news.volyx.in

Internet Archive: Security breach alert (theverge.com)

1091 points by ewenjo · 667 days ago · 607 comments on HN

Article summary

The Internet Archive has suffered a security breach, with a pop-up message on the site claiming that 31 million accounts have been compromised. The breach was confirmed by the site's founder, Brewster Kahle, who stated that the site had been defaced and was experiencing a DDoS attack. The compromised data includes email addresses, usernames, and salted-encrypted passwords. The breach was reported to Have I Been Pwned, a website that tracks data breaches.

Main themes

  • Security breach
  • Data compromise
  • DDoS attack
  • Internet Archive
  • Cybersecurity
  • Data protection

What commenters say

  • The security breach at the Internet Archive is likely the result of a malicious attack, rather than an internal issue.
  • Using unique email addresses and passwords for each service is the strongest approach to protecting personal data.
  • The use of password managers and two-factor authentication can help to mitigate the effects of a data breach.
  • Some commenters believe that the breach may have been exaggerated or misrepresented, and that the true extent of the damage is unclear.
  • The breach highlights the importance of robust cybersecurity measures, including regular security audits and penetration testing.
  • The fact that 54% of the compromised accounts were already listed on Have I Been Pwned suggests that many users may have already been affected by previous breaches.
  • Some commenters are skeptical of the effectiveness of using unique email addresses and passwords, citing the potential for phishing attempts and other forms of exploitation.
  • The breach has sparked a discussion about the best practices for protecting personal data, with some advocating for the use of email aliasing services and others recommending the use of password managers and two-factor authentication.