{"id":119526,"date":"2024-08-19T21:59:37","date_gmt":"2024-08-19T21:59:37","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2024\/08\/19\/plain-text-passwords-may-have-struck-again\/"},"modified":"2024-08-19T21:59:37","modified_gmt":"2024-08-19T21:59:37","slug":"plain-text-passwords-may-have-struck-again","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2024\/08\/19\/plain-text-passwords-may-have-struck-again\/","title":{"rendered":"Plain text passwords may have struck again"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph mb-20 font-fkroman text-18 leading-160 -tracking-1 selection:bg-franklin-20 dark:text-white dark:selection:bg-blurple [&amp;_a:hover]:shadow-highlight-franklin dark:[&amp;_a:hover]:shadow-highlight-blurple [&amp;_a]:shadow-underline-black dark:[&amp;_a]:shadow-underline-white\">Now, <a href=\"https:\/\/krebsonsecurity.com\/2024\/08\/national-public-data-published-its-own-passwords\/\" target=\"_blank\" rel=\"noopener\"><em>Krebs On Security<\/em> reports<\/a> a roughly identical website to NPD called recordscheck.net was found to be hosting an archive containing site logins as well as source code for some of the site\u2019s tools in plaintext. That would\u2019ve been enough information to access the same consumer records as NPD. The now-removed file contained email data belonging to NPD founder Salvatore Verini, an actor and retired sheriff\u2019s deputy from Florida.<\/p>\n<\/div>\n<div>\n<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph mb-20 font-fkroman text-18 leading-160 -tracking-1 selection:bg-franklin-20 dark:text-white dark:selection:bg-blurple [&amp;_a:hover]:shadow-highlight-franklin dark:[&amp;_a:hover]:shadow-highlight-blurple [&amp;_a]:shadow-underline-black dark:[&amp;_a]:shadow-underline-white\">In an email exchange with <em>Krebs On Security<\/em>, Verini wrote that the file contained an old website version with \u201cnon-working code,\u201d and the site will cease operations \u201cin the next week or so.\u201d Verini did not comment further, citing an \u201cactive investigation.\u201d <em>Krebs On Security<\/em> also found that Verini wrote a positive testimonial for Creation Next, a web developer company mentioned in the archived source code.<\/p>\n<\/div>\n<div>\n<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph mb-20 font-fkroman text-18 leading-160 -tracking-1 selection:bg-franklin-20 dark:text-white dark:selection:bg-blurple [&amp;_a:hover]:shadow-highlight-franklin dark:[&amp;_a:hover]:shadow-highlight-blurple [&amp;_a]:shadow-underline-black dark:[&amp;_a]:shadow-underline-white\">Since the leak on the hacker forum last month, several websites like <a href=\"http:\/\/npdbreach.com\" target=\"_blank\" rel=\"noopener\">npdbreach.com<\/a>, from Atlas Data Privacy Corp, and <a href=\"http:\/\/npd.pentester.com\" target=\"_blank\" rel=\"noopener\">npd.pentester.com<\/a> have popped up, saying they offer searches to find out if your information is included in the leak. Using these services, of course, means you need to put your name, birth year, and perhaps your SSN into someone\u2019s form. As <em>Krebs<\/em> notes, given the many leaks that <a href=\"https:\/\/www.theverge.com\/2017\/9\/22\/16345580\/equifax-data-breach-credit-identity-theft-updates\" target=\"_blank\" rel=\"noopener\">have already revealed similar information<\/a>, the best course of action available may be to <a href=\"https:\/\/www.theverge.com\/2017\/9\/8\/16276194\/credit-freeze-equifax-how-to-data-breach\" target=\"_blank\" rel=\"noopener\">put a freeze on your credit report<\/a> with the major bureaus (Equifax, Experian, and TransUnion) and take advantage of the <a href=\"https:\/\/consumer.ftc.gov\/consumer-alerts\/2023\/10\/you-now-have-permanent-access-free-weekly-credit-reports\" target=\"_blank\" rel=\"noopener\">free weekly credit reports<\/a> you are entitled to.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/www.theverge.com\/2024\/8\/19\/24223858\/national-public-data-breach-ssn-privacy\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Now, Krebs On Security reports a roughly identical website to NPD called recordscheck.net was found to be hosting an archive containing site logins as well as source code for some of the site\u2019s tools in plaintext. That would\u2019ve been enough information to access the same consumer records as NPD. The now-removed file contained email data [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":119527,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-119526","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/119526","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=119526"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/119526\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/119527"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=119526"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=119526"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=119526"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}