It looks like you're new here. If you want to get involved, click one of these buttons!
That investigators did not discover the full extent of the 2013 incident before Verizon closed the deal to acquire Yahoo in June was surprising to outside cybersecurity analysts.
“Frankly, I don’t know how Yahoo got away with this,” said Jay Kaplan, a former Defense Department cybersecurity expert and senior analyst at the National Security Agency who is now the chief executive of the cybersecurity company Synack.
After Yahoo discovered that one billion accounts were affected, it should not have been a stretch to consider that all of the company’s user accounts had been compromised, he said. “My guess is that Yahoo was completely ‘owned’ across the board,” Mr. Kaplan said.
Verizon said in a statement Tuesday that, with the assistance of outside forensic experts, it had determined that all Yahoo’s user accounts were affected. The company said it would continue to work closely with law enforcement.
© 2015 Mutual Fund Observer. All rights reserved.
© 2015 Mutual Fund Observer. All rights reserved. Powered by Vanilla
Comments
Regards,
Ted
Instead of offering contestants a fire starter, rope or map we see how long it takes for them to lose the credit worthiness (identity) by merely buying a latte, posting an update to online, or answering their phone.
I'll take my chances of surviving among with the lions, tiger and spiders.
Forbes Article: https://forbes.com/sites/jonathanchester/2017/03/03/how-the-blockchain-will-secure-your-online-identity/#58c430125523
Got an email from Yahoo last night telling me my account was breached in 2013. First notification - though I long suspected something.
Spent about 5 hours today upgrading my internet security in various ways. I'll be using Yahoo mail less and less and moving to other providers. Also changed about a dozen different account passwords - something I do at least once a year anyway. One is a 18-banger - Ought to be long enough!
The real travesty is that users' "secret questions/answers" were raided. Over the years I've devised a set of 5-10 really good ones that no one else knows (err "knew"). Each of my dozen or more online accounts has 3-5 of these on file. These all had a certain logic behind them that helped me recall them. (Suspect that's not much different from how other folks operate.) How in h*** are you supposed to assure that every online account you ever set-up no longer uses any of those formerly "secret" questions/answers for verifying your identity? A pain in the a** for sure.
I think I have a brilliant solution. How about using a different brand of whiskey for each of those questions? Should work. Save your empties & tag each different brand as "favorite teacher" "favorite pet" etc. If your "secrets" get stolen again, there's always more new brands to try. Count the cost of each new one as an "investment expense".
PS - Chivas Regal just became my favorite teacher.