{"id":357631,"date":"2024-01-19T11:49:50","date_gmt":"2024-01-19T16:49:50","guid":{"rendered":"https:\/\/knowtechie.com\/?p=357631"},"modified":"2024-01-19T11:50:01","modified_gmt":"2024-01-19T16:50:01","slug":"new-password-leak-has-71-million-emails-in-it","status":"publish","type":"post","link":"https:\/\/knowtechie.com\/new-password-leak-has-71-million-emails-in-it\/","title":{"rendered":"New password leak has 71 million emails in it"},"content":{"rendered":"<p>Are you still reusing passwords between your different accounts in 2024? You should rethink that, because this giant password leak could well include your details.<\/p>\n\n\n\n<p>Troy Hunt, creator of the helpful <a href=\"https:\/\/haveibeenpwned.com\/\" data-lasso-id=\"556081\" target=\"_blank\" rel=\"noopener\">Have I Been Pwned<\/a> website for finding out if your details are in password leaks, says <a href=\"https:\/\/www.troyhunt.com\/inside-the-massive-naz-api-credential-stuffing-list\/\" data-lasso-id=\"556082\" target=\"_blank\" rel=\"noopener\">this new leak<\/a> is one of the largest he&#8217;s ever seen.<\/p>\n\n\n\n<p>Dubbed &#8220;Naz.API,&#8221; this credential stuffing list (used by hackers to try email and password combinations rapidly on their target) has a staggering 70 million email addresses and over 100 million passwords inside.<\/p>\n\n\n\n<p>And unlike many lists on Have I Been Pwned, &#8220;a third of the email address have never been seen before.&#8221;<\/p>\n\n\n\n<p>If you haven&#8217;t already, it&#8217;s time to <a href=\"https:\/\/knowtechie.com\/best-free-password-managers\/\" data-lasso-id=\"556083\">start using a password manager<\/a>. Preferably one that supports <a href=\"https:\/\/knowtechie.com\/what-is-two-factor-authentication-and-why-it-matters\/\" data-lasso-id=\"556084\">two-factor authentication<\/a>, and enable that on services that support it while you&#8217;re changing passwords.<\/p>\n\n\n\n<p>Then read on for the rest.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">New password leak probably has your details inside<\/h2>\n\n\n\n<blockquote class=\"twitter-tweet\"><p lang=\"en\" dir=\"ltr\">New breach: The Naz.API stealer logs and cred stuffing lists were posted to a hacking forum in Sep. Data included 71M email addresses and 100M plain text passwords, often alongside the service they were used for. 67% were already in <a href=\"https:\/\/twitter.com\/haveibeenpwned?ref_src=twsrc%5Etfw\" data-lasso-id=\"556085\" target=\"_blank\" rel=\"noopener\">@haveibeenpwned<\/a>. More: <a href=\"https:\/\/t.co\/Uef4G7gOei\" data-lasso-id=\"556086\" target=\"_blank\">https:\/\/t.co\/Uef4G7gOei<\/a><\/p>&mdash; Have I Been Pwned (@haveibeenpwned) <a href=\"https:\/\/twitter.com\/haveibeenpwned\/status\/1747621747073970679?ref_src=twsrc%5Etfw\" data-lasso-id=\"556087\" target=\"_blank\" rel=\"noopener\">January 17, 2024<\/a><\/blockquote> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script>\n\n\n\n<p>If you&#8217;re wondering where the data inside this password leak came from, Hunt says it was from &#8220;stealer logs&#8221; which are malware on infected computers that capture login details then send it out to the hackers.<\/p>\n\n\n\n<p>In a year of high-profile password and data leaks from companies such as <a href=\"https:\/\/knowtechie.com\/lastpass-owner-confirms-worst-fears-stolen-customer-vault-data\/\" data-lasso-id=\"556088\">LastPass<\/a> and <a href=\"https:\/\/knowtechie.com\/23andme-data-breach-2023\/\" data-lasso-id=\"556089\">23andme<\/a>, the Naz.API dump is huge. Hunt tested enough of the service+email combinations to be satisfied that the data was legit.<\/p>\n\n\n\n<p>He even found his own data in there, with a password he hadn&#8217;t used since before 2011. That&#8217;s joined by over 100 million unique passwords, which are repeated enough times that the full password leak contains 1.3 billion entries.<\/p>\n\n\n\n<p>As Hunt notes, the number of recurring passwords means that the general public likely isn&#8217;t using a password manager with unique passwords for every service. Maybe it&#8217;s time to start.<\/p>\n\n\n\n<p style=\"font-size:16px\"><em>Have any thoughts on this? Drop us a line below in the comments, or carry the discussion to our&nbsp;<a data-lasso-id=\"556090\" href=\"https:\/\/twitter.com\/knowtechie\" target=\"_blank\" rel=\"noopener\">Twitter<\/a>&nbsp;or&nbsp;<a data-lasso-id=\"556091\" href=\"https:\/\/facebook.com\/knowtechie\" target=\"_blank\" rel=\"noopener\">Facebook<\/a>.<\/em><\/p>\n\n\n\n<p><strong>Editors\u2019 Recommendations:<\/strong><\/p>\n\n\n\n<ul>\n<li><a href=\"https:\/\/knowtechie.com\/youtube-is-punishing-ad-block-users-with-longer-load-times\/\" data-lasso-id=\"556092\"><strong>YouTube is punishing ad-block users with longer load times<\/strong><\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/knowtechie.com\/marc-cuban-elon-musk-echo-chamber\/\" data-lasso-id=\"556093\"><strong>Marc Cuban slams Twitter as Elon Musk\u2019s echo chamber<\/strong><\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/knowtechie.com\/samsung-galaxy-s24-range-brings-new-chips-ai-and-better-cameras\/\" data-lasso-id=\"556094\"><strong>Samsung Galaxy S24 range brings new chips, AI, and better cameras<\/strong><\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/knowtechie.com\/microsoft-copilot-pro-plan-announced\/\" data-lasso-id=\"556095\"><strong>Microsoft introduces Copilot Pro, a $20\/month AI assistant<\/strong><\/a><\/li>\n<\/ul>","protected":false},"excerpt":{"rendered":"<p>This password leak also contains 100 million unique passwords. Spoiler: it probably has yours.<\/p>\n","protected":false},"author":9370,"featured_media":134107,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_kad_blocks_custom_css":"","_kad_blocks_head_custom_js":"","_kad_blocks_body_custom_js":"","_kad_blocks_footer_custom_js":"","apple_news_api_created_at":"2024-01-19T16:49:59Z","apple_news_api_id":"2583cddd-d8d9-4668-a6a2-12cda230c61d","apple_news_api_modified_at":"2024-01-19T16:50:00Z","apple_news_api_revision":"AAAAAAAAAAD\/\/\/\/\/\/\/\/\/\/w==","apple_news_api_share_url":"https:\/\/apple.news\/AJYPN3djZRmimohLNojDGHQ","apple_news_coverimage":0,"apple_news_coverimage_caption":"","apple_news_is_hidden":false,"apple_news_is_paid":false,"apple_news_is_preview":false,"apple_news_is_sponsored":false,"apple_news_maturity_rating":"","apple_news_metadata":"\"\"","apple_news_pullquote":"","apple_news_pullquote_position":"","apple_news_slug":"","apple_news_sections":"\"\"","apple_news_suppress_video_url":false,"apple_news_use_image_component":false,"footnotes":""},"categories":[2022,2],"tags":[544],"acf":[],"apple_news_notices":[],"featured_image_urls":{"full":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password.jpg",1600,900,false],"thumbnail":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-150x150.jpg",150,150,true],"medium":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-300x169.jpg",300,169,true],"medium_large":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-768x432.jpg",768,432,true],"large":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password.jpg",1000,563,false],"1536x1536":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-1536x864.jpg",1536,864,true],"2048x2048":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password.jpg",1600,900,false],"post-thumbnail":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-1000x600.jpg",1000,600,true],"mvp-post-thumb":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-1000x600.jpg",1000,600,true],"mvp-mid-thumb":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-400x240.jpg",400,240,true],"mvp-small-thumb":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-80x80.jpg",80,80,true],"lets-review-360-240":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password-360x240.jpg",360,240,true]},"post_excerpt_stackable":"<p>This password leak also contains 100 million unique passwords. Spoiler: it probably has yours.<\/p>\n","category_list":"<a href=\"https:\/\/knowtechie.com\/category\/security\/\" rel=\"category tag\">Security<\/a>, <a href=\"https:\/\/knowtechie.com\/category\/news\/\" rel=\"category tag\">News<\/a>","author_info":{"display_name":"Joe Rice-Jones","author_link":"https:\/\/knowtechie.com\/author\/joe-rice-jones\/"},"comments_num":"0 comments","taxonomy_info":{"category":[{"value":2022,"label":"Security"},{"value":2,"label":"News"}],"post_tag":[{"value":544,"label":"News"}]},"featured_image_src_large":["https:\/\/knowtechie.com\/wp-content\/uploads\/2020\/11\/worst-password.jpg",1000,563,false],"comment_info":0,"category_info":[{"term_id":2022,"name":"Security","slug":"security","term_group":0,"term_taxonomy_id":2037,"taxonomy":"category","description":"Don't put your company, family, or private information in danger. Stay updated with the latest security news, new breaches and cyber attacks.","parent":0,"count":641,"filter":"raw","term_order":"28","cat_ID":2022,"category_count":641,"category_description":"Don't put your company, family, or private information in danger. Stay updated with the latest security news, new breaches and cyber attacks.","cat_name":"Security","category_nicename":"security","category_parent":0},{"term_id":2,"name":"News","slug":"news","term_group":0,"term_taxonomy_id":2,"taxonomy":"category","description":"Need to catch up on the latest tech news happening right now? Well, this is a good place to start. Learn everything that's happening in tech right now.","parent":0,"count":9154,"filter":"raw","term_order":"1","cat_ID":2,"category_count":9154,"category_description":"Need to catch up on the latest tech news happening right now? Well, this is a good place to start. Learn everything that's happening in tech right now.","cat_name":"News","category_nicename":"news","category_parent":0}],"tag_info":[{"term_id":544,"name":"News","slug":"news","term_group":0,"term_taxonomy_id":179,"taxonomy":"post_tag","description":"","parent":0,"count":12608,"filter":"raw","term_order":"0"}],"_links":{"self":[{"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/posts\/357631"}],"collection":[{"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/users\/9370"}],"replies":[{"embeddable":true,"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/comments?post=357631"}],"version-history":[{"count":0,"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/posts\/357631\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/media\/134107"}],"wp:attachment":[{"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/media?parent=357631"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/categories?post=357631"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/knowtechie.com\/wp-json\/wp\/v2\/tags?post=357631"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}