The leading source for credible citizen reporting

Report Your News
Take the tour...

Gmail, Yahoo and AOL dragged into Hotmail hack alert

Warminster : United Kingdom | about 1 month ago  
Views: 163

The theft of thousands of passwords to online email services is now known to include account details for all major e-mail providers, including Hotmail, Gmail, Yahoo and AOL.

Full details of over 10,000 e-mail accounts were published on a specialist website for developers on October 1. As reported yesterday, the list was believed to comprise Microsoft Hotmail accounts, but it has since emerged that users of other e-mail services, such as Google’s Gmail, may also have had their passwords stolen.

Microsoft is investigating how a hacker apparently accessed more than 10,000 accounts with addresses ending hotmail.com, msn.com and live.com. The details were posted on a site used by technology experts last week but have since been removed.

A Microsoft spokesman confirmed that the details were obtained as a result of a phishing scam. “We are working diligently to help customers regain control of their accounts,” he said.

In a statement, the company said: "We are aware that some Windows Live Hotmail customers’ credentials were acquired illegally by a phishing scheme and exposed on a website. Upon learning of the issue, we immediately requested that the credentials be removed and launched an investigation. As part of that investigation, we determined that this is not a breach of any Microsoft servers. Subsequently we are taking measures to block access to all of the accounts that were exposed and have resources in place to help those users reclaim their accounts."

In a statement today, Google said: "We recently became aware of an industry-wide phishing scheme through which hackers gained user credentials for web-based mail accounts including Gmail accounts. As soon as we learned of the attack, we forced password resets on the affected accounts. We will continue to force password resets on additional accounts when we become aware of them.

"This is not a breach of Gmail security, but rather a scam to get users to give away their personal information to hackers. Once the attackers gain user credentials, they can easily access and modify the affected accounts as they desire. This may include changing a user's contact list, altering the inbox, or even deleting the account.

"We recognise how many people depend on Gmail, and we strive to make it as secure as possible by consistently fighting spam and providing security features to users. To keep your Google account secure online, we recommend you only ever enter your Gmail sign-in credentials to web addresses starting with https://www.google.com/accounts, and never click-through any warnings your browser may raise about certificates. We also provide the option to run Gmail sessions using https and strongly encourage users to update their secondary email address and SMS recovery option in case their account is compromised."

Phishing is a process where members of the public are duped into handing over their personal details, such as user names, passwords and credit card details. Victims send the information by e-mail to people posing as banks or online stores.

Data can also be stolen by infecting a person’s personal computer with viruses and then raiding it for information.

If you are concerned about the safety of your account, you should log in as soon as possible and change your password. If you cannot log in, your password may have been stolen and changed by an unauthorised user.

If you believe that your Microsoft account has been compromised, you should follow this link to the company’s help page.

If you believe your Gmail account is at risk, you should head to this page.

Tom Warren, a writer on Neowin.net, the technology blog that first revealed the breach, said that most of the compromised Hotmail passwords were from Europe, suggesting that many British addresses could have been among those compromised.

Hotmail has more than 14 million users in Britain - around five million more than its closest rival, Yahoo! Mail - and about 28 per cent of the total users of webmail services, according to Nielsen figures.

Social networking sites such as Twitter were abuzz with the reports, with users advising each other to change their e-mail passwords immediately.

Lukas Oberhuber, chief technical officer of the online specialist the Forward Internet Group, said: "Phishing attacks, such as the one that has now spread to Gmail, are almost impossible to stop because they convince victims they are inputting their private details into a safe website. It's all about convincing people, which scammers have been doing forever.

"Phishing has been going on for years, so these compromises are no surprise. At the same time, the attacks get more and more sophisticated all the time. All the latest versions of the major browsers, Internet Explorer, Firefox and Safari, have in-built phishing protection. The problem is, it doesn't work for phishing websites they don't know about."

Microsoft is the latest in a long line of big organisations, from the UK Government to major banks, to have been faced with internet security breaches recently.

Earlier this year The Times revealed that around four million British identities had been stolen and made available on the web. Lucid Intelligence, a British company, had intercepted highly sensitive financial information, including credit card details, bank account numbers, telephone numbers and even PINs, all of which had been made available to the highest bidder.

In 2007 the personal and bank details of 25 million people — almost every child in the country, as well as their parents and carers — were lost by HM Revenue & Customs. The information went missing when two CDs containing the details were mislaid.

  • Print
  • Share:
  • Share
  • Digg
  • Reddit
  • Facebook
  • Stumbleupon
News Stories
 >
  • News Source: Courier & Press | about 1 month ago
    Using the new SharePoint services, users can co-author documents in Word, PowerPoint and OneNote. With 2010, Microsoft is also looking to compete with others in a market they aren't used to the free, Web based one. Office 2010 will include Web-based...
  • News Source: Uinta County News | about 1 month ago
    Written by NetGuide Contributor    Monday, 12 October 2009 The hacked accounts of Hotmail, Gmail and Yahoo users are being used to send phishing spam, reports security company Websense. The spam emails are targeting those on the compromised...
  • News Source: Androscoggin News | about 1 month ago
    by Carly Newman There has been a marked increase in the amount of spam e-mails being sent from Yahoo, Gmail, and Hotmail accounts , according to analysts at Websense Security Labs. Websense said on Thursday that personalized spam e-mails had been...
  • News Source: San Francisco Chronicle | about 1 month ago
    Earlier this week, news came of compromised e-mail accounts numbering in the tens of thousands involving Hotmail, Gmail, Yahoo Mail and other Web mail providers...Who hasn't received an e-mail from a purported Nigerian magnate seeking your help?...
  • News Source: The Scotsman | about 1 month ago
    Much of the rise is due to increased exploitation of security weaknesses in home computers to target existing bank accounts. Financial Fraud Action UK (FFA) this week reported an alarming 55 per cent rise to £39 million in the cost of online banking...
  • News Source: Wellington Dominion | about 1 month ago
    The Firefox browser is hugely popular with Mac computer users and is Microsoft's biggest threat in the tussle for browser supremacy. Firefox software is open source -its software code is publicly available, so developers are free to customise and...
Blogs
 >
  • Blog Source: www.electricpig.co.uk
    The phishing scam that led to thousands of Hotmail account details being posted online could have affected many more webmail services than first though: Gmail,
  • Blog Source: www.bbc.co.uk
    Top G-man in Phishing scam. Maggie Shiels | 09:11 UK time, Friday, 9 October 2009. Over the last few days, many of you will have read all about the phishing attacks on Gmail, Yahoo, Hotmail and AOL involving more than 30000 accounts. ...
  • Blog Source: www.eukhost.com
    Apparently its not just Live Hotmail accounts that have been leaked, Gmail accounts have been leaked too. Apparently its happened from Phishing sites, as far as I'm aware: BBC NEWS | Technology | Scam hits more e-mail accounts ...
  • Blog Source: www.electricpig.co.uk
    Microsoft says there was no breach of data on its part, suggesting a phishing attack tricking users with a fake email was the culprit. The chances that you've been affected by the Hotmail attack are admittedly slim: there are more than ...
Images
 >
 
Videos
 >
 
Reported by genius-world

Related Allvoices Contributions

Report Your News Got a similar story?
Add it to the network!

Or add related content to this report

Cell phones Cell phones use report code: @4355659

Most Popular Reports

Related Tweets

Related Allvoices Reports

Contributions

Help and Accounts


Use of this site is governed by our Terms of Use Agreement and Privacy Policy.

© Allvoices, Inc 2008-2009. All rights reserved.