Have I Been Pwned data breach notification service has added over 284 million accounts stolen by information stealer malware and found on a Telegram channel. You can go into the weeds here.
Victor Acin, Head of Threat Intel at Outpost24 had this to say:
“The addition of 284 million compromised accounts to Have I Been Pwned underscores a growing trend in cybercriminal tactics—shifting from dark web marketplaces to more accessible platforms like Telegram for data sharing and sales. This aligns with what we’ve observed in recent years, where threat actors increasingly use communication platforms for illicit activities due to their ease of access and lower risk of takedowns.”
“While the size of this dataset is significant, it is not an outlier in the broader landscape of cybercrime. Threat intelligence teams regularly uncover similar data dumps, often composed of stolen information from previous breaches and infections. The fact that this dataset includes a mix of old and new credentials suggests that cybercriminals continue to recycle compromised data, increasing the risk of account takeovers for users who reuse passwords.”
“For individuals, this reinforces the critical need for strong security practices, including unique passwords for each account, multi-factor authentication, and regular checks on services like Have I Been Pwned to monitor for potential exposure. Organizations should also enhance their threat intelligence capabilities to track emerging risks from alternative platforms like Telegram and proactively secure their users’ data.”
Borja Rodriguez, Manager of Threat Intelligence Operations at Outpost24 follows with this:
“The recent addition of 284 million compromised accounts to Have I Been Pwned (HIBP) underscores the persistent threat posed by information stealer malware. At KrakenLabs, we’ve been closely monitoring the threat actor behind the “ALIEN TXTBASE” data leak, observing their periodic release of stolen credentials over several months. This pattern highlights the critical need for continuous credential monitoring, as waiting for large accumulations of data can delay threat detection and response.”
“Interestingly, following increased media attention, the individual behind ALIEN TXTBASE announced the shutdown of their Telegram channel and claimed to cease operations. In a post on Breach Forums, they stated their intention to close all related activities and even changed their forum alias. However, our experience indicates that such actors often resurface under new identities, making ongoing vigilance essential.”
“It’s important to note that analyses of the ALIEN TXTBASE dataset have revealed inconsistencies, including artificially generated or recycled data from previous breaches. While some authentic stealer logs are present, the dataset also contains fabricated or outdated information. Therefore, organizations and individuals should assess their exposure carefully, implement robust security practices, and avoid undue alarm over sensationalized reports.”
I would recommend reading the post by Troy Hunt of Have I Been Pwned. And then run your email addresses through the Have I Been Pwned service. I have a sneaking suspicion that something related you will pop up.
Microsoft Kills Skype
Posted in Commentary with tags Microsoft on February 28, 2025 by itnerdUntil a few months ago, I had Skype on all my devices. As in my Mac, iPhone, etc. But I have not used Skype in years as I have been using Zoom, Teams, and FaceTime. Thus I deleted it off all my devices. Now it seems that the rest of the planet will have to do the same thing based on this Tweet:
In short, Skype is dead in May. Instead, you will have to use Microsoft Teams. To facilitate this, Microsoft will soon allow users to sign in using Skype credentials. Once signed in, users will see all their Skype chats and contacts appear in Teams. If you don’t want to use Teams, you can export your data from Skype.
Other things to note:
The only thing that I do not know or cannot find out information on is if refunds for Skype credits will be offered. As soon as I get some insight on that, I will update this post.
Are you sad to see Skype die? Or is this a nothing burger because you had stopped using it ages ago. Please leave a comment below and share your thoughts.
Leave a comment »