Close Menu
Entertainment Industry Reporter
    Facebook X (Twitter) Instagram
    Entertainment Industry Reporter
    • Home
    • Film
    • Television
    • Box Office
    • Reality TV
    • Music
    • Horror
    • Politics
    • Books
    • Technology
    • Popular Music Videos
    • Cover Story
    • Contact
      • About
      • Amazon Disclaimer
      • DMCA / Copyright Disclaimer
      • Privacy Policy
      • Terms and Conditions
    Entertainment Industry Reporter
    You are at:Home»Technology»23andMe user data breached in credential-stuffing attack
    Technology

    23andMe user data breached in credential-stuffing attack

    By AdminOctober 7, 2023
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    23andMe user data breached in credential-stuffing attack


    Biotech company , known for its DNA testing kits, confirmed to that its user data is circulating on hacker forums. The company said the leak occurred through a credential-stuffing attack.

    A credential-stuffing attack involves user information that has already been compromised (usernames and passwords, for example) from one organization, which a hacker obtains and attempts to reuse with a second organization — in this case, 23andMe. Because of the nature of credential-stuffing, it does not appear this was a breach of the company’s internal systems. Rather, accounts were broken into piecemeal. The perpetrators of this attack appear to have obtained quite sensitive information from the compromised accounts (genetic testing results, photos, full names and geographical location, among other things).

    The initial leak comprised “1 million lines of data for Ashkenazi people,” to BleepingComputer. By October 4, data was being offered for sale in bulk, in increments of 100, 1,000, 10,000 or 100,000 profiles. The scale of the attack is as yet unknown, but the scope of its impact has likely been exacerbated by 23andMe’s ‘DNA Relatives’ feature. “Relatives are identified by comparing your DNA with the DNA of other 23andMe members who are participating in the DNA Relatives feature,” the company . After accessing an unknown number of profiles via credential-stuffing, the threat actor behind this breach apparently scraped the ‘DNA Relatives’ results for those profiles, netting much more sensitive data. According to the same FAQ page, “The number of relatives listed [..] grows over time as more people join 23andMe.” For the fiscal year 2023, the company it “genotyped” around 14 million customers.

    Ever since 23andMe went public in 2021, the company has for its data protection practices — rightly so, since it deals with sensitive medical data derived from saliva sampling, including predispositions for diseases like Alzheimer’s, Type 2 diabetes and even . On its website the it “exceeds” data protection standards for its industry.



    Original Source Link

    Share. Facebook Twitter LinkedIn Email Telegram WhatsApp

    Related Posts

    Who’s to Blame When AI Agents Screw Up?

    Signal will block Microsoft Recall from snooping on your texts

    Best Microsoft Surface Laptop (2025): Which Model to Buy or Avoid

    Fortnite is finally back in the US App Store

    Withings BPM Vision Review: At-Home Blood Pressure Monitoring

    Spotify iOS users can now buy audiobooks directly from the app

    Popular Posts

    MONARCHS | Kirkus Reviews

    Why Europe’s trade deal with South America is so controversial

    New Mystery and Thriller Books to Read | May 20

    Alice in Chains Issue Statement Confirming Tour Cancellation

    Chase Chrisley reveals he’s sober — ‘feeling better than I have in years’

    Republicans elect John Thune Senate majority leader

    A Play Date Gone Wrong

    Categories
    • Books (1,390)
    • Box Office (818)
    • Cover Story (14)
    • Events (6)
    • Featured (24)
    • Film (1,409)
    • Horror (1,397)
    • Lifestyle (3)
    • Music (1,454)
    • Politics (530)
    • Popular Music Videos (830)
    • Reality TV (852)
    • Technology (1,404)
    • Television (1,153)
    • Uncategorized (1)
    Archives
    Useful Links
    • About
    • Contact
    • Privacy Policy
    • DMCA / Copyright Disclaimer
    • Amazon Disclaimer
    • Terms and Conditions
    Categories
    • Books (1,390)
    • Box Office (818)
    • Cover Story (14)
    • Events (6)
    • Featured (24)
    • Film (1,409)
    • Horror (1,397)
    • Lifestyle (3)
    • Music (1,454)
    • Politics (530)
    • Popular Music Videos (830)
    • Reality TV (852)
    • Technology (1,404)
    • Television (1,153)
    • Uncategorized (1)
    Popular Posts

    Believe, Spotify, Live Nation, K-Pop Shares Up

    Stateside Final Trailer For ‘Godzilla Minus One’ Drops

    Book Review: Guilty Creatures: Sex, God, and Murder in Tallahassee, Florida

    TD Bank pleads guilty, will pay $3 billion in fines

    © 2025 Entertainment Industry Reporter. All rights reserved. All articles, images, product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only. Use of these names, logos, and brands does not imply endorsement unless specified. By using this site, you agree to the Terms & Conditions and Privacy Policy.

    Type above and press Enter to search. Press Esc to cancel.

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
    CookieDurationDescription
    cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
    cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
    cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
    cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
    cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
    viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
    Functional
    Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
    Performance
    Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
    Analytics
    Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
    Advertisement
    Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
    Others
    Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
    SAVE & ACCEPT