create account

Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked by themarkymark

View this thread on: hive.blogpeakd.comecency.com
· @themarkymark ·
$13.41
Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked
![](https://steemitimages.com/DQmXbrRKC3T4Y3JFduwSHec2hDZf6LMVgPBeio3ywuDj8q1/image.png)

> We have reason to believe that Bitly account credentials have been compromised; specifically, users’ email addresses, encrypted passwords, API keys and OAuth tokens. We have no indication at this time that any accounts have been accessed without permission. We have taken steps to ensure the security of all accounts, including disconnecting all users’ Facebook and Twitter accounts. All users can safely reconnect these accounts at their next login.

UPDATE #4 – MAY 11 at 11:33AM EDT: We are sending an email to all users from the domain bitlysupport.com outlining the steps to secure your account.  If you have already followed the steps to secure your account, you do not need to do so again.

UPDATE #3 – MAY 9 at 2:45PM EDT: We have updated this post to address questions regarding the Bitly iPhone app.

UPDATE #2 – MAY 9 at 10:30AM EDT:  We have updated this post to explain what specifically was compromised and we’re encouraging all of our users to secure their Bitly accounts by following the recommendations listed below.

UPDATE #1 – MAY 8 at 8:32PM EDT: We have updated the section of this post regarding users who have Twitter or Facebook accounts connected to their Bitly accounts.

If you are not using a password manager and using unique alphanumeric, with symbols, uppercase, and 20+ character passwords, you should change that right away!  This is nearly a daily thing now and will not be getting any better.

No one cares about your privacy or identity but you.  Even this won't prevent what companies do with your information but it will dramatically reduce your exposure.  If a site doesn't need your true identity for taxes/billing purposes, use a [fake name](http://www.fakenamegenerator.com).

When you hear about a breach, immediately change your password.  It may not help if they have access to the underlying systems but in most cases. it will.

If you are not using [haveibeenpwned](https://haveibeenpwned.com), you should sign up immediately.  They will notify you when a new breach is discovered and your email address in the breach.   Most of the time there is nothing you can do but change your password and anonymize some data on their platform.
👍  , , , , , , , , , , , , , , , , ,
properties (23)
authorthemarkymark
permlinkbit-ly-hacked-9-3-million-unique-email-addresses-usernames-and-hashed-password-leaked
categorysecurity
json_metadata{"tags":["security","breach","privacy","technology","life"],"image":["https://steemitimages.com/DQmXbrRKC3T4Y3JFduwSHec2hDZf6LMVgPBeio3ywuDj8q1/image.png"],"links":["http://www.fakenamegenerator.com","https://haveibeenpwned.com"],"app":"steemit/0.1","format":"markdown"}
created2017-10-06 06:52:12
last_update2017-10-06 06:52:12
depth0
children8
last_payout2017-10-13 06:52:12
cashout_time1969-12-31 23:59:59
total_payout_value12.284 HBD
curator_payout_value1.126 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length2,273
author_reputation1,784,142,699,334,222
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,920,512
net_rshares5,493,624,374,941
author_curate_reward""
vote details (18)
@andrewmcmillen ·
This occurred in May 2014. Why are you posting about it now? https://www.theatlantic.com/technology/archive/2014/05/url-shortening-service-bitly-hacked-heres-what-to-do/362024/
properties (22)
authorandrewmcmillen
permlinkre-themarkymark-bit-ly-hacked-9-3-million-unique-email-addresses-usernames-and-hashed-password-leaked-20171006t071253687z
categorysecurity
json_metadata{"tags":["security"],"links":["https://www.theatlantic.com/technology/archive/2014/05/url-shortening-service-bitly-hacked-heres-what-to-do/362024/"],"app":"steemit/0.1"}
created2017-10-06 07:12:57
last_update2017-10-06 07:12:57
depth1
children2
last_payout2017-10-13 07:12:57
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length176
author_reputation18,925,111,704,015
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,921,030
net_rshares0
@themarkymark ·
It happened in 2014 just like the Kickstarter hack but it is only recently the data has been leaked.
properties (22)
authorthemarkymark
permlinkre-andrewmcmillen-re-themarkymark-bit-ly-hacked-9-3-million-unique-email-addresses-usernames-and-hashed-password-leaked-20171006t151627258z
categorysecurity
json_metadata{"tags":["security"],"app":"steemit/0.1"}
created2017-10-06 15:16:24
last_update2017-10-06 15:16:24
depth2
children0
last_payout2017-10-13 15:16:24
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length100
author_reputation1,784,142,699,334,222
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,933,894
net_rshares0
@topnetworkeral ·
I was almost worried ........ i wonder if I should still update my info
properties (22)
authortopnetworkeral
permlinkre-andrewmcmillen-re-themarkymark-bit-ly-hacked-9-3-million-unique-email-addresses-usernames-and-hashed-password-leaked-20171006t192326940z
categorysecurity
json_metadata{"tags":["security"],"app":"steemit/0.1"}
created2017-10-06 19:23:27
last_update2017-10-06 19:23:27
depth2
children0
last_payout2017-10-13 19:23:27
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length71
author_reputation345,020,556,245
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,943,463
net_rshares0
@caab ·
Glad I've never used bitly
properties (22)
authorcaab
permlinkre-themarkymark-2017106t22622809z
categorysecurity
json_metadata{"tags":"security","app":"esteem/1.4.6","format":"markdown+html","community":"esteem"}
created2017-10-06 08:26:24
last_update2017-10-06 08:26:24
depth1
children0
last_payout2017-10-13 08:26:24
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length26
author_reputation32,466,228,831,071
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries
0.
accountesteemapp
weight500
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,922,505
net_rshares0
@fknmayhem · (edited)
After all breaches there have been in last years, all of which have hit the mainstream media, I truly struggle with the vast number of people who don't yet use a password manager.

More so even, I struggle with (so-called) online professionals who don't make use of this often free technology. Many of which even using the same password everywhere, or one of their three passwords they rotate across accounts.

It is difficult to raise awareness about privacy issues, and the right to, if people even fail to make the smallest effort required to become slightly more alert.

And there's no effort involved when it comes to password managers. At least not for most users since they will never use offline storage. Password managers make life easier. Much easier.

**Addendum:** An even bigger issue to me, personally, is when I am confronted with websites which do not accept passwords longer than 16 or 20 characters, let alone complex character combinations.
properties (22)
authorfknmayhem
permlinkre-themarkymark-bit-ly-hacked-9-3-million-unique-email-addresses-usernames-and-hashed-password-leaked-20171006t145358002z
categorysecurity
json_metadata{"tags":["security"],"app":"steemit/0.1"}
created2017-10-06 14:54:00
last_update2017-10-06 14:55:27
depth1
children0
last_payout2017-10-13 14:54:00
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length959
author_reputation156,941,100,368,387
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,932,049
net_rshares0
@kadri ·
that is bad news!
properties (22)
authorkadri
permlinkre-themarkymark-bit-ly-hacked-9-3-million-unique-email-addresses-usernames-and-hashed-password-leaked-20171006t093316917z
categorysecurity
json_metadata{"tags":["security"],"app":"steemit/0.1"}
created2017-10-06 09:33:24
last_update2017-10-06 09:33:24
depth1
children0
last_payout2017-10-13 09:33:24
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length17
author_reputation1,843,247,262,070
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,923,753
net_rshares0
@nehapari ·
nice information and thank you very much for share.
👍  ,
properties (23)
authornehapari
permlinkre-themarkymark-bit-ly-hacked-9-3-million-unique-email-addresses-usernames-and-hashed-password-leaked-20171006t081804714z
categorysecurity
json_metadata{"tags":["security"],"app":"steemit/0.1"}
created2017-10-06 08:18:06
last_update2017-10-06 08:18:06
depth1
children0
last_payout2017-10-13 08:18:06
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length51
author_reputation22,131,467,803
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,922,388
net_rshares1,624,727,004
author_curate_reward""
vote details (2)
@randowhale1 ·
This post received a 1.6% upvote from @randowhale thanks to @themarkymark! To learn more, check out [@randowhale 101 - Everything You Need to Know](https://steemit.com/steemit/@randowhale/randowhale-101-everything-you-need-to-know-about-randowhale)!
properties (22)
authorrandowhale1
permlinkre-bit-ly-hacked-9-3-million-unique-email-addresses-usernames-and-hashed-password-leaked-20171006t065457
categorysecurity
json_metadata"{"order": "02098c5936de5fb3837a9e34c29869f16de92a8c", "format": "markdown", "app": "randowhale/0.2", "reward": 1}"
created2017-10-06 06:54:57
last_update2017-10-06 06:54:57
depth1
children0
last_payout2017-10-13 06:54:57
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length249
author_reputation251,189,929,344
root_title"Bit.ly Hacked - 9.3 million unique email addresses, usernames and hashed password leaked"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id16,920,622
net_rshares0