Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

184 million accounts just leaked, yours could be next
Kim Komando ^ | May 31, 2025 | By Kim Komando

Posted on 05/31/2025 5:08:00 AM PDT by dennisw

click here to read article


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-62 next last
To: dennisw

I get Kurt the CyberGuy’s daily newsletter, and he was saying this is HUGE. Apple put out an immediate alert with an update fix available. I checked my phone and it had already updated to iOS 18.5.


21 posted on 05/31/2025 6:06:42 AM PDT by telescope115 (I NEED MY SPACE!!! đź”­)
[ Post Reply | Private Reply | To 1 | View Replies]

To: dennisw

Here is the problem... when you land on the source page for this article these are the hidden spy scripts hitting your browser. And most of them follow you around the net wherever you go and collect log in credentials...

komando.com
…convertkit.com
…crazyegg.com
…google-analytics.com
…googlesyndication.com
…googletagmanager.com
…gstatic.com
…privacy-mgmt.com
…pub.network
…sparkloop.app

GOOGLE is the MAIN violator...


22 posted on 05/31/2025 6:17:16 AM PDT by Openurmind (AI - An Illusion for Aptitude Intrusion to Alter Intellect. )
[ Post Reply | Private Reply | To 1 | View Replies]

To: dennisw
Which is why I use the vim editor's built-in encryption feature to store my passwords locally. I also use two-part passwords, with one standard "unguessable" prefix being the first several characters and the second unguessable characters being specific to the service. That way, if I needed to share my passwords, I could send a list of second half of my passwords over an untrusted channel and share the prefix using other means.

In fact, even when I store my password encrypted locally, I don't save the prefix. I just put in a placeholder like '{prefix}' in its place. I commit the prefix to memory and share it only by voice with the very few who may someday need it.

The browser's memorization of passwords can be an Achilles' heel. In fact, I think I'll stop using that browser feature altogether and just copy/paste from my local vim file to address that weakness.

23 posted on 05/31/2025 6:22:39 AM PDT by The Duke (Not without incident.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: dennisw
I am a little bit skeptical that my Microsoft log in pass word has been exposed.

Hackers may be able to get my screen name or Hotmail account name.

But, direct Hacker access to log in pass words at Microsoft? I am skeptical.

Earlier reports on this massive hack said it involves a Third Party vendor.

If that is the case, than your MSFT log in password is probably completely safe.

24 posted on 05/31/2025 6:29:13 AM PDT by zeestephen (Trump Landslide? Kamala lost the election by 230,000 votes, in WI, MI, and PA.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: FreedomPoster

In addition, everyone should freeze your credit.
This means contacting the four credit agencies and ask them to freeze your credit.
This means no one will be able to take out credit in your name INCLUDING YOU.

You will also need to keep a letter sent to you by one of those agencies in a safe place because it will make unfreezing your credit easier in the future.

I did this after I was one of the millions of victims of the Experian data breach.
My credit has been frozen for at least seven years or more.
I have not taken out any type of loan or new credit card in that time.
This is Free in some states.
There may be a small one time fee with one or two of the agencies.

There is absolutely no need to pay for some credit monitoring company.
When I was a victim of the breach Experian would have given me free credit monitoring for two years.
However, after that I would have had to pay for the service.


25 posted on 05/31/2025 6:40:04 AM PDT by woodbutcher1963
[ Post Reply | Private Reply | To 13 | View Replies]

To: zeestephen
By the way...

Microsoft Edge continuously scans the Dark Web for pass words.

If they see one of your archived passwords for sale, they immediately alert you by email.

26 posted on 05/31/2025 6:43:23 AM PDT by zeestephen (Trump Landslide? Kamala lost the election by 230,000 votes, in WI, MI, and PA.)
[ Post Reply | Private Reply | To 24 | View Replies]

To: MulberryDraw

“I use two step logins when available. Especially on financial sites.”

I use my windows 11 pc for all financials. Never my phone.


27 posted on 05/31/2025 6:44:13 AM PDT by dennisw (💯🇺🇸 Truth is Hate to those who Hate the Truth. 🇺🇸💯)
[ Post Reply | Private Reply | To 7 | View Replies]

To: dennisw

frontpagemag.com
…bootstrapcdn.com
…doubleclick.net
…google.com
…googletagmanager.com
…gstatic.com
…jnn-pa.googleapis.com
…trinitymedia.ai
…youtube.com

X/Twitter, why directly connected to Google and Apple?
…x.com
…cdn-apple.com
…google.com
…twimg.com

Newsweek:

newsweek.com
…33across.com
…3lift.com
…a-mx.com
…abtasty.com
…adsafeprotected.com
…adsrvr.org
…agkn.com
…amazon-adsystem.com
…aticdn.net
…ay.delivery
…casalemedia.com
…criteo.com
…crwdcntrl.net
…doubleclick.net
…doubleverify.com
…ebxcdn.com
…google.com
…googletagmanager.com
…headliner.link
…imasdk.googleapis.com
…indexww.com
…kargo.com
…ketchcdn.com
…liadm.com
…maze.co
…mgid.com
…ml314.com
…npttech.com
…openx.net
…outcomes.net
…p7cloud.net
…privacymanager.io
…pubmatic.com
…pushnami.com
…resetdigital.co
…rkdms.com
…rlcdn.com
…rubiconproject.com
…sail-horizon.com
…scorecardresearch.com
…smilewanted.com
…stickyadstv.com
…teads.tv
…the-ozone-project.com
…viafoura.co

FOX:
foxnews.com
…amazon-adsystem.com
…datadoghq-browser-agent.com
…doubleclick.net
…fncstatic.com
…google.com
…gstatic.com
…outbrain.com
…strike.fox

Breitbart:
breitbart.com
…ajax.googleapis.com
…cloudflare.com
…cookielaw.org
…doubleclick.net
…googlesyndication.com
…googletagmanager.com
…gstatic.com
…onetrust.com
…webcontentassessor.com

Grace To You:
gty.org
…cloudflare.com
…cloudflareinsights.com
…crazyegg.com
…doubleclick.net
…google-analytics.com
…googletagmanager.com
…gstatic.com
…reftagger.com
…youtube.com

New York Post:
nypost.com
…adlightning.com
…ads-twitter.com
…adsrvr.org
…amazon-adsystem.com
…cloudflare.com
…cookielaw.org
…doubleclick.net
…google.com
…googletagmanager.com
…id5-sync.com
…jwplayer.com
…liadm.com
…rlcdn.com
…spot.im
…typekit.net
…wp.com

Wall Street Journal:
wsj.com
…adsafeprotected.com
…amazon-adsystem.com
…cxense.com
…doubleclick.net
…doubleverify.com
…dowjones.io
…google.com
…gstatic.com
…newrelic.com
…privacy-mgmt.com
…privacymanager.io
…spot.im
…tinypass.com
…wsj.net
…zqtk.net

San Francisco Chronicle / SFGate.com:
sfgate.com
…agkn.com
…chartbeat.com
…everlit.audio
…ex.co
…googletagmanager.com
…hearstnp.com
…htlbid.com
…ketchcdn.com
…liadm.com
…newrelic.com
…newspapers-142716.uc.r.appspot.com
…ntv.io
…optable.co
…p-n.io
…revcontent.com
…sail-horizon.com
…scorecardresearch.com

Yale University Press:
yale.edu
…adroll.com
…doubleclick.net
…google-analytics.com
…google.com
…googletagmanager.com
…hotjar.com
…metricool.com
…newrelic.com
…sharethis.com
…siteimproveanalytics.com

Anyone getting the idea about the real problem here???


28 posted on 05/31/2025 6:45:22 AM PDT by Openurmind (AI - An Illusion for Aptitude Intrusion to Alter Intellect. )
[ Post Reply | Private Reply | To 1 | View Replies]

To: FreedomPoster

“All your financial accounts should have 2FA (2 factor authentication, where you get a text with a 6 digit code), as well as separate strong passwords”

All mine ask for 2FA except for Chase. Maybe I turned it off inadvertently. I should get 2FA established for Chase.


29 posted on 05/31/2025 6:49:14 AM PDT by dennisw (💯🇺🇸 Truth is Hate to those who Hate the Truth. 🇺🇸💯)
[ Post Reply | Private Reply | To 13 | View Replies]

To: dennisw

As super computers and AI progresses, no passwords will be safe, just a matter of time.


30 posted on 05/31/2025 6:55:55 AM PDT by delta7
[ Post Reply | Private Reply | To 1 | View Replies]

To: delta7

“As super computers and AI progresses, no passwords will be safe, just a matter of time.”

How about your unique iris scan on your laptop and “devices”, using this as your password. That and your fingerprint. The ultimate in 2 factor authentication.


31 posted on 05/31/2025 7:03:15 AM PDT by dennisw (💯🇺🇸 Truth is Hate to those who Hate the Truth. 🇺🇸💯)
[ Post Reply | Private Reply | To 30 | View Replies]

To: dennisw

How about your unique iris scan on your laptop and “devices”, using this as your password. That and your fingerprint. The ultimate in 2 factor authentication.


according to movies and tv there are ways around this.


32 posted on 05/31/2025 7:04:53 AM PDT by PeterPrinciple (Thinking Caps are no longer being issued, but there must be a warehouse full of them somewhere)
[ Post Reply | Private Reply | To 31 | View Replies]

To: dennisw

“How about your unique iris scan on your laptop and “devices”, using this as your password. That and your fingerprint. The ultimate in 2 factor authentication.”

Which can also be stolen from your phone or blocked remotely. Just get in the car and drive to the Bank...


33 posted on 05/31/2025 7:16:30 AM PDT by Openurmind (AI - An Illusion for Aptitude Intrusion to Alter Intellect. )
[ Post Reply | Private Reply | To 31 | View Replies]

To: zeestephen

[[ But, direct Hacker access to log in pass words at Microsoft? I am skeptical]]

3specially when a company cpuld poten5ially be sued into bankruptcy if their lack of protection causes massive damages- maybe companies are somehow protected from suits, but i dont see how- perhaps though their excuse is “users shluld know the inherant risks associated with online use, ie buyer beware.


34 posted on 05/31/2025 7:20:45 AM PDT by Bob434 (Time flies like an arrow, fruit flies like a banana)
[ Post Reply | Private Reply | To 24 | View Replies]

To: dennisw

How long before they hav3 “eyescan loggers” (like “keystroke loggers”)


35 posted on 05/31/2025 7:23:12 AM PDT by Bob434 (Time flies like an arrow, fruit flies like a banana)
[ Post Reply | Private Reply | To 31 | View Replies]

To: dennisw

Solicitation. The article is an ad for the NordPass password manager.

Just saying...


36 posted on 05/31/2025 7:24:08 AM PDT by Moltke (Reasoning with a liberal is like watering a rock in the hope to grow a building.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Jack023

I checked and it gave one breach in 2024 to a site I have never used. So data is suspect.


37 posted on 05/31/2025 7:41:54 AM PDT by wgmalabama (For rent —)
[ Post Reply | Private Reply | To 12 | View Replies]

To: dennisw

Hackers, like drug dealers and child molesters, should be executed when caught.


38 posted on 05/31/2025 7:42:52 AM PDT by JimRed (TERM LIMITS, NOW! Finish the damned WALL! TRUTH is the new HATE fSPEECH! )
[ Post Reply | Private Reply | To 1 | View Replies]

To: dennisw

Hackers, like drug dealers and child molesters, should be executed when caught.


39 posted on 05/31/2025 7:42:52 AM PDT by JimRed (TERM LIMITS, NOW! Finish the damned WALL! TRUTH is the new HATE fSPEECH! )
[ Post Reply | Private Reply | To 1 | View Replies]

To: zeestephen
Microsoft Edge continuously scans the Dark Web for pass words.

If they see one of your archived passwords for sale, they immediately alert you by email.

I get so many fake emails, pretending to be what they're not, how could I trust that warning?

40 posted on 05/31/2025 7:49:28 AM PDT by JimRed (TERM LIMITS, NOW! Finish the damned WALL! TRUTH is the new HATE fSPEECH! )
[ Post Reply | Private Reply | To 26 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-62 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson