Apparently attackers successfully broke into Washington Post servers and accessed employee usernames and passwords. Post officials noted that their systems stored the credential information in “encrypted form.” Hopefully this statement means that the passwords were at least salted and hashed.
via ArsTechnica.com
The Washington Post’s servers were penetrated by hackers who accessed employees’ user names and password data in a breach that marked the third intrusion in as many years, the paper reported.
Security personnel still don’t know the full extent of the loss, an article published Wednesday said. The intrusion was discovered by outside security consultant Mandiant, which reported it to Washington Post officials Wednesday. Compromised data includes employees’ user names and passwords that were “stored in encrypted form,” which typically means as a cryptographic hash. Post officials, working under the assumption that a fair percentage of hashed passwords can be cracked, planned to direct all employees to change their passwords.
There’s no evidence yet that subscriber information such as credit card data or home addresses was accessed. There was also no immediate sign that hackers had accessed the paper’s publishing system, employee e-mail databases, or sensitive personal information belonging to workers. Wednesday’s article cited a Washington Post official as saying investigators believe the intrusion lasted at most a few days.
Continued here.
#####
Today’s post pic is from Platfora.com.
Washington Post Servers Hacked http://t.co/rUPuaIBffm
#NOVABLOGGER: Washington Post Servers Hacked http://t.co/6OOv6QpxD0 http://t.co/H72cmUJIQW
#NOVABLOGGER: Washington Post Servers Hacked http://t.co/CbV2LwVRM8 http://t.co/EDzUCPe5jU
BLOGGED: Washington Post Servers Hacked http://t.co/6OOv6QpxD0
Washington Post Servers Hacked: [nova#infosec.com] Apparently attackers successfully hacked into Washington Post… http://t.co/kz59zzoBiL
Washington Post Servers Hacked – find out more here http://t.co/DSFSKE9ucz #infosec
Washington Post Servers Hacked http://t.co/mWgEhPUBLi
Washington Post Servers Hacked – find out more here http://t.co/QOT2RjtoAd #infosec