{"id":326842,"date":"2016-11-30T07:32:28","date_gmt":"2016-11-29T23:32:28","guid":{"rendered":"http:\/\/techcrunch.com\/?p=1421527"},"modified":"2016-11-30T07:32:28","modified_gmt":"2016-11-29T23:32:28","slug":"thousands-of-xhamster-login-credentials-surface-online","status":"publish","type":"post","link":"https:\/\/people.utm.my\/asmawisham\/thousands-of-xhamster-login-credentials-surface-online\/","title":{"rendered":"Thousands of xHamster login credentials surface online"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/tctechcrunch2011.files.wordpress.com\/2015\/11\/password-balloon2x.png?w=738\" class=\"\"\/><\/p>\n<p>Members of the porn site xHamster should be changing their passwords today after a set of nearly 380,000 usernames, emails and poorly-hashed passwords appeared online.<\/p>\n<p>The subscription-only breach notification site <a target=\"_blank\" href=\"https:\/\/leakbase.pw\/\">LeakBase<\/a> has published the set of login credentials, which <a target=\"_blank\" href=\"http:\/\/motherboard.vice.com\/read\/hackers-are-trading-hundreds-of-thousands-of-xhamster-porn-account-details\">Motherboard reports<\/a> were being traded online. It\u2019s not clear exactly where the database originated, but it contains information for only a small subset of xHamster\u2019s 12 million registered users.\u00a0While xHamster doesn\u2019t require viewers to register with the site, those who do can comment and make video playlists.<\/p>\n<p>Still, the leaked information has the potential to embarrass users \u2014 several of the accounts are linked to US Army and other government email addresses. If xHamster\u2019s subscribers reused their passwords on other sites, their accounts on those sites are at risk of compromise as well.<\/p>\n<p>\u201cThe passwords of all xHamster users are properly encrypted, so it is almost impossible to hack them. Thus, all the passwords are safe and the users data secured,\u201d an xHamster spokesperson told Motherboard.<\/p>\n<p>But a spokesperson for LeakBase disagreed, telling TechCrunch that the passwords were hashed with the MD5 algorithm which is considered insecure. \u201cMD5 hashes are trivial and easy to crack,\u201d the spokesperson said. \u201cThe fact they think the hashes are secure is a blatant example of the faulty security placed in companies even to this day.\u201d<\/p>\n<p>LeakBase provided TechCrunch with a set of 60 user credentials in order to verify the breach, and the emails do appear to correspond with registered xHamster accounts.<\/p>\n<p><small>Featured Image: Bryce Durbin<\/small><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" width=\"680\" height=\"383\" src=\"https:\/\/tctechcrunch2011.files.wordpress.com\/2015\/11\/password-balloon2x.png?w=680\" class=\"attachment-large size-large wp-post-image\" alt=\"password-balloon@2x\" srcset=\"https:\/\/tctechcrunch2011.files.wordpress.com\/2015\/11\/password-balloon2x.png?w=680 680w, https:\/\/tctechcrunch2011.files.wordpress.com\/2015\/11\/password-balloon2x.png?w=1360 1360w, https:\/\/tctechcrunch2011.files.wordpress.com\/2015\/11\/password-balloon2x.png?w=150 150w, https:\/\/tctechcrunch2011.files.wordpress.com\/2015\/11\/password-balloon2x.png?w=300 300w, https:\/\/tctechcrunch2011.files.wordpress.com\/2015\/11\/password-balloon2x.png?w=768 768w\" sizes=\"(max-width: 680px) 100vw, 680px\" \/>&nbsp;Members of the porn site xHamster should be changing their passwords today after a set of nearly 380,000 usernames, emails and poorly-hashed passwords appeared online. The subscription-only breach notification site LeakBase has published the set of login credentials, which Motherboard reports were being traded online. It&#8217;s not clear exactly where the database originated, but it&hellip; <a href=\"https:\/\/techcrunch.com\/2016\/11\/29\/xhamster-login-credentials-breach\/?ncid=rss\">Read More<\/a><\/p>\n<div class=\"feedflare\">\n<a href=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?a=ueUahMmkYgI:M4qUXIQADSU:2mJPEYqXBVI\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?d=2mJPEYqXBVI\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?a=ueUahMmkYgI:M4qUXIQADSU:7Q72WNTAKBA\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?d=7Q72WNTAKBA\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?a=ueUahMmkYgI:M4qUXIQADSU:yIl2AUoC8zA\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?d=yIl2AUoC8zA\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?a=ueUahMmkYgI:M4qUXIQADSU:-BTjWOF_DHI\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?i=ueUahMmkYgI:M4qUXIQADSU:-BTjWOF_DHI\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?a=ueUahMmkYgI:M4qUXIQADSU:D7DqB2pKExk\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?i=ueUahMmkYgI:M4qUXIQADSU:D7DqB2pKExk\" border=\"0\"><\/img><\/a> <a href=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?a=ueUahMmkYgI:M4qUXIQADSU:qj6IDK7rITs\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/Techcrunch?d=qj6IDK7rITs\" border=\"0\"><\/img><\/a>\n<\/div>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~r\/Techcrunch\/~4\/ueUahMmkYgI\" height=\"1\" width=\"1\" alt=\"\"\/> <\/p>\n","protected":false},"author":5817,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[25],"tags":[59,66,26],"class_list":["post-326842","post","type-post","status-publish","format-standard","hentry","category-technology","tag-media","tag-techcrunch","tag-technology"],"_links":{"self":[{"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/posts\/326842","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/users\/5817"}],"replies":[{"embeddable":true,"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/comments?post=326842"}],"version-history":[{"count":0,"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/posts\/326842\/revisions"}],"wp:attachment":[{"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/media?parent=326842"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/categories?post=326842"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/people.utm.my\/asmawisham\/wp-json\/wp\/v2\/tags?post=326842"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}