GitHub Accounts Compromised In Password Attack

GitHub has admitted a number of user accounts have been compromised by an attacker who used previously published account credentials from previous breaches of other online services.

The attacker took these account credentials, such as email addresses and passwords, from other online data breaches and tried them on GitHub accounts.

GitHub said that the attacker had been able to log in to “a number” of GitHub accounts.
“We immediately began investigating,” said GitHub today, but added: “GitHub has not been hacked or compromised.”

Reset

GitHub has now reset passwords on all affected accounts, and is in the process of sending individual notifications to users who were affected.

“If your account was impacted, we are in the process of contacting you directly with information about how to reset your password and restore access to your account,” said GitHub.
“We encourage all users to practice good password hygiene and enable two-factor authentication to protect your account.”

Read more: GitHub Is Relying On Developers To Crack The Business Market

In May it was revealed that 117 million LinkedIn account credentials were up for sale on the dark web. A hacker, known as “Peace,” contacted technology site Motherboard this to offer the details, which are up for sale for five Bitcoins (around £1,564) on dark web site The Real Deal.

Peace claims that that the data was stolen during a breach of LinkedIn back in 2012, in which around 6.5 million encrypted passwords were posted online. The compromised GitHub credentials may well be from the fallout of this breach.

Earlier in June, Facebook founder Mark Zuckerberg’s Twitter and Pinterest accounts were accessed by hackers who noticed that Zuckerberg used the same password across several different sites.

Take our data breach quiz here!

RESEARCH: Who will benefit most from the Internet of Things (IoT)?

Ben Sullivan

Ben covers web and technology giants such as Google, Amazon, and Microsoft and their impact on the cloud computing industry, whilst also writing about data centre players and their increasing importance in Europe. He also covers future technologies such as drones, aerospace, science, and the effect of technology on the environment.

Recent Posts

OpenAI Hit By Austrian Complaint Over ChatGPT ‘False Data’

Rights group argues ChatGPT tendency to generate false information on individuals violates GDPR data protection…

5 hours ago

EU Designates Apple’s iPad OS As DMA ‘Gatekeeper’

European Commission says Apple's iPadOS is 'gatekeeper' due to large number of businesses 'locked in'…

5 hours ago

Beating the Barbarians in the Cloud

As the cloud continues to be an essential asset for all businesses, developing and maintaining…

5 hours ago

Austria Conference Calls For Controls On ‘Killer Robots’

Internatinal conference in Vienna calls for controls on AI-powered autonomous weapons to ensure humans remain…

6 hours ago

Taiwanese Chip Giant Exits China Mainland

Major Taiwan chip assembly and test firm KYEC to sell Jiangsu subsidiary, exit mainland China…

7 hours ago

Deepfakes: More Than Skin Deep Security

As deepfake technology continues to blur the lines between reality and deception, businesses and individuals…

7 hours ago