Cybercrooks trawl Fishbrain to net password hashes
Armed with password hashes and salts, attackers could already be kraken those creds
Fishbrain, a fishing app boasting over 20 million users, fell victim to a cyberattack on August 19 that exposed sensitive user information. The attackers stole password hashes, salts, names, dates of birth, email addresses, phone numbers, usernames, and country data. While Fishbrain assured the passwords weren't in plaintext, they acknowledged the compromised hashes could potentially be decoded.
The company warned users with the same password across multiple accounts to change them and suggested creating unique passwords for each account. Fishbrain patched the vulnerability, reset user passwords, restricted access to the affected areas, and strengthened security measures. Users are advised to remain vigilant against phishing attempts using stolen personal data.
Written by urgent.news from The Register Science's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.
- Cybercrooks trawl Fishbrain to net password hashes theregister.com