<?xml version="1.0"?>
<rss version="2.0">
   <channel>
      <title>How not to get hacked paired activity by mark.denton</title>
      <link>https://padlet.com/mdenton_30/hacked</link>
      <description>Key points from reading article</description>
      <language>en-us</language>
      <pubDate>2017-09-27 17:04:44 UTC</pubDate>
      <lastBuildDate>2017-10-09 13:14:21 UTC</lastBuildDate>
      <webMaster>hello@padlet.com</webMaster>
      <image>
         <url></url>
      </image>
      <item>
         <title>Rob and LeAnn</title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195200731</link>
         <description><![CDATA[<div><br>Yahoo!<br><br></div><div><br>Last year, Yahoo admitted it had been hacked three years previously, leaking account details of one billion of its three billion users, making it one of the biggest breaches of all time. Now, Yahoo has admitted that all three billion accounts were actually accessed.<br><br></div><div><br>The revelation follows Yahoo's acquisition by Verizon, with an investigation by forensic security experts during the company's integration revealing that all Yahoo user accounts were affected by the hack.<br><br></div><div><em><br></em><strong><br></strong><br></div><div><br>Yahoo said it was sending notifications via email to all users. "The investigation indicates that the user account information that was stolen did not include passwords in clear text, payment card data, or bank account information," said a statement on the Oath website, the company formed by Verizon cramming together Yahoo and AOL.<br><br></div><div><br></div><div><br>Deloitte<br><br></div><div><br>Global consultancy firm Deloitte has been hit by a cyberattack, <em>The Guardian</em> has reported. The company's systems were compromised through an unsecured administrator account, which allowed access to internal files. Details compromised include emails, usernames, passwords, health information, and details from Deloitte's clients.<br><br></div><div><br>“In response to a cyber incident, Deloitte implemented its comprehensive security protocol and began an intensive and thorough review including mobilising a team of cybersecurity and confidentiality experts inside and outside of Deloitte,” the company said in a statement. It is believed Deloitte found the intrusion into its networks in March.<br><br></div><div><br>Equifax<br><br></div><div><br>Consumer credit score company Equifax has revealed that hackers accessed up to 143 million customer account details earlier this year. The data breach happened on July 29 and the details taken include names, social security numbers, drivers licences, and credit card numbers of around 200,000 people.<br><br></div><div><br></div><div><br>Company CEO Richard Smith said a vulnerability in its website allowed the information to be accessed and that those who wanted to check if they had been affected needed to provide their last name and the last six digits of their social security number. People in the UK have also been affected by the data breach but the company has not revealed how many. "This is clearly a disappointing event for our company, and one that strikes at the heart of who we are and what we do," Smith said in a statement.<br><br></div><div><br></div><div><br>Cex<br><br></div><div><br>Cex, the second-hand games, DVDs and hardware retailer has admitted around two million customers have had their details stolen. These include names, addresses, email addresses, phone numbers and encrypted credit card information from as far back as 2009. It said it stopped storing payment data in 2009 so nothing newer would have been taken. In a statement, the firm said it had been "subject to an online security breach" and is contacting people who registered on its website.<br><br></div><div><br>"We have no indication that in-store personal membership information has been compromised," a statement from CeX explained. The firm hasn't given any indication when the data was stolen, or who may have done it but says it is working with police and urges customers to change passwords.<br><br></div><div><br>Verizon<br><br></div><div><br>Phone numbers, names and pin codes of of six million Verizon customers were left online for around nine days. A misconfigured setting on a cloud server led to the details being posted online, <em>CNN</em> has reported.<br><br></div><div><br>Security firm UpGuard spotted the flaw and said the server was owned by third-party firm NICE Systems, a vendor for Verizon. The telecoms firm said the server has now been fixed and the data was secured.<br><br></div><div><br>AA<br><br></div><div><br>The car insurance and breakdown company left 13GB of customer information unsecured online. According to the BBC and security researcher Troy Hunt, the data was left viewable online for "a few days" in April. A server "misconfiguration" was blamed for allowing the data to be accessible online.<br><br></div><div><br></div><div><br>AA claimed the data was not sensitive, however, it is said 117,000 unique email addresses, credit card types, and final four digits of credit cards were left vulnerable. "We take any data issues incredibly seriously and would like to reassure our AA Shop customers that their payment details have not been compromised," Edmund King, AA's president said in a statement.<br><br></div><div><br>Deep Root Analytics<br><br></div><div><figure class="attachment attachment--preview" data-trix-attachment="{&quot;contentType&quot;:&quot;image&quot;,&quot;height&quot;:211,&quot;url&quot;:&quot;https://wi-images.condecdn.net/image/68jqeNlqo7v/crop/405&quot;,&quot;width&quot;:405}" data-trix-content-type="image"><img src="https://wi-images.condecdn.net/image/68jqeNlqo7v/crop/405" width="405" height="211"><figcaption class="attachment__caption"></figcaption></figure></div><div>Getty Images / Mark Wilson / Staff</div><div><br>Voter data belonging to almost 200 million Americans has been found online. A conservative US data analytics firm contracted by the Republican National Committee, Deep Root Analytics, left the records available on an unsecured Amazon web server. The 1.1 terabytes of data included names, dates of birth, home addresses, phone numbers, voter registration details and 'modelled' ethnicities and religions, according to security firm UpGuard, which stumbled across the information.<br><br></div><div><br>Although the data wasn't hacked, being left on an unsecured server meant that anyone who happened to come across it would be able to download and take the information. There's no evidence to suggest this happened though. "That such an enormous national database could be created and hosted online, missing even the simplest of protections against the data being publicly accessible, is troubling," UpGuard said in a blog post.<br><br></div><div><br>OneLogin<br><br></div><div><br>Proving once again that nobody is immune to data breaches, identity management company OneLogin has seen customer details stolen. The firm, which essentially provides password management services for businesses, admitted that a "malicious actor" has taken details relating to its US customers.<br><br></div><div><br></div><div><br>"Our review has shown that a threat actor obtained access to a set of AWS keys and used them to access the AWS API from an intermediate host with another, smaller service provider in the US," the company says. The attack took place on May 31 2017. "The threat actor was able to access database tables that contain information about users, apps, and various types of keys," the firm continues.<br><br></div><div><br>Worryingly, it also says that whoever took the data may have been able to decrypt it. OneLogin has not said how many customers were impacted during the incident.<br><br></div><div><br>Chipotle<br><br></div><div><br>In April 2017, American restaurant Chipotle announced its payment systems had been hacked. The firm has now revealed that malware which accessed payment card data was installed on point-of-sale terminals between March 24 and April 18. "The malware searched for track data (which sometimes has cardholder name in addition to card number, expiration date, and internal verification code) read from the magnetic stripe of a payment card as it was being routed through the POS device," the firm says in a statement.<br><br></div><div><br>While the attack only affected the US, Chipotle's security announcement reveals that the large majority of its stores were impacted by the malware. The restaurant also says it doesn't believe any other customer information was impacted but it hasn't given any details on the number of people who were hit in the attack.<br><br></div><div><br>Bell<br><br></div><div><br>Canadian mobile phone, TV, and internet service provider Bell has been hit by an "anonymous hacker" who has swiped 1.9 million email addresses. In a statement, the company confirmed the hack and said the incident isn't linked to the global WannaCry ransomware attacks.<br><br></div><div><br></div><div><br>However, it wasn't just email addresses taken. "The illegally accessed information contains approximately 1.9 million active email addresses and approximately 1,700 names and active phone numbers," the company said.<br><br></div><div><br>Edmodo<br><br></div><div><br>Education website Edmodo promises a way for "educators to connect and collaborate with students, parents, and each other". However, 78 million of its customers have had their user account details stolen by hackers. Vice's <em>Motherboard</em> reports that usernames, email addresses, and hashed passwords were taken from the service and have been put up for sale on the dark web for around $1,000 (£700).<br><br></div><div><br>Data breach notification website LeakBase also has a copy of the data and provided it to <em>Motherboard.</em> According to LeakBase around 40 million of the accounts have email addresses connected to them. The company said it is aware of a "potential security incident" and is investigating.<br><br></div><div><br>Guardian Soulmates<br><br></div><div><br>Dating hopefuls using the Guardian Soulmates website have been hit with "sexually explicit" spam, following their contact information being leaked. The <em>BBC</em> reports users of the service were being targeted after a third-party technology provider "may have made account information available".<br><br></div><div><br>The Guardian Media Group, in a statement, said it had been contacted by 27 of its users saying the email addresses used for the website had been sent spam email. It is not known how many of the customers, who pay £32 a month, were impacted. "Our ongoing investigations point to a human error by one of our third-party technology providers, which led to an exposure of an extract of data," a spokesperson for the firm said.<br><br></div><div><br></div><div><br>HandBrake<br><br></div><div><br>Video conversion app HandBrake recently revealed its Mac version has been infected with malware. In a statement from developers, the software creators revealed that between May 2 and May 6 those who downloaded the programme may have been infected with a Trojan.<br><br></div><div><br>"HandBrake-1.0.7.dmg was replaced by another unknown malicious file that DOES NOT match the SHA1 / SHA256 hashes on our website or on our Github Wiki," the statement said. The website the malicious download was hosted on has now been shut down, the developers say, but it is not possible to know how many people downloaded the infected version.<br><br></div><div><br>Debenhams Flowers<br><br></div><div><br>While not being the biggest hack, an attack on the flower selling arm of retailer Debenhams has seen the details for 26,000 customers compromised. Third-party e-commerce supplier Ecomnova was hit by an attack that saw payment details, names, and addresses taken.<br><br></div><div><em><br>BBC News</em> reports the attack took place between February 24 and April 11, with the Debenhams Flowers website being taken offline. The company reported the data breach to the Information Commissioner's Office but said users of Debenhams.com had not been impacted.<br><br></div><div><br>HipChat<br><br></div><div><br>The workplace chat platform HipChat has sent a security notice to users warning that a third-party library used by Atlassian's software has been targeted by hackers. The breach is said to have affected a server in the HipChat Cloud web tier, and in a reported 0.05 per cent of cases Atlassian said messages and content in rooms may have been accessed using account information including names, email addresses and hashed passwords.<br><br></div><div><strong><br></strong><br></div><div><br>As a precaution, HipChat has invalidated passwords on all potentially affected accounts and sent users advice on how to reset their passwords. It is also due to roll out an update to fix the flaw. The company is also readying a HipChat Server update in response to the attack.<br><br></div><div><br>In the security notice, HipChat said: "While HipChat Server uses the same third-party library, it is typically deployed in a way that minimises the risk of this type of attack. We are preparing an update for HipChat Server that will be shared with customers directly through the standard update channel. We are confident we have isolated the affected systems and closed any unauthorised access. To reiterate, we have found no evidence of other Atlassian systems or products being affected."<br><br></div><div><br>Wonga<br><br></div><div><figure class="attachment attachment--preview" data-trix-attachment="{&quot;contentType&quot;:&quot;image&quot;,&quot;height&quot;:227,&quot;url&quot;:&quot;https://wi-images.condecdn.net/image/QOwL5Xkaovz/crop/405&quot;,&quot;width&quot;:405}" data-trix-content-type="image"><img src="https://wi-images.condecdn.net/image/QOwL5Xkaovz/crop/405" width="405" height="227"><figcaption class="attachment__caption"></figcaption></figure></div><div><br>Payday loan firm Wonga's data breach is believed to have affected up to 245,000 customers in the UK. The firm said it was "urgently investigating illegal and unauthorised access to the personal data of some of its customers". Wonga began contacting customers on Saturday and has set up a help page, as well as a phone line, for borrowers to learn more about the breach.<br><br></div><div><br>It is advising customers to alert their bank and ask them to look out for any suspicious activity as well as exercise vigilance. If you have any questions, you can call Wonga on 0207 138 8330.<br><br></div><div><br></div><div><br>The information said to be stolen includes names, addresses, phone numbers, bank account numbers and sort codes. It may also include the last four digits of customers' bank cards. Wonga said it didn't believe the attackers had gained access to anyone's accounts but warned them to be vigilant.<br><br></div><div><br>Association of British Travel Agents<br><br></div><div><br>The abta.com web server for the Association of British Travel Agents (ABTA) was recently hacked by "an external infiltrator" who exposed the details of 43,000 individuals. Around 1,000 of these included files that could include personal identity information of customers of ABTA members uploaded since 11 January 2017, while around 650 may also include personal identity information of ABTA members. As the UK’s largest travel association, ABTA's members include travel agents and tour operators.<br><br></div><div><br>The unauthorised access was said to be possible due to a system vulnerability "that the infiltrator exploited" to access some data provided by some customers of ABTA Members and by ABTA Members themselves. On immediate investigation, ABTA said it identified that although ABTA’s own IT systems remained secure, there was a vulnerability to the web server managed for ABTA through a third-party web developer and hosting company.<br><br></div><div><br>"This, unfortunately, means some documentation uploaded to the website, as well as some information provided by customers, may have been accessed," ABTA's CEO, Mark Tanzer said. As a precautionary measure, it has taken steps to warn its members and customers of ABTA members who have the potential to be affected. The group has also alerted the relevant authorities, including the Information Commissioner (ICO) and the police.<br><br></div><div><br>Cellebrite<br><br></div><div><br>In March 2016, Israeli company Cellebrite was linked to the FBI's hacking of San Bernardino terrorist Syed Farook's iPhone 5C.<br><br></div><div><strong><br></strong><br></div><div><br>It's now been revealed that <em>Motherboard</em> was sent 900GB of the firm's data. This includes customer information, internal databases, and technical data on the company's mobile phone hacking products.<br><br></div><div><br>The data is said to have been taken from the servers of Cellebrite's website and also includes usernames and passwords to log into the my.cellebrite website.<br><br></div><div><br>Esea<br><br></div><div><br>On January 8, the E-Sports Entertainment Association League (Esea) published a statement saying it believed that user data recently posted online belonged to the company, even though its authenticity had not yet been confirmed.<br><br></div><div><br>"We notified the community on December 30th, 2016 about the possibility this could happen," Esea said. Overall, it is believed 1.5 million user profiles (with names, email addresses and more) were posted online.<br><br></div><div><br>The company continued: "We have been working around the clock to further fortify security and will bring our website online shortly when that next round is complete."<br><br></div><div><br>Supercell<br><br></div><div><br>On January 18 staff at Supercell warned users of their forum should change their passwords following a data breach.<br><br></div><div><br>The data grab happened in September 2016 and relates to third-party forum software. <em>Motherboard</em> initially reported the issue and verified the customer data and it is claimed the dataset being sold online has more than one million account details.<br><br></div><div><br>"We take any such breaches very seriously and we follow very strict policies when it comes to security," Supercell's statement said. "Please note that this breach only affects our Forum service. Game accounts have not been affected."<br><br></div><div><br>Freedom Hosting II<br><br></div><div><br>The web host has details on around 20 per cent of all sites on the dark web. In February the firm was hit by a hacker who swiped the company's database of customers.<br><br></div><div><br>In total, 74GB of data stored on servers was reportedly taken, with some of this being child pornography. As well as the files, a 2.3GB database of customer information was also taken. 381,000 email addresses were included in the MySQL database. It is said the dataincluded "thousands" of .gov email addresses.<br><br></div><div><br>PlayStation and Xbox forums<br><br></div><div><br>More than 2.5 million gamers that use the XBOX360 ISO and PlayStation's PSP ISO forums had their account details compromised. The details taken include email addresses, passwords and IP addresses.<br><br></div><div><em><br>The Telegraph</em> reported the data breach happened in 2015 but has only just been found and made public. PSP ISO had 1.3m account details taken and Xbox360 ISO had 1.2m accounts hit.<br><br></div><div><br>Cloudflare<br><br></div><div><br>Personal messages sent on dating websites, Uber trips, and more were all leaked online after a problem with internet company Cloudfare's software. A bug in the software, which is used by millions of websites, meant that unhashed and plaintext information was being published to the web between September 2016 and February 2017.<br><br></div><div><br>While technically not a hack, the passwords and sensitive personal information of customers who use the websites affected were cached by search engines after they were published online. It is not known how much personal data was leaked in the incident that has been dubbed Cloudbleed.<br><br></div><div><br>CloudPets<br><br></div><div><br>In 2016, more than 727,000 UK children had their information compromised following a cyberattack on VTech. Now, another internet connected range of children's toys has been found to be exposing the personal details of children.<br><br></div><div><br></div><div><br>CloudPets, the maker of Internet of Things teddy bears, left more than two million voice recordings from children online without any security protections. <em>Ars Technica</em> reported the company had been contacted about the vulnerability multiple times but had not responded.<br><br></div><div><br>While not directly a hack, the information has been able to be accessed by those who may want to misuse it. A MongoDB database of 821,296 account records, stored by a Romanian company, was accessible online.<br><br></div><div><br>Wishbone<br><br></div><div><br>Wishbone is a social app that allows its users to create polls and get feedback on their ideas. More than two million email addresses and 287,000 mobile phone numbers were stolen from the site, <em>Motherboard</em> has reported.<br><br></div><div><br>A group of "unknown hackers" is reported to have taken the emails, phone numbers, names, birthdates and genders from an unprotected database from the Wishbone app. Security researcher Troy Hunt was provided with the data, which had 2,247,314 unique email addresses. Science Inc. the company that owns Wishbone told <em>Motherboard</em> hackers "may have had access to an API without authorisation".<br><br></div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 12:52:58 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195200731</guid>
      </item>
      <item>
         <title>DDos RUSSIAN BANKS Josh/Tyler</title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195200962</link>
         <description><![CDATA[<div>a botnet consisting of at least 24,00 computers located in over 30 countries trained its resources against at least five russian banks in the beginning of november.&nbsp;<br>&nbsp;</div><div>Sberbank and Alfabank were among the victims that experienced several waves of DDoS attacks over a two-day period. Fortunately, none of the attacks were strong enough to knock out any of the affected organizations’ online client services.<br><br></div><div>It’s believed the bad actors leveraged an IoT botnet like Mirai to perpetrate the attacks.<br><br></div><div>The campaign constituted the first time that attackers have conducted a massive DDoS campaign against Russian banks since October 2015<br>At least five Russian banks weathered days-long DDoS attacks this week.<br>The attacks were powered by compromised IoT devices, according to an unnamed Russian Central Bank official. Early indications are that the <a href="http://www.theregister.co.uk/2016/10/21/dyn_dns_ddos_explained/">Mirai IoT botnet which disrupted DNS services</a> for scores of high-profile websites in October 2016 may be behind the latest attacks but this is unconfirmed.</div><div><br>&nbsp;</div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 12:53:28 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195200962</guid>
      </item>
      <item>
         <title>Aiden, Harry, Creag- How Not to Get Hacked</title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195201222</link>
         <description><![CDATA[<div>North Korea D-DOS<br>On December 22nd 2014 North Korean internet was taken offline by D-DOS attack. Lizard squad took responsibility for the attack and was linked to an IP address located north Korea.</div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 12:54:06 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195201222</guid>
      </item>
      <item>
         <title>andrew&amp;jared phishing</title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195204052</link>
         <description><![CDATA[<div>who?: damola olatunji and amos mwangi<br>when?: 10 December 2011<br>what?: scammed students by using fake student loan emails. made 1 million<br>where?:south east London<br>why?: theft<br>what now?: they got tried in court, doesn't say what happened to them after that.<br>the risk still exists<br>to defend, don't email sensitive information and check the web address</div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 13:01:29 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195204052</guid>
      </item>
      <item>
         <title>Canadian University Phishing Scam Jack/Sam</title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195204544</link>
         <description><![CDATA[<div>Someone in Hong Kong committed the crime<br><br></div><div>The victim was the university&nbsp;<br><br>This happened at the end of August this year<br><br></div><div>£7.5 million were stolen in a phishing scam<br><br></div><div>People’s emails were exploited<br><br></div><div>This was done for profit<br><br></div><div>Nothing has been done as of yet, the risk still stands check the urls of websites before you enter details.<br><br></div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 13:02:40 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195204544</guid>
      </item>
      <item>
         <title>Samuel and Patrick Star</title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195204570</link>
         <description><![CDATA[<div><br><br><br>The incredibly clever technique involves a fake but convincing and functional Gmail sign-in page<br>A sophisticated new phishing technique that composes convincing emails by analysing and mimicking past messages and attachments has been discovered by security experts.&nbsp;<br>Discovered by Mark Maunder, the CEO of WordPress security plugin Word fence, the attack first sees the hacker send an email appearing to contain a PDF with a familiar file name<br>Unfortunately, the attack’s imitation of the Gmail sign-in page is so convincing that many users will automatically enter their login details, simultaneously surrendering them to the hackers, who can proceed to steal your data and use one of your past messages to compromise another round of Gmail users.<br>In an example described by a commenter on Hacker News, the hackers emailed a link disguised as an athletics practice schedule from one member of the team to the others.&nbsp;<br>“The attackers log in to your account immediately once they get the credentials, and they use one of your actual attachments, along with one of your actual subject lines, and send it to people in your contact list,” added the commenter.<br><br>Impressive as the attack is, there are ways to protect yourself.<br>The most obvious giveaway is that the legitimate Gmail sign-in page’s URL begins with a lock symbol and ‘https://’ highlighted in green, not ‘data:text/html,https://’. However, if you hit the address bar, you’ll also see that the fake page’s URL is actually incredibly long, with a white space sneakily hiding the majority of the text from view.<br>&nbsp;“We're aware of this issue and continue to strengthen our defenses against it,” Google said in a statement after this article was published.<br>“We help protect users from phishing attacks in a variety of ways, including: machine learning based detection of phishing messages, Safe Browsing warnings that notify users of dangerous links in emails and browsers, preventing suspicious account sign-ins, and more. Users can also activate two-step verification for additional account protection.”&nbsp;<br><br><br><br></div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 13:02:45 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195204570</guid>
      </item>
      <item>
         <title>Ransomware - Jamie </title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195204732</link>
         <description><![CDATA[<div>To protect yourself from Ransomware, you need to install an Anti-virus program as they can stop ransomware from being installed onto the computer and it can find it when it’s been downloaded. A majority of anti-virus can scan files to see if they might consist of ransomware before they are even downloaded. Another important process is to back up your files as if ransomware is installed, you will have a recovery of your files so you could factory reset your PC then recover your files after.</div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 13:03:13 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195204732</guid>
      </item>
      <item>
         <title>Tom and Pierce - Virus</title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195204852</link>
         <description><![CDATA[<div>Virus Distribution&nbsp;</div><div>CCleaner&nbsp;</div><div><a href="http://www.independent.co.uk/life-style/gadgets-and-tech/news/ccleaner-latest-updates-antivirus-app-malware-not-know-customers-use-piriform-avast-a7954896.html">http://www.independent.co.uk/life-style/gadgets-and-tech/news/ccleaner-latest-updates-antivirus-app-malware-not-know-customers-use-piriform-avast-a7954896.html</a>&nbsp;</div><div>&nbsp;</div><div><a href="https://www.pcworld.com/article/3225407/security/ccleaner-downloads-infected-malware.html">https://www.pcworld.com/article/3225407/security/ccleaner-downloads-infected-malware.html</a>&nbsp;</div><div>&nbsp;</div><div>During mid-September, over 2.27 million CCleaner users used infected software as malicious code had managed to implant onto the code. This code attempted to connect users to web domains which had more links to even more harmful malware. This version of the software was available for a month before it was found. Luckily no harm was done however it is a very embarrassing error, especially for a program which has the intent to clean and protect devices. Avast released a newer version of the device and shut down any access to the hacker’s servers.&nbsp;</div><div>The malicious code was infiltrated by an unknown hacker who has still not been found.&nbsp;</div><div>The purpose of the virus was to infect devices even further with a second stage payload which few devices managed to receive.&nbsp;</div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 13:03:30 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195204852</guid>
      </item>
      <item>
         <title></title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195205867</link>
         <description><![CDATA[]]></description>
         <enclosure url="https://wi-images.condecdn.net/image/68jqeNlqo7v/crop/405" />
         <pubDate>2017-10-09 13:05:52 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195205867</guid>
      </item>
      <item>
         <title></title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195205874</link>
         <description><![CDATA[]]></description>
         <enclosure url="https://wi-images.condecdn.net/image/68jqeNlqo7v/crop/405" />
         <pubDate>2017-10-09 13:05:54 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195205874</guid>
      </item>
      <item>
         <title></title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195205877</link>
         <description><![CDATA[]]></description>
         <enclosure url="https://wi-images.condecdn.net/image/68jqeNlqo7v/crop/405" />
         <pubDate>2017-10-09 13:05:55 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195205877</guid>
      </item>
      <item>
         <title>Adem and mitch</title>
         <author></author>
         <link>https://padlet.com/mdenton_30/hacked/wish/195207406</link>
         <description><![CDATA[<div>Ddos - in 2014 a group called lizard squad used a ddos attack on the psn and xbox servers and brought them down, the people who were affected was the consumers of the products and service. this happened on the 25/12/14. the group achieved this because microsoft had no security in place so they just pinged them with loads iof requests to bring down their servers where as psn had security in place so they had to work around their security. they did this because they could and they said "for the laughs", because this happened microsoft has since increased their security. </div>]]></description>
         <enclosure url="" />
         <pubDate>2017-10-09 13:09:48 UTC</pubDate>
         <guid>https://padlet.com/mdenton_30/hacked/wish/195207406</guid>
      </item>
   </channel>
</rss>
