5 million Gmail passwords published, but don't panic

Necuno

Court Jester
Joined
Sep 27, 2005
Messages
58,566
Reaction score
3,437
http://www.engadget.com/2014/09/10/5-million-gmail-passwords-leaked/

Google office

You might need to change your email password in the very near future. A member at a Russian Bitcoin forum has posted almost 5 million Gmail passwords, around 60 percent of which are reportedly still working. It's not clear how the poster managed to scoop up all this account info, but Google tells Cnews that it comes from a long stretch of hacking and phishing attempts that stole data from individual users. Gmail's servers weren't breached, the search giant says, and much of what's there is old. That's somewhat comforting, but you may want to check if your account is one of the unfortunate targets -- you don't want to give thieves easy access to your most sensitive info.

Leaks not included... although it might be useful to check the leak ;)

:edit
Check your leak:
 
Last edited:
Happened yesterday I think. There is a website where you can check your details, isleaked or something.
 
Hmm is that safe ?

Nah, you don't have to worry about that site, only really need to change your Gmail password.

That site only compares your address to that what is in the leaked database. You can hide up to three characters with asterisk (*).
 
Hmm is that safe ?

"No! Your account probably is not in public access! However, we are strongly recommend to change your password periodically"

Besides my password is myBB2014! it's quite strong and I use it everywhere.
 
We found that less than 2% of the username and password combinations might have worked, and our automated anti-hijacking systems would have blocked many of those login attempts. We’ve protected the affected accounts and have required those users to reset their passwords.

It’s important to note that in this case and in others, the leaked usernames and passwords were not the result of a breach of Google systems. Often, these credentials are obtained through a combination of other sources.
http://googleonlinesecurity.blogspot.com/2014/09/cleaning-up-after-password-dumps.html

Why do people post old and incorrect news?
 
207197f434.png


:(
 
Hmm, it has one of my accounts but the first 2 letters of the password it shows are from an outdated password..
I really have no idea how that pass could have been captured cos it's not my primary account and apart from my android phone and email client I practically never even log into it..
 
Hmm, it has one of my accounts but the first 2 letters of the password it shows are from an outdated password..
I really have no idea how that pass could have been captured cos it's not my primary account and apart from my android phone and email client I practically never even log into it..

Android phone ? You may have one or more of the thousands of malware known to have targeted android
 
Android phone ? You may have one or more of the thousands of malware known to have targeted android
Please explain to me how malware was gonna get the password out of the phone? Out of the 'thousands' of malware please point me to one.
 
Last edited:
Android phone ? You may have one or more of the thousands of malware known to have targeted android
Well not gonna say it's impossible, but I'm pretty sure it would've needed to keylog the pass when I set it up (which was just once), doubt it could somehow get it otherwise. Thing is though, how only that email addy and not my primary one which is also on my phone and I access via web way more frequently?
 
Top
Sign up to the MyBroadband newsletter
X