Happy New Year 2024 to all our members and visitors! Our Forum is Now Back Online After Some Critical Upgrade- We Apologize for the inaccessibility Period! Thank You all. CORONAVIRUS safety tips from Admin! 1. Watch your hands with running water 2. Dont cough in your hands 3. Keep distance from people 4. Stay indoor if neccessary!! Stay safe !!! Dear Members,Do you know that naijacrux is fully programmed to serve you better, Do you know that you can share your favorite post on naijacrux with friends on twitter,facebook, googleplus,myspace and many more! To share post on naijacrux with friends and family on twitter, facebook,googleplus,myspace,and many more, scroll to the down page of the post, Click on the Social Icon You Want To Share On To Share.


Author Topic: Hackers Nabbed after Trying to Break Into 20.59 Million TaoBao Alibaba Accounts  (Read 1940 times)

0 Members and 1 Guest are viewing this topic.

Offline internet police

  • Global Moderator
  • Hero Member
  • *****
  • Posts: 2321
  • Karma: +0/-0
  • do not spam this forum
Loading...

The Chinese Ministry of Public Security has announced it arrested a group of hackers that tried to hack into over 20.59 million TaoBao.com accounts, Reuters reports.

TaoBao is one of Alibaba's subsidiaries, an eBay-like site where users can buy and sell their products at the prices they choose.

According to an announcement on the Ministry's website, local authorities apprehended a group of cyber-crooks that employed some sort of automated attack and tried to hack into TaoBao accounts.

The hackers, who haven't been named yet, got their hands on a database of 99 million username and password combos from multiple other breached websites.

Another case of password reuse puts users at risk

In October, using Alibaba's cloud computing platform, the hackers started to test these username-password combos on TaoBao's platform.

Even if none of the user details were leaked from Alibaba or TaoBao's infrastructures, the hackers were hoping that password reuse was in play, and some of the username-password combos were also valid on TaoBao's portal.

According to Chinese authorities, the hackers discovered that over 20.59 million of their 99 million accounts were also valid TaoBao login credentials.

Alibaba observed their attack in November and reported the incident to Chinese authorities.

Alibaba blocked most log-in attempts

Alibaba says that the vast majority of log-in attempts were thwarted, but the hackers did manage to breach some accounts.

The hacker group then used these compromised accounts to place fake orders to their own accounts and boost their sale reputation before using them to commit fraudulent transactions.

Just this past week, a similar type of incident was reported by luxury retailer Neiman Marcus, owner of brands like Alexander McQueen, Carolina Herrera, Dolce & Gabbana, Givenchy, Jimmy Choo, and Valentino.

Just like with the Alibaba incident, the hackers behind the cyber-attack used username-password combos from previous breaches and tried to see if they fitted any current accounts on various Neiman Marcus websites, also employing an automated log-in system.


 

 

MMM Scandal - Man stakes employer’s N3.5 million on MMM, lands in court

Started by guruslodge

Replies: 0
Views: 2942
Last post November 10, 2017, 05:47:15 AM
by guruslodge
China Alibaba group to buy stake in online food delivery service for $1.25bn

Started by legendguru

Replies: 0
Views: 2077
Last post December 26, 2015, 11:56:02 PM
by legendguru