23andMe now blames customers and their recycled passwords for the October statistics breach

23andMe now blames customers and their recycled passwords for the October statistics breach

Last updated 5 month ago

Security
data breach
genetics

23andMe now blames customers and their recycled passwords for the October statistics breach



A hot potato: In December, 23andMe confirmed a tough security breach that affected round 7 million users. Now, the genetic trying out corporation says that users are accountable for the incident because of password reuse. Obviously, the finger-pointing isn't always sitting nicely with those affected.

Customers impacted via the 2023 records breach are suing 23andMe in droves, with more than 30 proceedings filed, inclusive of elegance actions and mass arbitration claims. In December, the business enterprise said that unknown attackers at once accessed 14,000 consumer debts, brute-forcing the account passwords with a method called credential stuffing.

Compromising these first bills gave the cybercriminals deeper get entry to to the 23andMe community via its "DNA Relatives" characteristic. DNA Relatives is an elective software that allows 23andMe customers to automatically share restricted personal information with different customers who can be related to them. So, with only some compromised accounts, the hackers won get admission to to the personal information of 6.Nine million others.

TechCrunch received a letter indicating that the non-public genomics company is now contacting some information breach sufferers to inform them they can simplest have themselves to blame. It claims that the users seeking to sue 23andMe used recycled login credentials. Recycling credentials is while someone makes use of the identical login call and password with more than one on line websites.

The organization continues that the incident was no longer a result of its "alleged" failure to maintain reasonable safety features but a rely of hackers gaining reused credentials via 1/3-party web sites. Therefore, prison movements in opposition to the corporation are meritless.

Hassan Zavareei, one of the legal professionals suing 23andMe, notes that the company is blatantly looking to downplay the seriousness of the incident. Zavareei known as 23andMe's finger-pointing strive "nonsensical" due to the fact credential recycling is not unusual sufficient that it ought to have contingencies for it. He argues that 23andMe need to have carried out greater strong security features, specifically considering it shops and manages "non-public identifying facts," fitness, and genetic facts. Zavareei brought that the breach impacted millions due to the fact the DNA Relatives function become insecure, no longer because customers have been recycling passwords.

Lawyers for 23andMe further stated that the statistics "doubtlessly" accessed by means of the cyber-criminals could not be used for any "pecuniary" harm, because it did not include social protection numbers, driver's license numbers, or any payment or monetary information.

Nothing pulls its Android-to-iOS chat app from Google Play over protection concerns

Nothing pulls its Android-to-iOS chat app from Google Play over protection concerns

A hot potato: When Nothing unveiled its chat app ultimate week, it regarded to have cracked the wall separating iMessage customers from anyone who would not personal an iPhone. However, a collection of protection resear...

Last updated 7 month ago

Microsoft pushes Copilot AI to Windows and Office as soon as subsequent week

Microsoft pushes Copilot AI to Windows and Office as soon as subsequent week

Ever since the first Microsoft AI occasion earlier this year, the agency has been eager to place itself on the very tip of the Generative AI spear. Starting with its efforts around Bing Search via early glimpses of the ...

Last updated 9 month ago

Acer's Nitro V sixteen gaming computer is the first to be powered with the aid of a Ryzen 8040 CPU

Acer's Nitro V sixteen gaming computer is the first to be powered with the aid of a Ryzen 8040 CPU

 Acer just spilled the beans on its upcoming Nitro V sixteen gaming pc, that's one of the first laptops to be powered by way of an AMD Ryzen 8040 series processor. The enterprise says it is the appropriate device for in...

Last updated 6 month ago

Qualcomm announces RISC-V chip for Wear OS-based wearable devices

Qualcomm announces RISC-V chip for Wear OS-based wearable devices

Highly anticipated: After betting on the future of RISC-V with an industry-wide alliance, Qualcomm is now bringing its first chip based at the open-supply architecture to the mass marketplace. The American chipmaker wil...

Last updated 8 month ago

Microsoft ought to launch subsequent-gen Xbox in 2026 with Zen 5 and RDNA five

Microsoft ought to launch subsequent-gen Xbox in 2026 with Zen 5 and RDNA five

Rumor mill: Sony and Microsoft have launched the closing two console generations in lockstep, however the modern leaks endorse that the latter is thinking about finishing that sample for the following round. Jumping the...

Last updated 6 month ago

TikTok's rising popularity in information consumption demanding situations Facebook's reign

TikTok's rising popularity in information consumption demanding situations Facebook's reign

In a nutshell: With opposition from rival social media structures, the increasing amount of misinformation on-line, and its own pullback from the information place, it's unexpected to analyze that 30% of US adults prese...

Last updated 7 month ago


safirsoft.com© 2023 All rights reserved

HOME | TERMS & CONDITIONS | PRIVACY POLICY | Contact