Security Audit

Our Web Application Pentest ( WAP) attempts to address the Owasp top 10 & SANS top 20 web application vulnerabilities and other exploitable loopholes of your web application . Along with it our WAP team also test web applications for Business logic flaws that can directly or indirectly effect the functioning of application.

Trainings

We are here to help you solve your biggest query- where and how to start? CDI has brought various courses in Ethical Hacking in Chandigarh where all you technology lovers will be given the much needed push to move forward and create a niche for yourself in the field. From Beginner to Expert level we have many kinds of training patterns.

“Peace” named Hacker is Selling 360 Million MySpace Login Credentials on Darkweb!

 

The famous social networking websites MySpace is in news, because its 360 Million Usernames and passwords have been stolen by hackers. MySpace is a network, which contains blogs, videos, photos, personal profiles and friends groups. This data breach is one from the biggest data breaches of the era. Few days ago, A  Peace named hacker was selling more than 100 million login details of LinkedIn users on the Darkweb and after that he put 360 Million Myspace passwords on sale. Hacker is demanding 6 Bitcoins for data and 6 Bitcoins are equal to 2700 US Dollars. The data is available in an archive and it contains Email ID’s and Passwords of MySpace users. Apart from it, second passwords of users are also included in the stolen data.

 

The reason behind this Data Breach is still not clear. According to a report of LeakedSource, this data is the result of an old data breach of MySpace, which was not publically disclosed by the Social Networking website. More than 1.5 billion leaked records of files, passwords, emails and databases are available on LeakedSource. “One copy of MySpace’s stolen data is now available in the database of LeakedSource. In this copy of data, approximately 360, 000, 000 records of MySpace are available. Approximately 111, 000, 000 stolen accounts had a username and password. Rest of the accounts also have a second password of users.”

 

Also read: Hackers Are Spreading Adult Links By Hacking Twitter Accounts!

 

The password management of MySpace was very bad and that is the reason of this breach. MySpace was using SHA1 method to store password. This is not the end of story. MySpace was not using Salting Method also to store the passwords. All the passwords very short in length. No special characters and upper case letters were included in passwords. Therefore it was very easy for hackers to crack down these passwords.

 

This data breach is one from biggest data breaches. After this great data breach, Reddit is also telling its users to change their passwords.

See more of Cyber Intelligence by logging in.
Connect with cyber security experts,Discover job opportunities,Online Training, Information Security Advisory and lot more.