link1s.site

The largest password leak in history exposes nearly 10 billion credentials

The largest collection of stolen passwords ever has been leaked to a notorious crime marketplace, according to cybersecurity researchers at Cybernews.

This leak, dubbed RockYou2024 by its original poster “ObamaCare,” holds a file containing nearly 10 billion unique plaintext passwords.

Allegedly gathered from a series of data breaches and hacks accumulated over several years, the passwords were posted on July 4th and hailed as the most extensive collection of stolen and leaked credentials ever seen on the forum.

“In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world,” the researchers told Cybernews. “Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks.”

Credential stuffing attacks are among the most common methods criminals, ransomware affiliates, and state-sponsored hackers use to access services and systems.

Threat actors could exploit the RockYou2024 password collection to conduct brute-force attacks against any unprotected system and “gain unauthorized access to various online accounts used by individuals whose passwords are included in the dataset,” the research team said.

This could affect online services, cameras and hardware

This could affect various targets, from online services to internet-facing cameras and industrial hardware.

“Moreover, combined with other leaked databases on hacker forums and marketplaces, which, for example, contain user email addresses and other credentials, RockYou2024 can contribute to a cascade of data breaches, financial frauds, and identity thefts,” the team concluded.

However, despite the seriousness of the data leak, it is important to note that RockYou2024 is primarily a compilation of previous password leaks, estimated to contain entries from a total of 4,000 massive databases of stolen credentials, covering at least two decades.

This new file notably includes an earlier credentials database known as RockYou2021, which featured 8.4 billion passwords. RockYou2024 added approximately 1.5 billion passwords to the collection, spanning from 2021 through 2024, which, though a massive figure, is only a fraction of the reported 9,948,575,739 passwords in the leak.

Thus, users who have changed their passwords since 2021 may not have to panic about a potential breach of their information.

That said, the research team at Cybernews stressed the importance of maintaining data security. In response to the leak, they recommend immediately changing the passwords for any accounts associated with the leaked credentials, ensuring each password is strong and unique and not reused across different platforms.

Additionally, they advised enabling multi-factor authentication (MFA), which requires an extra form of verification beyond the password, wherever possible, to strengthen cyber security.

Lastly, tech users should utilize password manager software, which securely generates and stores complex passwords, mitigating the risk of password reuse across multiple accounts.

NASA plays 'blame-shifting' game with China as lunar soil research set to start
The returner of the Chang'e-6 lunar probe is opened during a ceremony at the China Academy of Space Technology under the China Aerospace Science and Technology Corporation in Beijing, capital of China, June 26, 2024. The returner of the Chang'e-6 lunar probe was opened at a ceremony in Beijing on Wednesday afternoon. During the ceremony at the China Academy of Space Technology under the China Aerospace Science and Technology Corporation, researchers opened the returner and examined key technical indicators. Photo: Xinhua As the US space industry recently faced yet more delays and stagnation with key components including manned spacecraft and space suits "going wrong," NASA has once again resorted to its "sour grapes" rhetoric upon seeing China's successful retrieval of fresh lunar soils from the far side of the moon, by claiming that China did not directly invite its scientists to participate in the lunar soil research. This behavior is a typical blame-shifting trick, Chinese experts said, noting it is clear to all that it is the US' own laws, not China, that are restricting space cooperation between the two sides. Instead of deceiving themselves by distorting the truth, the US should face up to its own problem of overall weakening engineering capability and the lack of long-term planning in its space industry. After the Chang'e-6 samples, weighing nearly 2 kilograms, were safely transported to a special laboratory for further study on Friday, NASA spokesperson Faith McKie told media that while China worked with the European Space Agency, France, Italy and Pakistan on this mission, "NASA wasn't invited to take part in the moon probe." NASA also didn't get "any direct invitation" to study China's moon rocks, after it welcomed all scientists from around the world to apply to study them, McKie told NatSec Daily. Responding to the remarks, Chinese Foreign Ministry spokesperson Mao Ning told the Global Times on Monday that China is open to having space exchanges with the US, and we also welcome countries around the world to take part in the study of lunar samples. "However, the US side seems to have forgotten to mention its domestic legislation such as the Wolf Amendment. The real question is whether US scientists and institutions are allowed by their own government to participate in cooperation with China," Mao said. "The existence of the Wolf Amendment has basically shut the door to space collaboration between the two countries," Wang Yanan, chief editor of Beijing-based Aerospace Knowledge magazine, told the Global Times on Monday. Even if research institutions of the US have the willingness to work with China on opportunities such as lunar sample research, institutions there must obtain special approval from the US Congress due to the presence of this amendment, Wang explained. Currently, no such "green light" is in sight from the Congress. Furthermore, China's collaboration with international partners is based on equality and mutual benefit, leveraging their respective scientific resources, facilities, and expertise. However, the US only wants what it doesn't have, and its engagement with China would be advantageous only to itself, Wang noted. NASA has found itself embroiled in a number of thorny issues recently, with the latest being Boeing's Starliner manned spaceship experiencing both helium leaks and thruster issues during a June 6 docking with the International Space Station (ISS), which led to an indefinite delay for its crew's return to Earth, despite NASA's insistence that they are not "stranded" in space. The return of the Starliner capsule, while has already been delayed by two weeks, will be put on hold "well into the summer" pending results of new thruster tests, which are scheduled to start Tuesday and will take approximately two weeks or even more, per NASA officials. Previously on June 24, NASA cancelled a spacewalk on the ISS following a "serious situation," when one of the spacesuits experienced coolant leak in the hatch. While being broadcast on a livestream, the astronauts reported "literally water everywhere" as they were preparing for the extravehicular activity, space.com reported. The report said that this is the second time this particular spacewalk was postponed, after a June 13 attempt with a different astronaut group was pushed back due to a "spacesuit discomfort." The recurring issues with the spacesuits are due to their much-extended service lifespan, media reported, as the puffy white ones US astronauts currently wear were designed more than 40 years ago. Despite the pressing need to replace them, NASA announced recently that it is abandoning a plan to develop next-generation spacesuits, which had been committed to be delivered by 2026, CNN reported on Thursday. One of the root causes for such problems is that the US has developed many large technology conglomerates, which for a long time have benefited significantly from government orders and industry monopolies. Consequently, in many complex engineering fields, the level of attention given is greatly insufficient, Wang noted. It also reflected the US' lack of long-term strategic planning for its manned space program. For instance, the ageing spacesuits should have been replaced a decade ago to ensure that operational suits remain in usable condition. Failure to address this issue results in a hindrance to the space station's necessary maintenance tasks and even poses life-threatening risks to astronauts in emergency situations, experts said. The issues with Boeing's spacecraft and the spacesuits are not isolated problems, but reflected a systemic issue in the US space industry - the overall weakening of engineering capabilities, they noted.
How to evaluate the product impact of the iPhone 16
At the Apple Developer Conference held earlier, the iPhone 16 series will be equipped with iOS 18 has been revealed. At the event, Apple showed off a series of convenient interactive experiences brought by Apple Intelligence, including a more powerful Siri voice assistant, Mail app that can generate complex responses, and Safari that aggregates web information. These upgrades will no doubt make the iPhone 16 line even more attractive. In order to use Apple Intelligence, a new feature of iOS 18, the iPhone 16 and 16 Pro series are equipped with A18 chips. An external blogger found in Apple's back end that the iPhone 16 series will use the same A-series chip, and the back end code mentions A new model unrelated to the existing iPhone. It includes four iPhone 16 series models, and the four identifiers all start with the same number, indicating that Apple is attributing them to the same platform. The new iPhone will have a stainless steel battery case, which will make it easier to remove the battery to meet EU market standards, while also allowing Apple to increase the density of the battery cell in line with safety regulations.
UAE insurance sector continued to grow in Q4-23: CBUAE
The UAE insurance sector continued to grow in Q4-2023, as reflected by increase in the gross written premiums. As of year-end, the number of licensed insurance companies in the UAE remained at 60, according to the Central Bank of the UAE's (CBUAE) Quarterly Economic Review (Q4-2023). The insurance sector comprised 23 traditional national companies, 10 Takaful national and 27 foreign companies, while the number of insurance related professions remained at 491. The review on insurance sector structure and activity showed that the gross written premium increased by 12.7% Y-o-Y in Q4 2023 to AED 53.2 billion, mostly due to an increase in health insurance premiums by 16.5% Y-o-Y and an increase in property and liability insurance premiums by 18.9% Y-o-Y, while the insurance of persons and fund accumulation premiums decreased by 12.4% Y-o-Y, resulting primarily from decrease in individual life premiums. Gross paid claims of all types of insurance plans increased by 12.8% Y-o-Y to AED 31.1 billion at the end of 2023. This was mainly driven by the increase in claims paid in health insurance by 16.9% Y-o-Y and increase in paid claims in property and liability insurance by 10.9% Y-o-Y, partially offset by the decline in claims paid in insurance of persons and fund accumulation by 2.8% Y-o-Y. The total technical provisions of all types of insurance increased by 8.4% Y-o-Y to AED 74.4 billion in Q4 2023 compared to AED68.6 billion in Q4 2022. The volume of invested assets in the insurance sector amounted to AED 76 billion (60.4% of total assets) in Q4 2023 compared to AED 71.4 billion (59.4% of total assets) in Q4 2022. The retention ratio of written insurance premiums for all types of insurance was 52.9 % (AED 28.1 billion) in Q4 2023, compared to 54.9% (AED 25.9 billion) at the end of 2022. The UAE insurance sector remained well capitalized in terms of early warning ratios and risk assessment. Own funds to minimum capital requirement ratio increased to 335.7% in Q4 2023, compared to 309.3% at the end of 2022, due to an increase in own funds eligible to meet the minimum capital requirements. Also, own funds to solvency capital requirement ratio rose to 221% in Q4 2023 compared to 208.5% in Q4 2022, due to an increase in own funds eligible to meet solvency capital requirements. Finally, own funds to minimum guarantee fund ratio reached to 316.3% at the end of 2023 down from 314.6% a year earlier, due to higher eligible funds to meet minimum guarantee funds. In terms of profitability, the net total profit to net written premiums increased to 6.5% in Q4 2023, compared to 2.9% at the end of 2022. The return on average assets increased to 0.3% in Q4 2023 compared to the 0.1% at the of the previous year.
Are US development jobs falling off a cliff?
Companies are going to have fewer people and fewer layers. Ten years from now, the software development circuit may have fewer jobs, higher salaries, and more product-centric work. The reason behind it is the rapid development of AI, AI has approached human beings at the intelligence level, a lot of work relying on thinking ability may be handed over to AI, while emotion is still the territory of human beings, how to communicate and collaborate is the most important ability in the near future. When Indeed's chart for software development and operations jobs was released, we found that, as the chart shows, there was a peak in early 2022, but after that there was a precipitous decline.
Nvidia H20 will sell 1 million units this year, contributing $12 billion in revenue!
Recently, according to the FT, citing the latest forecast data of the market research institute SemiAnalysis, AI chip giant NVIDIA will ship more than 1 million new NVIDIA H20 acceleration chips to the Chinese market this year, and it is expected that the cost of each chip is between $12,000 and $13,000. This is expected to generate more than $12 billion in revenue for Nvidia. Affected by the United States export control policy, Nvidia's advanced AI chip exports to China have been restricted, H20 is Nvidia based on H100 specifically for the Chinese market to launch the three "castration version" GPU among the strongest performance, but its AI performance is only less than 15% of H100, some performance is even less than the domestic Ascend 910B. When Nvidia launched the new H20 in the spring of this year, there were reports that due to the large castration of H20 performance, coupled with the high price, Chinese customers' interest in buying is insufficient, and they will turn more to choose China's domestic AI chips. Then there are rumors that Nvidia has lowered the price of the H20 in order to improve its competitiveness. However, the latest news shows that due to supply issues caused by the low yield of the Ascend 910B chip, Chinese manufacturers in the absence of supply and other better options, Nvidia H20 has started to attract new purchases from Chinese tech giants such as Baidu, Alibaba, Tencent and Bytedance. Analysts at both Morgan Stanley and SemiAnalysis said the H20 chip is now being shipped in bulk and is popular with Chinese customers, despite its performance degradation compared to chips Nvidia sells in the United States.