link1s.site

The largest password leak in history exposes nearly 10 billion credentials

The largest collection of stolen passwords ever has been leaked to a notorious crime marketplace, according to cybersecurity researchers at Cybernews.

This leak, dubbed RockYou2024 by its original poster “ObamaCare,” holds a file containing nearly 10 billion unique plaintext passwords.

Allegedly gathered from a series of data breaches and hacks accumulated over several years, the passwords were posted on July 4th and hailed as the most extensive collection of stolen and leaked credentials ever seen on the forum.

“In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world,” the researchers told Cybernews. “Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks.”

Credential stuffing attacks are among the most common methods criminals, ransomware affiliates, and state-sponsored hackers use to access services and systems.

Threat actors could exploit the RockYou2024 password collection to conduct brute-force attacks against any unprotected system and “gain unauthorized access to various online accounts used by individuals whose passwords are included in the dataset,” the research team said.

This could affect online services, cameras and hardware

This could affect various targets, from online services to internet-facing cameras and industrial hardware.

“Moreover, combined with other leaked databases on hacker forums and marketplaces, which, for example, contain user email addresses and other credentials, RockYou2024 can contribute to a cascade of data breaches, financial frauds, and identity thefts,” the team concluded.

However, despite the seriousness of the data leak, it is important to note that RockYou2024 is primarily a compilation of previous password leaks, estimated to contain entries from a total of 4,000 massive databases of stolen credentials, covering at least two decades.

This new file notably includes an earlier credentials database known as RockYou2021, which featured 8.4 billion passwords. RockYou2024 added approximately 1.5 billion passwords to the collection, spanning from 2021 through 2024, which, though a massive figure, is only a fraction of the reported 9,948,575,739 passwords in the leak.

Thus, users who have changed their passwords since 2021 may not have to panic about a potential breach of their information.

That said, the research team at Cybernews stressed the importance of maintaining data security. In response to the leak, they recommend immediately changing the passwords for any accounts associated with the leaked credentials, ensuring each password is strong and unique and not reused across different platforms.

Additionally, they advised enabling multi-factor authentication (MFA), which requires an extra form of verification beyond the password, wherever possible, to strengthen cyber security.

Lastly, tech users should utilize password manager software, which securely generates and stores complex passwords, mitigating the risk of password reuse across multiple accounts.

NASA plays 'blame-shifting' game with China as lunar soil research set to start
The returner of the Chang'e-6 lunar probe is opened during a ceremony at the China Academy of Space Technology under the China Aerospace Science and Technology Corporation in Beijing, capital of China, June 26, 2024. The returner of the Chang'e-6 lunar probe was opened at a ceremony in Beijing on Wednesday afternoon. During the ceremony at the China Academy of Space Technology under the China Aerospace Science and Technology Corporation, researchers opened the returner and examined key technical indicators. Photo: Xinhua As the US space industry recently faced yet more delays and stagnation with key components including manned spacecraft and space suits "going wrong," NASA has once again resorted to its "sour grapes" rhetoric upon seeing China's successful retrieval of fresh lunar soils from the far side of the moon, by claiming that China did not directly invite its scientists to participate in the lunar soil research. This behavior is a typical blame-shifting trick, Chinese experts said, noting it is clear to all that it is the US' own laws, not China, that are restricting space cooperation between the two sides. Instead of deceiving themselves by distorting the truth, the US should face up to its own problem of overall weakening engineering capability and the lack of long-term planning in its space industry. After the Chang'e-6 samples, weighing nearly 2 kilograms, were safely transported to a special laboratory for further study on Friday, NASA spokesperson Faith McKie told media that while China worked with the European Space Agency, France, Italy and Pakistan on this mission, "NASA wasn't invited to take part in the moon probe." NASA also didn't get "any direct invitation" to study China's moon rocks, after it welcomed all scientists from around the world to apply to study them, McKie told NatSec Daily. Responding to the remarks, Chinese Foreign Ministry spokesperson Mao Ning told the Global Times on Monday that China is open to having space exchanges with the US, and we also welcome countries around the world to take part in the study of lunar samples. "However, the US side seems to have forgotten to mention its domestic legislation such as the Wolf Amendment. The real question is whether US scientists and institutions are allowed by their own government to participate in cooperation with China," Mao said. "The existence of the Wolf Amendment has basically shut the door to space collaboration between the two countries," Wang Yanan, chief editor of Beijing-based Aerospace Knowledge magazine, told the Global Times on Monday. Even if research institutions of the US have the willingness to work with China on opportunities such as lunar sample research, institutions there must obtain special approval from the US Congress due to the presence of this amendment, Wang explained. Currently, no such "green light" is in sight from the Congress. Furthermore, China's collaboration with international partners is based on equality and mutual benefit, leveraging their respective scientific resources, facilities, and expertise. However, the US only wants what it doesn't have, and its engagement with China would be advantageous only to itself, Wang noted. NASA has found itself embroiled in a number of thorny issues recently, with the latest being Boeing's Starliner manned spaceship experiencing both helium leaks and thruster issues during a June 6 docking with the International Space Station (ISS), which led to an indefinite delay for its crew's return to Earth, despite NASA's insistence that they are not "stranded" in space. The return of the Starliner capsule, while has already been delayed by two weeks, will be put on hold "well into the summer" pending results of new thruster tests, which are scheduled to start Tuesday and will take approximately two weeks or even more, per NASA officials. Previously on June 24, NASA cancelled a spacewalk on the ISS following a "serious situation," when one of the spacesuits experienced coolant leak in the hatch. While being broadcast on a livestream, the astronauts reported "literally water everywhere" as they were preparing for the extravehicular activity, space.com reported. The report said that this is the second time this particular spacewalk was postponed, after a June 13 attempt with a different astronaut group was pushed back due to a "spacesuit discomfort." The recurring issues with the spacesuits are due to their much-extended service lifespan, media reported, as the puffy white ones US astronauts currently wear were designed more than 40 years ago. Despite the pressing need to replace them, NASA announced recently that it is abandoning a plan to develop next-generation spacesuits, which had been committed to be delivered by 2026, CNN reported on Thursday. One of the root causes for such problems is that the US has developed many large technology conglomerates, which for a long time have benefited significantly from government orders and industry monopolies. Consequently, in many complex engineering fields, the level of attention given is greatly insufficient, Wang noted. It also reflected the US' lack of long-term strategic planning for its manned space program. For instance, the ageing spacesuits should have been replaced a decade ago to ensure that operational suits remain in usable condition. Failure to address this issue results in a hindrance to the space station's necessary maintenance tasks and even poses life-threatening risks to astronauts in emergency situations, experts said. The issues with Boeing's spacecraft and the spacesuits are not isolated problems, but reflected a systemic issue in the US space industry - the overall weakening of engineering capabilities, they noted.
Microsoft to offer Apple devices to employees in China, cites absence of Android services
July 8 (Reuters) - Microsoft (MSFT.O), opens new tab intends to offer Apple's (AAPL.O), opens new tab iOS-based devices to its employees in China to access authentication apps, a company spokesperson said on Monday, citing absence of Google's (GOOGL.O), opens new tab Android services in the country. Microsoft has been under increased scrutiny after a series of security breaches, the latest being that of Russian hackers who spied and accessed emails of the company's employees and customers earlier this year. The development was first reported by Bloomberg News, which, citing an internal memo, said the Windows OS-maker instructed its employees in China to use Apple devices at workplace from September. As a part of Microsoft's global Secure Future Initiative, the move to switch to iOS-devices stems from the lack of availability of Google Play Store in China that limits its employees' access to security apps such as Microsoft Authenticator and Identity Pass, the report added. "Due to the lack of availability of Google Mobile Services in this region, we look to offer employees a means of accessing these required apps, such as an iOS device," a company spokesperson told Reuters in an email. Microsoft is among those U.S. companies that have a strong presence in China. It entered the Chinese market in 1992 and also operates a large research and development center in the country. The company will provide iPhone 15 models to employees, currently using Android handsets across China, including Hong Kong, the Bloomberg report said.
US' ban on high-tech investment cannot stifle China's high-tech development
US President Joe Biden signed an executive order on Wednesday restricting investments in China, intended to further stymie China's advances in three cutting-edge technology areas: semiconductors and microelectronics, quantum information technologies and certain artificial intelligence systems. The "decoupling" of high tech from China began under Donald Trump, and the Biden administration has continued that ambition. However, the new order doesn't target US investments already invested in China, but the new ones. The Biden administration has repeatedly claimed that the US restrictions will be narrowly targeted and will not "have a fundamental impact on affecting the investment climate for China." Biden's new executive order is still subject to consultation with the US business community and the public and is not expected to take effect until next year. The order has been brewed for a long time and has generated a lot of publicity. But almost no one believes that this executive order will deal a new practical blow to Chinese high technology, because almost everyone knows that China needs American technology more than American money. The order has gained much attention because it is seen as part of a broader trend of the US drifting away from China. The promulgation and brewing process of the executive order reflects the strong desire of American political elites to suppress China's high-tech development, as well as a fierce game between those supporting the executive order and the concerns of the technology and economic sectors about a potential backfire on the US. It is a kind of compromise. Washington obviously hopes that major allies will follow Biden's executive order. The UK's Sunak government has made cautious statements, stating that it is consulting business and the financial sector before deciding whether to follow suit. In fact, China also has the ability to influence the extent to which Biden's executive order is implemented, as well as the extent to which the US will go in terms of "decoupling" from China. We are definitely not just passive recipients of US policies. American political elites are eager to "decouple" from China as quickly and deeply as possible, but they fear two things: First, this will immediately damage the performance of relevant high-tech companies in the US, undermine their influence and further innovation. The current Biden administration, in particular, does not want to incur strong resentment from Silicon Valley and Wall Street toward the escalating "decoupling," which will ultimately lead to the loss of support for the Democratic Party. Second, they are afraid of pushing China toward more resolute independent innovation to achieve breakthroughs in key technologies such as chips. If the US "decoupling" policy gives birth to major technological achievements in China, it means that Washington will completely lose the gamble: They originally wants to stifle China's high-tech development, but ends up strangling their own companies. What China needs to do next is to fully unleash our innovation vitality, continuously reduce our dependence on high-tech products from the US, and prove that as long as we are determined to achieve independent innovation, we have the ability to accomplish things. We need to prove that being pressured by the US will only make us stronger. As long as there are several solid proofs of this trend, the US policy community will fall into unprecedented chaos, and their panic will be much more severe than when they saw the rapid expansion of the Chinese economy before Trump started the trade war. Regardless of the future of China-US relations, the current battle will be the key battle that determines the future competition between China and the US. China can only win and cannot afford to lose. High-tech products such as chips are not isolated. The innovation power of China's entire manufacturing industry and the creative vitality of the whole society are the foundation for shaping these key achievements. When pressured by the US, our society needs to generate confidence and resilience from all directions, and we need to accelerate and seize every opportunity, rather than shrink and simply defend. Otherwise, the US will gain the upper hand in momentum, and we will truly be in a passive and defensive position. We must see that the US is on the offensive, but its offensive is becoming weaker and weaker, and it is always hesitant with each step. What is presented to China are difficulties and risks, but also the dawn of victory.
"Pictures on the wall were falling," New Yorkers rattled by earthquake
An earthquake jolted New York City on Friday morning, followed by more than 10 aftershocks which shook New Jersey, sending tremors as far as Philadelphia to Boston and jolting buildings in Manhattan and throughout its five boroughs. The preliminary quake, measuring 4.8 magnitude, centered around Lebanon, New Jersey, approximately 60 kilometers from New York City, with a depth of about 5 kilometers. Following the earthquake, New York City mayor Eric Adams stated at a press conference that no injuries had been reported, but they would continue to monitor and inspect critical infrastructure. The densely populated New York City was caught off guard by the unusual event. Broadcaster CBS reported that New York had not experienced an earthquake of this magnitude since 1884. Residents in Brooklyn expressed their shock when experiencing tremors which shook the city. "At first, I thought it was just construction next door, but then I noticed the pictures on the wall had fallen," Jennifer Wu, a resident in New York, told the Global Times on Saturday. Video footage circulating online showed the Statue of Liberty and the New York City skyline trembling as the earthquake struck. An angle from directly above Lady Liberty caught Ellis Island shaking during the incident. "It is fine," New York's famous Empire State Building posted on social platform X after the earthquake. The United Nations headquarters located in New York was hosting a Security Council meeting on the Israeli-Palestinian issue, and diplomats present in the meeting felt the tremors, local media reported. According to the Weather Channel, residents in Baltimore, Philadelphia, New Jersey, Connecticut, Boston and other areas of the Northeast seaboard also reported shaking. Tremors lasting for several seconds were felt over 200 miles away near the Massachusetts-New Hampshire border. The New York mayor told the press that New Yorkers should go about their normal day, while the governor Kathy Hochul emphasized the seriousness of the situation. She initiated assessments for damage across the state and had discussions with New Jersey Governor Phil Murphy. The quake caused flight delays throughout the New York area, with temporary control measures put in place across New York's John F. Kennedy International Airport, Newark Liberty International Airport in Newark, New Jersey, and Baltimore-Washington's Thurgood Marshall International Airport, checking for damage to runways. Operations resumed around Friday noon, ABC reported.
South African rand stable as markets await US interest rate hints
JOHANNESBURG, July 9 (Reuters) - The South African rand was little changed in early trade on Tuesday, as markets awaited the Federal Reserve chair's testimony in Washington and U.S. June inflation data for clues on the country's future interest rate path. At 0644 GMT, the rand traded at 18.1300 against the dollar , near its previous close of 18.1175. "The rand has opened marginally softer at 18.13 this morning, and we expect trading to remain range-bound in the short term," said Andre Cilliers, currency strategist at TreasuryONE. Markets will listen to the tone of Fed Chair Jerome Powell's testimony in Washington on Tuesday and Wednesday and look to June inflation data out of the U.S. later this week for hints on the future interest rate path in the world's biggest economy. "Analysts will be gauging the Fed's response to the recent softer U.S. economic and labour data, with markets already starting to price in two rate cuts this year," Cilliers added. The risk-sensitive rand often takes cues from global drivers like U.S. economic policy in the absence of major local factors. South Africa's benchmark 2030 government bond was slightly stronger in early deals, with the yield down 1 basis point at 9.74%.