Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Phandroid User Forums Breached – 1M Accounts Likely Targeted

Phandroid, a web site dedicated to Android news and discussion, is urging all of its users – more than a million of them in fact – to change their passwords after a server hosting their online forum was hacked earlier this week. News of this latest compromise comes after a string of security incidents this month, leaving some to wonder what’s next.

Phandroid, a web site dedicated to Android news and discussion, is urging all of its users – more than a million of them in fact – to change their passwords after a server hosting their online forum was hacked earlier this week. News of this latest compromise comes after a string of security incidents this month, leaving some to wonder what’s next.

The successful attack on Phandroid was made possible due to a vulnerability on the forum’s server, which led to the database compromise. On Tuesday, the forum’s administrator said that the vulnerability was patched, and that developers combed the database and file systems for malicious edits. None were found.

“I was informed by our sever/developer team that the server hosting androidforums.com was compromised and the website’s database was accessed. While the breach is most likely harmless there are important and potential pitfalls,” the admin, Phases, said in a post.

The breach exposed the forum’s database user table, which led the website to assume the worst. The data housed in the table includes, usernames, passwords (random unique salts per users, with an unknown hashing method), registration IP address, email addresses, and more.

“This was, in our current opinion, most likely an e-mail harvesting attempt. A spammer could theoretically attempt to bulk e-mail all [users] with the user database…With a username and hashed password one could open a session with accounts on other sites that use the same credentials – if they gain file level access to that site first. These were salted passwords which adds to the complexity, but nonetheless we recommend playing it safe.”

This has been a nightmare week for several organizations. Included with the likely exposure of 1 million accounts on Phandroid, Yahoo is investigating a breach that led to the loss of 450,000 records, while social networking site Formspring lost 420,000 hashed passwords. On top of this, Best Buy reported an uptick in hacking attempts on their users accounts, and popular web hosting control panel Plesk was linked to a run of 50,000 website compromises.

If anything, security teams are going to enjoy some generous overtime, but it’s unfortunate that it is because of digital pain and suffering.

Written By

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Kim Larsen is new Chief Information Security Officer at Keepit

Professional services company Slalom has appointed Christopher Burger as its first CISO.

Allied Universal announced that Deanna Steele has joined the company as CIO for North America.

More People On The Move

Expert Insights

Related Content

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Cybercrime

As it evolves, web3 will contain and increase all the security issues of web2 – and perhaps add a few more.

Cybercrime

Luxury retailer Neiman Marcus Group informed some customers last week that their online accounts had been breached by hackers.

Cybercrime

Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Artificial Intelligence

The release of OpenAI’s ChatGPT in late 2022 has demonstrated the potential of AI for both good and bad.

Cybercrime

Satellite TV giant Dish Network confirmed that a recent outage was the result of a cyberattack and admitted that data was stolen.