Flightradar24 offensichtlich gehackt

ANZEIGE

DutyFreebe

Reguläres Mitglied
02.02.2017
94
0
Danke für die Info! Bislang noch keine benachrichtung erhalten... hoffe hat mich dann nicht getroffen [emoji16]
 

MFox

Erfahrenes Mitglied
10.06.2016
1.401
1.599
Folgender Liebesbrief erreichte mich gestern Nachmittag

Dear Flightradar24 user,

I regret to inform you that late last week we identified a security breach that may have compromised the email addresses and hashed passwords (see explanation below) for a small subset of Flightradar24 users (those who registered prior to March 16, 2016), including you. While we do not have any indication that your information was accessed, we still want to sincerely apologize for the breach and let you know what we're doing, and what we encourage you to do.
We do not store passwords in plain text on our servers. Instead we convert them into scrambled strings of characters (hashes) that are designed to be impossible to convert back. However, as a general precaution and because the hashing algorithm used in this retired part of our system no longer is considered sufficiently secure, we have decided to reset the passwords of all potentially affected users.



In case you’ve used the same password anywhere else, I strongly suggest you update it there as well.
Please note that no payment information has been compromised. Flightradar24 neither handles nor stores payment information. Instead, this is managed by our trusted partners Adyen and PayPal.
The security breach was limited to one server and it was promptly shut down once the intrusion attempt had been ascertained. Other actions, beyond the password reset for affected users, include a modern secure password hashing (in place since 2016) and further strengthening of access and authentication for our internal systems.

We take the protection of your information very seriously and will continue our thorough internal security review of our system and processes to see what more we can do to ensure that this never happens again. In order to comply with the EU’s General Data Protection Regulation (GDPR) article 33 (Notification of a personal data breach to the supervisory authority) we have also notified The Swedish Data Protection Authority (Flightradar24 is a Swedish company).
If you have any questions, I encourage you to contact us at support@fr24.com.
Sincerely,
Fredrik Lindahl
CEO, Flightradar24
 
  • Like
Reaktionen: DavidHB