Marriott’s poor data breach response is putting victims at risk of phishing

Last Thursday, Marriott sent out millions of emails warning of a massive data breach — some 500 million guest reservations had been stolen from its Starwood database. One problem: the email sender’s domain didn’t look like it came from Marriott at all. Marriott sent its notification email from “email-marriott.com,” which is registered to a third […]

View More Marriott’s poor data breach response is putting victims at risk of phishing

Mozilla adds website breach notifications to Firefox

Mozilla is adding a new security feature to its Firefox Quantum web browser that will alert users when they visit a website that has recently reported a data breach. When a Firefox user lands on a website with a breach in its recent past they’ll see a pop up notification informing them of the barebones […]

View More Mozilla adds website breach notifications to Firefox

AdGuard resets all user passwords after account hacks

Popular ad-blocker AdGuard has forcibly reset all of its users’ passwords after it detected hackers trying to break into accounts. The company said it “detected continuous attempts to login to AdGuard accounts from suspicious IP addresses which belong to various servers across the globe,” in what appeared to be a credential stuffing attack. That’s when […]

View More AdGuard resets all user passwords after account hacks

Okta’s PassProtect checks your passwords with ‘Have I Been Pwned’

Okta just launched a free browser extension for Google Chrome today. After installing PassProtect, your browser will compare the passwords you type with Troy Hunt’s Have I Been Pwned. This extension isn’t necessarily for you, tech savvy readers of TechCrunch. But it could be a great way to warn your neighbor who doesn’t know anything […]

View More Okta’s PassProtect checks your passwords with ‘Have I Been Pwned’

1Password nets partnership with ‘Have I Been Pwned’

A little over a month since 1Password incorporated a pwned password check feature developed by Have I Been Pwned‘s Troy Hunt, the password manager service has now netted what’s being described as “a partnership” with the popular breach monitoring service. Essentially this boils down to a commercial arrangement between 1Password and the free-to-use breach check service, […]

View More 1Password nets partnership with ‘Have I Been Pwned’

UK and Australian governments now use Have I Been Pwned

 Troy Hunt is turning Have I Been Pwned into an essential pwning monitoring service. The service monitors security breaches and password leaks so that you and your users remain secure. And now, the U.K. and Australian governments are monitoring their own domain names using the service.
Most people are familiar with the consumer-facing version of Have I Been Pwned. You go on Have I Been… Read More

View More UK and Australian governments now use Have I Been Pwned