Plain Text Passwords Strike Once More

National Public Data (NPD) shockingly disclosed last week that it endured a security violation that could be traced back to December of the previous year. An alleged pilfered NPD database, encompassing a staggering 2.9 billion lines of data, including Social Security numbers, was flaunted on the dark web in April by a hacker group named USDoD for a whopping $3.5 million. Subsequently, the stolen data has been made public in diverse locations.

Now, “Krebs On Security” reports that a website strikingly similar to NPD, called recordscheck.net, was discovered hosting an archive that contained site logins and the source code for some of the site’s tools in plaintext. This would have provided sufficient information to access the same consumer records as NPD. The now-removed file contained email data belonging to NPD founder Salvatore Verini, an actor and retired sheriff’s deputy from Florida.

In an email interchange with “Krebs On Security”, Verini wrote that the file encompassed an old website version with “non-working code”, and the site would halt its operations “in the next week or so”. Verini refrained from further comments, citing an “active investigation”. “Krebs On Security” also unearthed that Verini composed a positive testimonial for Creation Next, a web developer company mentioned in the archived source code.

Since the leak on the hacker forum last month, several websites such as npdbreach.com, from Atlas Data Privacy Corp, and npd.pentester.com have emerged, claiming to offer searches to determine if your information is included in the leak. Utilizing these services, undoubtedly, implies that you need to input your name, birth year, and perhaps your SSN into someone’s form. As “Krebs” points out, given the numerous leaks that have already exposed similar information, the most advisable course of action might be to impose a freeze on your credit report with the major bureaus (Equifax, Experian, and TransUnion) and avail yourself of the free weekly credit reports to which you are entitled.

  • kolla

    Related Posts

    MrBeast Faults CrowdStrike Outage for Bad Games

    The CrowdStrike global IT outage, which brought down approximately 8.5 million Windows PCs, disrupted flights, impacted hospitals, banks, and more, has now seemingly become a scapegoat for the appalling conditions…

    Nvidia’s Next AI Chip Delayed by Flaw Reportedly

    Nvidia has allegedly informed Microsoft and at least one other cloud provider that the production of its “Blackwell” B200 AI chips will be delayed by at least three months compared…

    You Missed

    New Avatar: The Last Airbender game looks super ambitious

    • By mvayask
    • October 5, 2024
    • 41 views

    PS5 colorful chrome accessories pre-order now

    • By mvayask
    • October 5, 2024
    • 39 views
    PS5 colorful chrome accessories pre-order now

    ChatGPT’s new Canvas feature like Claude’s Artifacts vividly

    • By mayask
    • October 5, 2024
    • 40 views
    ChatGPT’s new Canvas feature like Claude’s Artifacts vividly

    OpenAI raises $6.6B in latest funding round

    • By mayask
    • October 5, 2024
    • 45 views
    OpenAI raises $6.6B in latest funding round

    Qualcomm aims to add cool AI tools to Android phone

    • By mayask
    • October 5, 2024
    • 40 views
    Qualcomm aims to add cool AI tools to Android phone

    Reddit in $60M deal with Google for AI tools boost

    • By mayask
    • October 5, 2024
    • 39 views