link1s.site

The largest password leak in history exposes nearly 10 billion credentials

The largest collection of stolen passwords ever has been leaked to a notorious crime marketplace, according to cybersecurity researchers at Cybernews.

This leak, dubbed RockYou2024 by its original poster “ObamaCare,” holds a file containing nearly 10 billion unique plaintext passwords.

Allegedly gathered from a series of data breaches and hacks accumulated over several years, the passwords were posted on July 4th and hailed as the most extensive collection of stolen and leaked credentials ever seen on the forum.

“In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world,” the researchers told Cybernews. “Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks.”

Credential stuffing attacks are among the most common methods criminals, ransomware affiliates, and state-sponsored hackers use to access services and systems.

Threat actors could exploit the RockYou2024 password collection to conduct brute-force attacks against any unprotected system and “gain unauthorized access to various online accounts used by individuals whose passwords are included in the dataset,” the research team said.

This could affect online services, cameras and hardware

This could affect various targets, from online services to internet-facing cameras and industrial hardware.

“Moreover, combined with other leaked databases on hacker forums and marketplaces, which, for example, contain user email addresses and other credentials, RockYou2024 can contribute to a cascade of data breaches, financial frauds, and identity thefts,” the team concluded.

However, despite the seriousness of the data leak, it is important to note that RockYou2024 is primarily a compilation of previous password leaks, estimated to contain entries from a total of 4,000 massive databases of stolen credentials, covering at least two decades.

This new file notably includes an earlier credentials database known as RockYou2021, which featured 8.4 billion passwords. RockYou2024 added approximately 1.5 billion passwords to the collection, spanning from 2021 through 2024, which, though a massive figure, is only a fraction of the reported 9,948,575,739 passwords in the leak.

Thus, users who have changed their passwords since 2021 may not have to panic about a potential breach of their information.

That said, the research team at Cybernews stressed the importance of maintaining data security. In response to the leak, they recommend immediately changing the passwords for any accounts associated with the leaked credentials, ensuring each password is strong and unique and not reused across different platforms.

Additionally, they advised enabling multi-factor authentication (MFA), which requires an extra form of verification beyond the password, wherever possible, to strengthen cyber security.

Lastly, tech users should utilize password manager software, which securely generates and stores complex passwords, mitigating the risk of password reuse across multiple accounts.

Record numbers of people are flying. So why are airlines’ profits plunging?
New York CNN — A record number of passengers are expected to pass through US airports this holiday travel week. You’d think this would be a great time to run an airline. You’d be wrong. Airlines face numerous problems, including higher costs, such as fuel, wages and interest rates. And problems at Boeing mean airlines have too few planes to expand routes to support a record numbers of flyers. Strong bookings can’t entirely offset that financial squeeze. The good news for passengers is they will be spared most of the problems hurting airlines’ bottom lines — at least in the near term. Airfares are driven far more by supply and demand, not their costs. But in the long run, the airlines’ difficulties could mean fewer airline routes, less passenger choice and ultimately a less pleasant flying experience. Profit squeeze Industry analysts expect airlines to report a drop of about $2 billion in profit, or 33%, when they report financial results for the April to June period this year. That would follow losses of nearly $800 million across the industry in the first quarter. Labor costs and jet fuel prices, the airlines’ two largest costs, are both sharply higher this year. Airline pilot unions just landed double-digit pay hikes to make up for years of stagnant wages; flight attendant unions now want comparable raises. Jet fuel prices are climbing because of higher demand in the summer. According to the International Air Transport Association’s jet fuel monitor, prices are up 1.4% in just the last week, and about 4% in the last month. Adding to the airlines’ problems is the crisis at Boeing, as well as the less-well-publicized problems with some of the jet engines on planes from rival Airbus. Since an Alaska Airlines Boeing 737 Max jet lost a door plug on a January 5 flight, leaving a gaping hole in the side of the plane 10 minutes after takeoff, the Federal Aviation Administration has limited how many jets Boeing can make over concerns about quality and safety. As a result, airlines have dramatically reduced plans to expand their fleets and replace older planes with more fuel efficient models. In some cases, airlines have asked pilots to take time off without pay, and carriers such as Southwest and United have announced pilot hiring freezes. In addition to the problems at Boeing, hundreds of the Airbus A220 and A320 family of jets globally have also been grounded for at least a month or more to deal with engine problems. Just about all the planes with those engines have been out of sevice for at least a few days to undergo examinations. And Airbus has also cut back the number of planes it expects to deliver to airlines this year because of supply chain problems. Problems for flyers For now, competition in the industry remains fierce: There are 6% more seats available this month compared to July of 2023, according to aviation analytics firm Cirium. And that’s helped to drive fares down — good news for passengers, but more bad news for airlines’ profits. Southwest announced in April that it would stop serving four airports to trim costs — Bellingham International Airport in Washington state, Cozumel International Airport in Mexico, Syracuse Hancock International Airport in New York and Houston’s George Bush Intercontinental Airport. Many more cities lost air service during the financial hard times of the pandemic. While upstart airlines are driving prices lower for travelers, those discount carriers might not survive long term. As the major carriers are making less money, many of the upstarts are flat-out losing money.
Google may bring Google Wallet for Indian users
Google Wallet can help you store your IDs, driving license, loyalty cards, concert tickets and more. You can also store your payment cards and use tap to pay to pay anywhere Google Pay is accepted. Google wallet is available in various countries but Google never launched it in India. Google let indian users stick with the Gpay which facilitates UPI payments. Tap to pay is not part of it. Also we can not store things such as IDs and Passes in indian version of Gpay. This might change and Google may launch Google Wallet in India. With the recent version of Google Wallet and Google Play Services, Google has added some flags and code which indicate that Google is working on something for Indian users regarding wallet. The first change I noticed recently when going through the Google Play Services apk was addition of two new flags Both flags are part of com.google.android.gms.pay package in the Google Play Services. This package contains all the flags for features of Gpay/Wallet. Google does server side flipping of flags to enable/disable features for users. So both these flags doesn't really provide any info about what features enabling these flags is going to bring. But the point here is that Google Wallet is not launched in India so why Google added these flags inside Play Services ? The answer could be that Google may be working on bringing Google Wallet to India. It can enable tap to pay, store payments and various other features for Indian users which we don't have in the current Gpay for India. I found similar flags in the analysis Google Wallet APK - These flags are also disabled by default. But this is again a clear indication of Google working towards something for Indian users. In both cases, enabling the flags doesn't bring anything noticeable UI or feature because there is nothing much added besides flags. Google has dogfood/testing versions internally, so the code will show up slowly in upcoming versions. The last piece of code I found is also from Google Play Services. In case you don't know, Google was working on Digilocker integration in the Google Files app which was supposed to bring your digital document inside the app such as driving license, COVID certificates, aadhar card. But Google has ditched the effort of bringing these features and they removed the "Important" tab (where digilocker was supposed to be integrated) from the Google Files app completely. So things are going to change and here is how. This is the code which I found in the Google Play Services - So the word "PASS" along with PAN, DRIVERS LICENCE, VACC CERTIFICATE & AADHAR CARD, is clear indication of the possibility of Google adding support for these directly through Google Wallet using Digilocker, just like Samsung Pass does it. This code is not old as I have checked older beta versions of Play Services where this code is not present. Here is a string which was added in a previous beta version a few weeks ago but I completely ignored it because it didn't make any sense without flags and the other code - This addition was surprising because there was nothing regarding digilocker before in the Play Services. In the words "pay_valuable", the "pay" to Wallet/Gpay and "valuable" refers to the things like Passes, loyalty cards and transit cards. Since we are talking about digilocker, these "valuable" are driving license, vaccination certificate, PAN card and Aadhar card which can be store in Google Wallet after digilocker integration. That's all about it. We will know more about it in upcoming app updates or maybe Google can itself annouce something about this.
Will chatGPT lead to job losses?
In fact, ChatGPT can bring more opportunities to many industries, such as customer service, marketing, speech recognition, and more. ChatGPT can help businesses engage with customers more effectively, improve the customer experience, and give businesses more time and resources to focus on other tasks. Come to see While ChatGPT can replace humans in certain situations, it is not a complete replacement for humans. In many cases, human-to-human communication is still the most effective way. Therefore, the emergence of ChatGPT will not lead to the unemployment of all people, but will cause structural changes in the labor force and the redistribution of occupations.
Insurers fret over militant attacks, AI hacks at Paris Olympics
LONDON, July 5 (Reuters) - Insurers are nervous that militant attacks or AI-generated fake images could derail the Paris Olympics, risking event cancellations and millions of dollars in claims. Insurers faced losses after the 2020 Tokyo Olympics were postponed for a year due to the COVID-19 pandemic. Since then, wars in Ukraine and Gaza and a spate of elections this year, including in France, have driven up fears of politically-motivated violence at high-profile global events. The Olympics take place in Paris from July 26-Aug 11 and the Paralympics from Aug 28-Sept 8. German insurer Allianz (ALVG.DE), opens new tab is insurance partner for the Games. Other insurers, such as the Lloyd's of London (SOLYD.UL) market, are also providing cover. "We are all aware of the geopolitical situation the world is in," said Eike Buergel, head of Allianz's Olympic and Paralympic programme. "We are convinced that the IOC (International Olympic Committee), Paris 2024 and the national organising committees, together with the French authorities, are taking the right measures when it comes to challenges on the ground."
Could a $600 billion funding gap crush the AI industry?
On July 5, Microsoft co-founder Bill Gates appeared on the Next Big Idea podcast to discuss his vision for Superhuman artificial intelligence and technological progress. At the same time, it said that the enthusiasm of the AI market is far more than the Internet bubble. Gates believes that the current threshold for entry in the AI field is very low, and the entire market is in a fever period, AI startups can easily get hundreds of millions of dollars in financing, and even have raised $6 billion (about 43.734 billion yuan) in cash for a company. "Never before has so much capital poured into a new area, and the entire AI market has fallen into a 'frenzy' in terms of market capitalization and valuation, which dwarfs the frenzy of the Internet and automotive periods in history." Gates said. At this stage, the rapid development of the artificial intelligence industry is a veritable gold industry, and Nvidia's market value is therefore soaring, and the total market value reached 3.34 trillion US dollars on June 18 local time, surpassing Microsoft and Apple in one fell fell, becoming the world's most valuable listed enterprise. But in fact, doubts about the field of artificial intelligence have also risen one after another and have never stopped.