Flipboard is the latest company to fall foul of a data breach.
The news aggregation app announced in a post that it had identified unauthorized access of some of its internal systems, which contained some Flipboard users' account information and credentials.
For more than nine months, the unauthorized person had access to Flipboard's systems, potentially able to obtain copies of databases which hosted users' information.
It's unclear yet how many users were affected by the breach, but an investigation commissioned by the company revealed there was unauthorised access between June 2018 and April 2019.
While the information on these databases included their name, Flipboard username, and email address, the passwords were cryptographically protected with an algorithm called bcrypt.
The algorithm adds a unique, random set of characters called a salt, on top of the usual hashing of the password, in which it is scrambled to make it difficult to figure out. This makes the passwords very tough to crack, requiring significant computing power to do so.
Passwords which were set before Mar. 14, 2012 were hashed and salted with an algorithm called SHA-1, a once-widely used function now long obsolete in the realm of internet security.
Flipboard said all user passwords have been reset in light of the breach, despite only some users being affected by the incident.
The company also said its internal database contained digital tokens. These allowed Flipboard and a third-party to connect, for example when a user links their Flipboard account to social media platforms like Facebook or Twitter.
This allowed users to see content from these third-party accounts (i.e. making your Facebook News Feed readable on Flipboard), as well as comment on or share articles. The company said it had not seen unauthorized access to third-party accounts.
"We have not found any evidence the unauthorized person accessed third-party account(s) connected to users' Flipboard accounts. As a precaution, we have replaced or deleted all digital tokens," the post read.
"Importantly, we do not collect from users, and this incident did not involve Social Security numbers or other government-issued IDs, bank account, credit card, or other financial information."
Flipboard said it has already notified law enforcement of the incident, which it discovered on Apr. 23.
For users, they'll be prompted to change your password next time at login, and some will be prompted to reconnect to third-party services which were previously linked to Flipboard.
Copyright © 2023 Powered by
Flipboard reveals data breach, which left users' details exposed-寸地尺天网
sitemap
文章
74529
浏览
6
获赞
1
Here's why everyone's mad about Kylie Jenner's new walnut scrub
Kylie Jenner announced her new skincare line, Kylie Skin, on Tuesday. The collection includes six prWildlife Photographer of the Year top photos show nature at its most beautiful and harrowing
If the "highly commended" images look this stunning, imagine what the winning images will look like.Not just @x: Elon Musk also took @xAI from its original user
Elon Musk's Twitter is now X. The rebrand, which was made official on Monday, has made headlines allThe soft life and quiet quitting: How one led to the other
Before quiet quitting took corporate America by storm, Black women were quietly quitting their arduoChunky baby seal born in Japan. Look at him, love him.
There is never a bad time to look at a cute baby animal, so please enjoy this adorable seal.The littUpdate your iPhones and Macs now to protect from these security exploits
It's time to plug in your iPhone, Mac, iPad, or Apple Watch and go do something else for a little whEmma D'Arcy's Negroni Sbagliato is making TikTok horny
Haven't you heard, a Negroni Sbagliato (with Prosecco in it) is the drink du jour thanks to House ofIt's time for a hot pink iPhone that meets the cultural moment
With the rise of Barbiecore and Bimbocore, the resurgence of Y2K fashion and aesthetics, and the preThese $315 denim panties are deeply upsetting
"Weird, bad jeans" are practically their own fashion genre by now, and brands are well aware that maAndroid users could finally be able to screen share on WhatsApp
It looks like Android phones — seemingly always a beat behind iOS in the eyes of app developerTesla recalls 16,000 Model S and X cars over seat belt issue
Tesla has issued a recall for some of its Model S and Model X issues. Unlike some of the company's pWildlife Photographer of the Year top photos show nature at its most beautiful and harrowing
If the "highly commended" images look this stunning, imagine what the winning images will look like.AOC calls out Kushner: ‘What's next, putting nuclear codes in Instagram DMs?’
It's a cold day in government hell when Instagram DMs get a shoutout at a House Oversight CommitteeGoogle is reportedly developing a journalism AI
The New York Timesreports that Google is developing an AI that can write news stories. It isn't cleaTikTok is bringing back the '00s digital camera
This Halloween, in the midst of Wordle-inspired costumes and general mayhem, something stood out to