Internet security firm Trustwave exposed the extensive data hoard, saying in its blog that the responsible botnet – dubbed Pony – had harvested information from thousands of vulnerable computers on a global scale. The information included login credentials, email addresses and passwords.
In total, 1,580,000 website login credentials were stolen, alongside 320,000 email and 41,000 FTP accounts.
“Most of the compromised web log-ins belong to popular websites and services such as Facebook, Google, Yahoo, Twitter, LinkedIn, etc.,” stated the blogpost, adding that the presence of both vk.com and odnokklassniki.ru, “probably indicates that a decent portion of the victims comprised were Russian speakers.”
Facebook has stated that no security breach of their system had taken place, putting the blame on particular users who failed to ensure their own security. “It appears that people's computers may have been attacked by hackers using malware to scrape information directly from their web browsers,” a Facebook spokesperson told the BBC. They went on to highlight how to circumvent such incidents with Facebook, e.g. by activating Login approvals and notifications.
Stolen Passwords by Day
Analyzing the newly leaked accounts, the Trustwave team found that the top ten most commonly used passwords comprise 2.4 percent of the total count, exposing that people tend to choose ease of access over security for their accounts.
The most frequently stolen passwords are unsurprisingly the weakest one, with the most popular being “123456.” In second was “123456789,” then “1234” and then “password.”
Security researcher, Graham Cluley, told the BBC that “30-40% of people use the same passwords on different websites… that's certainly something people shouldn't do.”