Mass account theft hits Hotmail users

 

Phishing operation blamed for loss of thousands of passwords.

A massive phishing operation is being blamed for the theft of thousands of login credentials on Microsoft's Hotmail service.

The company said that over the weekend reports emerged of a mass password theft. After investigating the reports, Microsoft said that it had traced the thefts back to a phishing page which gathered user data and that no internal systems had Microsoft had been compromised.

Microsoft news site Neowin.net reported early Monday that user names and passwords for more than 10,000 accounts had been posted on code-sharing service pastebin. The site reported that the majority of the compromised accounts were believed to be from Europe.

Microsoft is advising users whose credentials may have been compromised to immediately change their passwords. Users are also encouraged to change their password recovery questions and update their alternate email addresses.

Both Microsoft and third party security groups have long suggested that users make efforts to avoid phishing attacks by carefully checking the URL and content of pages which ask for log-in information and avoiding providing any information to untrusted parties or suspicious pages.

Though some reports have indicated that phishing activity is down slightly in recent months, experts predict that activity will climb as the holiday season draws nearer.

Copyright ©v3.co.uk


Mass account theft hits Hotmail users
"Personally I have been using a biometric finger and face scan application for a few years to log onto sites called my-iwallet. I can have a different complex password for every site like ..."
By @Comments
 
 
 
Comments: 2
Slatts
Oct 6, 2009 11:03 PM
A fool and his password are soon parted
@Comments
Oct 8, 2009 12:13 PM
Personally I have been using a biometric finger and face scan application for a few years to log onto sites called my-iwallet. I can have a different complex password for every site like O1tsc#E$M5$4 woQ6$5!#xsS3 and all I need to do is scan my finger or face at that site and I'm in.

My wife and kids also have their separate accounts so they cannot see mine or access my sites like Banking, Taxation and other. Heaps of other features also like credit card blocking. It's worth a look, there is a movie there showing some of what it does.
http://www.my-iwallet.com
Comments have been disabled for this article.
 
 
 
Top Stories
Vito Forte: A CIO for tough times
Fortescue Metals CIO talks vendor management and innovation.
 
Telstra shifts BigPond email to Windows Live
All data to be migrated to Microsoft cloud.
 
Vodafone Australia churn nears half a million for 2011
British joint owners 'not pleased'.
 
Sign up to receive iTnews email bulletins
   FOLLOW US...

Latest VideosSee all videos »

Latest Comments
Polls
Would you be concerned about your business' email data being hosted offshore?

   |   View results
Yes
  85%
 
No
  15%
TOTAL VOTES: 228

Vote