases on hacker forums and marketplaces, which, for example, contain user email addresses and other credentials, RockYou2024 can contribute to a cascade of data breaches, financial frauds, and identity thefts,” the team concluded.

However, despite the seriousness of the data leak, it is important to note that RockYou2024 is primarily a compilation of previous password leaks, estimated to contain entries from a total of 4,000 massive databases of stolen credentials, covering at least two decades.

This new file notably includes an earlier credentials database known as RockYou2021, which featured 8.4 billion passwords. RockYou2024 added approximately 1.5 billion passwords to the collection, spanning from 2021 through 2024, which, though a massive figure, is only a fraction of the reported 9,948,575,739 passwords in the leak.

Thus, users who have changed their passwords since 2021 may not have to panic about a potential breach of their information.

That said, the research team at Cybernews stressed the importance of maintaining data security. In response to the leak, they recommend immediately changing the passwords for any accounts associated with the leaked credentials, ensuring each password is strong and unique and not reused across different platforms.

Additionally, they advised enabling multi-factor authentication (MFA), which requires an extra form of verification beyond the password, wherever possible, to strengthen cyber security.

Lastly, tech users should utilize password manager software, which securely generates and stores complex passwords, mitigating the risk of password reuse across multiple accounts.

Google Pixel 9 series phones will use Qualcomm ultrasonic fingerprint recognition technology
Google's new generation of flagship smartphone Pixel 9 series is expected to be officially released in mid-August, and the new machine is likely to be equipped with ultrasonic fingerprint recognition technology for the first time to replace the original optical fingerprint recognition. According to core intelligence, Google Pixel 9 series will use the same Qualcomm 3D Sonic Gen 2 ultrasonic fingerprint recognition sensor as the Samsung Galaxy S24 Ultra. This ultrasonic technology under the screen fingerprint sensor is Qualcomm released at the CES2021 conference, compared with the previous generation of solutions, the module thickness is further reduced to 0.2mm, while the scanning area is expanded to 8mm×8mm, that is, the recognition area is increased by 77%. This will also allow users to realize fingerprint recognition without having to point their fingertips 100% accurately at the identification area indicated on the screen.
OpenAI's internal AI details stolen in 2023 breach, NYT reports
July 4 (Reuters) - A hacker gained access to the internal messaging systems at OpenAI last year and stole details about the design of the company's artificial intelligence technologies, the New York Times reported, opens new tab on Thursday. The hacker lifted details from discussions in an online forum where employees talked about OpenAI's latest technologies, the report said, citing two people familiar with the incident. However, they did not get into the systems where OpenAI, the firm behind chatbot sensation ChatGPT, houses and builds its AI, the report added. OpenAI executives informed both employees at an all-hands meeting in April last year and the company's board about the breach, according to the report, but executives decided not to share the news publicly as no information about customers or partners had been stolen. OpenAI executives did not consider the incident a national security threat, believing the hacker was a private individual with no known ties to a foreign government, the report said. The San Francisco-based company did not inform the federal law enforcement agencies about the breach, it added. OpenAI in May said it had disrupted five covert influence operations that sought to use its AI models for "deceptive activity" across the internet, the latest to stir safety concerns about the potential misuse of the technology. The Biden administration was poised to open up a new front in its effort to safeguard the U.S. AI technology from China and Russia with preliminary plans to place guardrails around the most advanced AI Models including ChatGPT, Reuters earlier reported, citing sources.
NASA plays 'blame-shifting' game with China as lunar soil research set to start
The returner of the Chang'e-6 lunar probe is opened during a ceremony at the China Academy of Space Technology under the China Aerospace Science and Technology Corporation in Beijing, capital of China, June 26, 2024. The returner of the Chang'e-6 lunar probe was opened at a ceremony in Beijing on Wednesday afternoon. During the ceremony at the China Academy of Space Technology under the China Aerospace Science and Technology Corporation, researchers opened the returner and examined key technical indicators. Photo: Xinhua As the US space industry recently faced yet more delays and stagnation with key components including manned spacecraft and space suits "going wrong," NASA has once again resorted to its "sour grapes" rhetoric upon seeing China's successful retrieval of fresh lunar soils from the far side of the moon, by claiming that China did not directly invite its scientists to participate in the lunar soil research. This behavior is a typical blame-shifting trick, Chinese experts said, noting it is clear to all that it is the US' own laws, not China, that are restricting space cooperation between the two sides. Instead of deceiving themselves by distorting the truth, the US should face up to its own problem of overall weakening engineering capability and the lack of long-term planning in its space industry. After the Chang'e-6 samples, weighing nearly 2 kilograms, were safely transported to a special laboratory for further study on Friday, NASA spokesperson Faith McKie told media that while China worked with the European Space Agency, France, Italy and Pakistan on this mission, "NASA wasn't invited to take part in the moon probe." NASA also didn't get "any direct invitation" to study China's moon rocks, after it welcomed all scientists from around the world to apply to study them, McKie told NatSec Daily. Responding to the remarks, Chinese Foreign Ministry spokesperson Mao Ning told the Global Times on Monday that China is open to having space exchanges with the US, and we also welcome countries around the world to take part in the study of lunar samples. "However, the US side seems to have forgotten to mention its domestic legislation such as the Wolf Amendment. The real question is whether US scientists and institutions are allowed by their own government to participate in cooperation with China," Mao said. "The existence of the Wolf Amendment has basically shut the door to space collaboration between the two countries," Wang Yanan, chief editor of Beijing-based Aerospace Knowledge magazine, told the Global Times on Monday. Even if research institutions of the US have the willingness to work with China on opportunities such as lunar sample research, institutions there must obtain special approval from the US Congress due to the presence of this amendment, Wang explained. Currently, no such "green light" is in sight from the Congress. Furthermore, China's collaboration with international partners is based on equality and mutual benefit, leveraging their respective scientific resources, facilities, and expertise. However, the US only wants what it doesn't have, and its engagement with China would be advantageous only to itself, Wang noted. NASA has found itself embroiled in a number of thorny issues recently, with the latest being Boeing's Starliner manned spaceship experiencing both helium leaks and thruster issues during a June 6 docking with the International Space Station (ISS), which led to an indefinite delay for its crew's return to Earth, despite NASA's insistence that they are not "stranded" in space. The return of the Starliner capsule, while has already been delayed by two weeks, will be put on hold "well into the summer" pending results of new thruster tests, which are scheduled to start Tuesday and will take approximately two weeks or even more, per NASA officials. Previously on June 24, NASA cancelled a spacewalk on the ISS following a "serious situation," when one of the spacesuits experienced coolant leak in the hatch. While being broadcast on a livestream, the astronauts reported "literally water everywhere" as they were preparing for the extravehicular activity, space.com reported. The report said that this is the second time this particular spacewalk was postponed, after a June 13 attempt with a different astronaut group was pushed back due to a "spacesuit discomfort." The recurring issues with the spacesuits are due to their much-extended service lifespan, media reported, as the puffy white ones US astronauts currently wear were designed more than 40 years ago. Despite the pressing need to replace them, NASA announced recently that it is abandoning a plan to develop next-generation spacesuits, which had been committed to be delivered by 2026, CNN reported on Thursday. One of the root causes for such problems is that the US has developed many large technology conglomerates, which for a long time have benefited significantly from government orders and industry monopolies. Consequently, in many complex engineering fields, the level of attention given is greatly insufficient, Wang noted. It also reflected the US' lack of long-term strategic planning for its manned space program. For instance, the ageing spacesuits should have been replaced a decade ago to ensure that operational suits remain in usable condition. Failure to address this issue results in a hindrance to the space station's necessary maintenance tasks and even poses life-threatening risks to astronauts in emergency situations, experts said. The issues with Boeing's spacecraft and the spacesuits are not isolated problems, but reflected a systemic issue in the US space industry - the overall weakening of engineering capabilities, they noted.
Israeli strike kills 16 at Gaza school, military says it targeted gunmen
CAIRO/GAZA, July 6 (Reuters) - At least 16 people were killed in an Israeli strike on a school sheltering displaced Palestinian families in central Gaza on Saturday, the Palestinian health ministry said, in an attack Israel said had targeted militants. The health ministry said the attack on the school in Al-Nuseirat killed at least 16 people and wounded more than 50. The Israeli military said it took precautions to minimize risk to civilians before it targeted the gunmen who were using the area as a hideout to plan and carry out attacks against soldiers. Hamas denied its fighters were there. At the scene, Ayman al-Atouneh said he saw children among the dead. "We came here running to see the targeted area, we saw bodies of children, in pieces, this is a playground, there was a trampoline here, there were swing-sets, and vendors," he said. Mahmoud Basal, spokesman of the Gaza Civil Emergency Service, said in a statement that the number of dead could rise because many of the wounded were in critical condition. The attack meant no place in the enclave was safe for families who leave their houses to seek shelters, he said. Al-Nuseirat, one of Gaza Strip's eight historic refugee camps, was the site of stepped-up Israeli bombardment on Saturday. An air strike earlier on a house in the camp killed at least 10 people and wounded many others, according to medics. In its daily update of people killed in the nearly nine-month-old war, the Gaza health ministry said Israeli military strikes across the enclave killed at least 29 Palestinians in the past 24 hours and wounded 100 others.
Samsung expects profits to jump by more than 1,400%
Samsung Electronics expects its profits for the three months to June 2024 to jump 15-fold compared to the same period last year. An artificial intelligence (AI) boom has lifted the prices of advanced chips, driving up the firm's forecast for the second quarter. The South Korean tech giant is the world's largest maker of memory chips, smartphones and televisions. The announcement pushed Samsung shares up more than 2% during early trading hours in Seoul. The firm also reported a more than 10-fold jump in its profits for the first three months of this year. In this quarter, it said it is expecting its profit to rise to 10.4tn won ($7.54bn; £5.9bn), from 670bn won last year. That surpasses analysts' forecasts of 8.8tn won, according to LSEG SmartEstimate. "Right now we are seeing skyrocketing demand for AI chips in data centers and smartphones," said Marc Einstein, chief analyst at Tokyo-based research and advisory firm ITR Corporation. Optimism about AI is one reason for the broader market rally over the last year, which pushed the S&P 500 and the Nasdaq in the United States to new records on Wednesday. The market value of chip-making giant Nvidia surged past $3tn last month, briefly holding the top spot as the world's most valuable company. "The AI boom which massively boosted Nvidia is also boosting Samsung's earnings and indeed those of the entire sector," Mr Einstein added. Samsung Electronics is the flagship unit of South Korean conglomerate Samsung Group. Next week, the tech company faces a possible three-day strike, which is expected to start on Monday. A union of workers is demanding a more transparent system for bonuses and time off.