link1s.site

The largest password leak in history exposes nearly 10 billion credentials

The largest collection of stolen passwords ever has been leaked to a notorious crime marketplace, according to cybersecurity researchers at Cybernews.

This leak, dubbed RockYou2024 by its original poster “ObamaCare,” holds a file containing nearly 10 billion unique plaintext passwords.

Allegedly gathered from a series of data breaches and hacks accumulated over several years, the passwords were posted on July 4th and hailed as the most extensive collection of stolen and leaked credentials ever seen on the forum.

“In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world,” the researchers told Cybernews. “Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks.”

Credential stuffing attacks are among the most common methods criminals, ransomware affiliates, and state-sponsored hackers use to access services and systems.

Threat actors could exploit the RockYou2024 password collection to conduct brute-force attacks against any unprotected system and “gain unauthorized access to various online accounts used by individuals whose passwords are included in the dataset,” the research team said.

This could affect online services, cameras and hardware

This could affect various targets, from online services to internet-facing cameras and industrial hardware.

“Moreover, combined with other leaked databases on hacker forums and marketplaces, which, for example, contain user email addresses and other credentials, RockYou2024 can contribute to a cascade of data breaches, financial frauds, and identity thefts,” the team concluded.

However, despite the seriousness of the data leak, it is important to note that RockYou2024 is primarily a compilation of previous password leaks, estimated to contain entries from a total of 4,000 massive databases of stolen credentials, covering at least two decades.

This new file notably includes an earlier credentials database known as RockYou2021, which featured 8.4 billion passwords. RockYou2024 added approximately 1.5 billion passwords to the collection, spanning from 2021 through 2024, which, though a massive figure, is only a fraction of the reported 9,948,575,739 passwords in the leak.

Thus, users who have changed their passwords since 2021 may not have to panic about a potential breach of their information.

That said, the research team at Cybernews stressed the importance of maintaining data security. In response to the leak, they recommend immediately changing the passwords for any accounts associated with the leaked credentials, ensuring each password is strong and unique and not reused across different platforms.

Additionally, they advised enabling multi-factor authentication (MFA), which requires an extra form of verification beyond the password, wherever possible, to strengthen cyber security.

Lastly, tech users should utilize password manager software, which securely generates and stores complex passwords, mitigating the risk of password reuse across multiple accounts.

Hedge fund Elliott challenges court verdict it lost against LME on nickel
LONDON, July 9 (Reuters) - U.S.-based hedge fund Elliott Associates on Tuesday urged a London court to overturn a verdict supporting the London Metal Exchange's (LME) cancellation of nickel trades partly because the exchange failed to disclose documents. The LME annulled $12 billion in nickel trades in March 2022 when prices shot to records above $100,000 a metric ton in a few hours of chaotic trade. Elliott and market maker Jane Street Global Trading brought a case demanding a combined $472 million in compensation, alleging at a trial in June last year that the 146-year-old exchange had acted unlawfully. London's High Court ruled last November that the LME had the right to cancel the trades because of exceptional circumstances, and was not obligated to consult market players prior to its decision. Lawyers for Elliott told London's Court of Appeal that the LME belatedly released documents in May detailing its "Kill Switch" and "Trade Halt" internal procedures. It also newly disclosed an internal report that Elliott said detailed potential conflicts of interest at the exchange. "It was troubling that one gets disclosure out of the blue in the Court of Appeal for the first time," Elliott lawyer Monica Carss-Frisk told the court. Jane Street Global did not appeal the ruling. "If we had had them (documents) in the proceedings before the divisional court, we may well have sought permission to cross examine." LME lawyers said the new documents were not relevant. "The disclosed documents do not affect the reasoning of the divisional court or the merits of the arguments on appeal," the exchange said in documents prepared for the appeal hearing. "Elliott's appeal is largely a repetition of the arguments which were advanced, and rightly rejected." The LME said it had both the power and a duty to unwind the trades because a record $20 billion in margin calls could have led to at least seven clearing members defaulting, systemic risk and a potential "death spiral". Elliott said the ruling diluted protection provided by the Human Rights Act and also wrongly concluded the LME had the power to cancel the trades.
Former British PM Sunak appoints Conservative Party shadow cabinet
On July 8, local time, former British Prime Minister Sunak announced the appointment of the Conservative Party Shadow Cabinet, which is the first shadow cabinet of the Conservative Party in 14 years. Several former British cabinet members during Sunak's tenure as prime minister were appointed to the Conservative Party Shadow Cabinet, including James Cleverly as Shadow Home Secretary and Jeremy Hunt as Shadow Chancellor of the Exchequer. But former Foreign Secretary Cameron was not appointed as Shadow Foreign Secretary. In addition, the new leader of the Conservative Party will be elected as early as this week. On July 4, the UK held a parliamentary election. The counting results showed that the British Labour Party won more than half of the seats and won an overwhelming victory; the Conservative Party suffered a disastrous defeat, ending its 14-year continuous rule.
The Apple Watch is reportedly getting a birthday makeover
Apple is planning to revamp its smartwatch as its 10th birthday nears. The improvements include larger displays and thinner builds, Bloomberg reported. The revamped watches may also get a new chip, which could enable some AI enhancements. The Apple Watch is about to turn 10, so Apple is planning a birthday revamp, including larger displays and thinner builds, Bloomberg reported. Both versions of the new Series 10 watches will have screens similar to the large displays found on the Apple Watch Ultra, the report said. The revamped watches are also expected to contain a new chip that may permit some AI enhancements later on. Last month, Apple pulled back the curtain on its generative-AI plans with Apple Intelligence. Advertisement It hopes the artificial-intelligence features will prove alluring enough to persuade consumers to buy new Apple products. The announcement has been generally well received by Wall Street. Dan Ives of Wedbush Securities wrote in a Monday note that the "iPhone 16 AI-driven upgrade could represent a golden upgrade cycle for Cupertino." "We believe AI technology being introduced into the Apple ecosystem will bring monetization opportunities on both the services as well as iPhone/hardware front and adds $30 to $40 per share," he added. Apple's stock closed on Friday at just over $226 a share, up 22% this year and valuing the company at $3.47 trillion. That puts it just behind Microsoft, which was worth $3.48 trillion at Friday's close. The tech giants have been vying for the title of the world's most valuable company in recent months — with the chipmaker Nvidia briefing claiming the crown last month. Apple also announced some software updates for the watch at its Worldwide Developers Conference last month. The latest version of the device's software, watchOS 11, emphasizes fitness and health, introducing tools that allow users to rate workouts and adjust effort ratings. WatchOS 11 will also use machine learning to curate the best photos for users' displays. Apple has previously used product birthdays to release new versions of devices. The iPhone X's release marked the 10th anniversary of the smartphone. However, it's not clear exactly when Apple plans to release the revamped watches, Bloomberg said. The company announced the Apple Watch in September 2014, with CEO Tim Cook calling it "the most personal product we've ever made." Apple did not immediately respond to a request for comment made outside normal working hours.
Samsung hit the biggest strike! Over 6,500 people attended.
More than 6,500 employees at South Korea's Samsung Electronics began a three-day mass strike on Monday (July 8), demanding an extra day of paid annual leave, higher pay raises and changes to the way performance bonuses are currently calculated. This is the largest organized strike in Samsung Electronics' more than half century of existence, and the union said that if this strike does not push employees' demands to be met, a new strike may be called. One of the core issues of the current dispute between the labor union and Samsung Electronics is raising wages and increasing the number of paid vacation days. The second demand is a pay rise. The union originally wanted a pay rise of more than 3% for its 855 employees, but last week they changed their demand to include all employees (rather than just 855). The third issue involves performance bonuses linked to Samsung's outsized profits - chip workers did not receive the bonuses last year when Samsung lost about Won15tn and, according to unions, fear they will still not get the money even if the company manages to turn around this year.
Record numbers of people are flying. So why are airlines’ profits plunging?
New York CNN — A record number of passengers are expected to pass through US airports this holiday travel week. You’d think this would be a great time to run an airline. You’d be wrong. Airlines face numerous problems, including higher costs, such as fuel, wages and interest rates. And problems at Boeing mean airlines have too few planes to expand routes to support a record numbers of flyers. Strong bookings can’t entirely offset that financial squeeze. The good news for passengers is they will be spared most of the problems hurting airlines’ bottom lines — at least in the near term. Airfares are driven far more by supply and demand, not their costs. But in the long run, the airlines’ difficulties could mean fewer airline routes, less passenger choice and ultimately a less pleasant flying experience. Profit squeeze Industry analysts expect airlines to report a drop of about $2 billion in profit, or 33%, when they report financial results for the April to June period this year. That would follow losses of nearly $800 million across the industry in the first quarter. Labor costs and jet fuel prices, the airlines’ two largest costs, are both sharply higher this year. Airline pilot unions just landed double-digit pay hikes to make up for years of stagnant wages; flight attendant unions now want comparable raises. Jet fuel prices are climbing because of higher demand in the summer. According to the International Air Transport Association’s jet fuel monitor, prices are up 1.4% in just the last week, and about 4% in the last month. Adding to the airlines’ problems is the crisis at Boeing, as well as the less-well-publicized problems with some of the jet engines on planes from rival Airbus. Since an Alaska Airlines Boeing 737 Max jet lost a door plug on a January 5 flight, leaving a gaping hole in the side of the plane 10 minutes after takeoff, the Federal Aviation Administration has limited how many jets Boeing can make over concerns about quality and safety. As a result, airlines have dramatically reduced plans to expand their fleets and replace older planes with more fuel efficient models. In some cases, airlines have asked pilots to take time off without pay, and carriers such as Southwest and United have announced pilot hiring freezes. In addition to the problems at Boeing, hundreds of the Airbus A220 and A320 family of jets globally have also been grounded for at least a month or more to deal with engine problems. Just about all the planes with those engines have been out of sevice for at least a few days to undergo examinations. And Airbus has also cut back the number of planes it expects to deliver to airlines this year because of supply chain problems. Problems for flyers For now, competition in the industry remains fierce: There are 6% more seats available this month compared to July of 2023, according to aviation analytics firm Cirium. And that’s helped to drive fares down — good news for passengers, but more bad news for airlines’ profits. Southwest announced in April that it would stop serving four airports to trim costs — Bellingham International Airport in Washington state, Cozumel International Airport in Mexico, Syracuse Hancock International Airport in New York and Houston’s George Bush Intercontinental Airport. Many more cities lost air service during the financial hard times of the pandemic. While upstart airlines are driving prices lower for travelers, those discount carriers might not survive long term. As the major carriers are making less money, many of the upstarts are flat-out losing money.