Hackers010 Archivesconstantly trying to break into Google accounts, so Google researchers spent a year tracing how hackers steal passwords and expose them on the internet's black market.
To gather hard evidence about the tools hackers use to swipe passwords, Google collaborated with University of California Berkeley cybersecurity experts to track activity on some of these markets. On Thursday, they published their results.
"There’s a lot of anecdotes about how accounts are being hijacked and we’re providing solid evidence about how this is going on in the wild," Google anti-abuse researcher Kurt Thomas told Mashable.
SEE ALSO: Google adds stronger security features for hacking targetsGoogle found that most passwords are obtained in two ways: deceptive e-mail phishing and "third-party breaches," such as hackers scraping passwords from a massive corporation like Equifax. In the year between March 2016 and 2017, Google found 12 million credentials (which are a combination of both usernames and passwords) obtained from phishing and a whopping 3.3 billion credentials swiped during third-party breaches.
The numbers are staggering because passwords are an attractive commodity — especially a Google account password that allows access to one's Gmail, Google Docs, Google Drive, and so on.
"It's the key to the kingdom," said Thomas. "Accounts are incredibly valuable to hijackers. There's an incredible effort they’re putting into getting access to your email."
"Passwords are no longer a paradigm that you can really trust in."
Although the study's stolen password numbers are massive, it's important to note that the research team was limited in scope, so these figures could be significantly higher; the team only collected information that was freely available on the web.
"A hijacker that doesn’t hold themselves to that standard can get a lot more," explained Thomas.
It's certainly not rare anymore for people to have their e-mail accounts hijacked by the web's malicious players. Google says that 15 percent of web users report having an account breached by hackers, although that number could certainly be much higher.
If passwords have so many enemies today — either through direct hacking or massive corporate data breaches — how do we battle these constant attempts at password theft?
Thomas emphasized using different passwords across sites, which many people know but simply disregard. Juggling passwords used to pretty inconvenient, but today there are reputable password managers. "Use a password manager," said Thomas, while also emphasizing Google's own security measures, such as Google's Security Check-up and having a phone number associated with your account — so Google can alert you of suspicious activity.
In short, meaningful password security — for Google accounts — is a collaborative effort between Google's behind-the-scene efforts to spot strange account activity and your own vigilance.
Take it from a cybersecurity expert: "Passwords are no longer a paradigm that you can really trust in," said Thomas.
Topics Cybersecurity Google
Kid who can't handle being grounded for a day overreacts like only a 9 year old canAmericans trust Google and Amazon more than Tom Hanks, report finds'Jeopardy' facing backlash after wading into IsraelBitcoin whale moves $1.1 billion in bitcoins for an $80 feeThe U.S. government is pressuring Apple to unlock an iPhone. Again.It's official: Uber's Travis Kalanick and Emil Michael are actually the worstThere's nothing cuter than this kid cosplaying The Mandalorian at Galaxy's EdgeUniversity immortalizes nice cloud dog with equally nice 10There's nothing cuter than this kid cosplaying The Mandalorian at Galaxy's EdgeRing hit with class action lawsuit for 'failure to take basic security precautions'Elon Musk keeps getting owned by the PA Treasury's Twitter accountChance the Rapper sat in on a third grade math class and it looked really fun, TBHMicrosoft just killed support for Windows 7'The Outsider' weaves a spooky, outA guide to using TikTok's algorithm to watch videos you actually likeNext OnePlus flagship phone will have a 120Hz displayMother's Day has caused a bunch of Americans to panic big timeSerena Williams donates $43,000 to Australian bushfire reliefTrump stumbles into encryption debate, tells Apple to unlock iPhones'The Magicians' Season 5 feels pointless in a post Roman Sewers: Innovative, Sure, But Filthy, Too Ernie & Me—A Soldier Falls In, and Falls Out, with Hemingway What’s Better Than the War & Peace Miniseries? The Worst Thing for Writing Is Envy All Aboard: The MoonArk Project Is Taking Art to the Moon How Sarah Meyohas Uses Art to Play the Market I Lost an Idea Last Night Lost Downtown: Peter Hujar’s Portraits from NYC in the ’70s Queen Bitch: Alex Abramovich on David Bowie Poem: Mark DeFoe, “Jan. 27, 1979” John Gielgud Reading Brideshead Revisited Mondays Have Always Been Blue—Even Before the Pseudoscience C. D. Wright, 1949–2016; Read Her Poem “Our Dust” Watch a Strange, Spooky Documentary About Isak Dinesen Who Said a Public Poem Has to Cheer You Up? David Bowie’s 100 Favorite Books Robert Frost’s Death Wish Sixty Years of The Paris Review’s Design: A History Vagrich Bakhchanyan and Subversive Soviet Art Party on the Thames: The “Frost Fairs” of the Little Ice Age
2.2731s , 8224.6015625 kb
Copyright © 2025 Powered by 【2010 Archives】,Creation Information Network