Skip to main content

Yahoo Mail hit by hackers, passwords reset

yahoo mail hit by hackers password
Image used with permission by copyright holder

Yahoo said Thursday it had discovered what it described as a “coordinated effort” by hackers to gain access to a number of Yahoo Mail accounts.

In a ‘security update’ message posted on its Tumblr page, Yahoo’s Jay Rossiter declined to say precisely how many accounts had been compromised, but said it had taken “immediate” action and contacted affected users, prompting them to reset their passwords.

Recommended Videos

There are known to be some 273 million Yahoo Mail accounts globally, with around 81 million based in the US.

Rossiter said a list of usernames and passwords used in the attack “was likely collected from a third-party database compromise” and that there was currently no evidence that personal data had been taken directly from any of Yahoo’s own servers. Of course, this begs the question: From which third-party database was the information pulled? If Yahoo knows, it didn’t want to say.

Describing its investigation as “ongoing,” Rossiter said the company had so far discovered that “malicious computer software used the list of usernames and passwords to access Yahoo Mail accounts.”

Yahoo said that besides contacting those affected, it had already reset passwords on impacted accounts and was using second sign-in verification to enable users to choose a new password. It added that it’s now working with federal law enforcement in an effort to find those responsible, and had implemented “additional measures” in an effort to prevent future attacks on its systems.

The last few months have seen a number of high profile cyberattacks – retail giant Target was hit recently by a hack affecting up to 110 million of its online users, while back in October Adobe reported a serious security breach impacting up to 38 million accounts. 

Whether or not your Yahoo Mail account was compromised in this week’s incident, now is as good a time as any to review your password strategy – especially if you’re using one like this.

 [Image: Zsolt Biczo / Shutterstock]

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
Hackers are using this incredibly sneaky trick to hide malware
A hacker typing on an Apple MacBook laptop, which shows code on its screen.

One of the most important things you can do to protect your online security is install one of the best password managers, but a recent cyberattack proves that you have to be careful even when doing that. Thanks to some sneaky malware hidden in Google Ads, you could end up with viruses riddling your PC.

The issue affects popular password manager KeePass -- or rather, it attempts to impersonate KeePass by using misleading Google Ads. First spotted by Malwarebytes, the nefarious link appears at the top of search results, meaning you’ll likely see it before the legitimate websites that follow beneath it.

Read more
Bing Chat just beat a security check to stop hackers and spammers
A depiction of a hacker breaking into a system via the use of code.

Bing Chat is no stranger to controversy -- in fact, sometimes it feels like there’s a never-ending stream of scandals surrounding it and tools like ChatGPT -- and now the artificial intelligence (AI) chatbot has found itself in hot water over its ability to defeat a common cybersecurity measure.

According to Denis Shiryaev, the CEO of AI startup Neural.love, chatbots like Bing Chat and ChatGPT can potentially be used to bypass a CAPTCHA code if you just ask them the right set of questions. If this turns out to be a widespread issue, it could have worrying implications for everyone’s online security.

Read more
Bing Chat’s ads are sending users to dangerous malware sites
Bing Chat shown on a laptop.

Since it launched, Microsoft’s Bing Chat has been generating headlines left, right, and center -- and not all of them have been positive. Now, there’s a new headache for the artificial intelligence (AI) chatbot, as it’s been found it has a tendency to send you to malware websites that can infect your PC.

The discovery was made by antivirus firm Malwarebytes, which discussed the incident in a blog post. According to the company, Bing Chat is displaying malware advertisements that send users to malicious websites instead of filtering them out.

Read more