Skip to main content
  1. Home
  2. Computing
  3. Web
  4. News

Yahoo’s 2013 data breach is worse than believed — 3 billion users were affected

Add as a preferred source on Google

In December 2016, Yahoo disclosed that its servers were hacked way back in 2013, compromising the sensitive personal data of around 1 billion users. On Tuesday, Yahoo’s new parent company, Verizon, confirmed that the initial estimate was a bit low — in fact, all Yahoo accounts were compromised in the 2013 hack. That’s 3 billion users, making it the largest data breach in history.

“Subsequent to Yahoo’s acquisition by Verizon, and during integration, the company recently obtained new intelligence and now believes, following an investigation with the assistance of outside forensic experts, that all Yahoo user accounts were affected by the August 2013 theft,” reads a statement from Verizon subsidiary Oath.

Recommended Videos

If you ever had a Yahoo account prior to 2013, now would be a good time to resecure all of your existing online accounts — particularly any that may have had contact with your Yahoo account. The security precautions Yahoo took in the aftermath of the original hack might protect current Yahoo users.

“In 2016, Yahoo took action to protect all accounts, including directly notifying impacted users identified at the time, requiring password changes, and invalidating unencrypted security questions and answers so that they could not be used to access an account. Yahoo also notified users via a notice on its website,” Oath’s statement says.

The original breach shook confidence in Yahoo’s ability to protect its users personal information, not only because of the scope of the data breach but because of how long it took for Yahoo to disclose that its users’ information had been compromised.

As a reminder, the original data breach in 2013 potentially exposed names, email addresses, telephone numbers, dates of birth, hashed passwords, as well as security questions and answers. Naturally, such a glut of personal information could be used in a variety of ways, not least of which would be to access other online accounts.

Yahoo was quick to point out what information wasn’t compromised, however.

“The investigation indicates that the information that was stolen did not include passwords in clear text, payment card data, or bank account information. Payment card data and bank account information are not stored in the system the company believes was affected,” the statement reads.

Even though payment data and bank account information wasn’t leaked, it could very well have been accessed with the treasure trove of personal information hackers successfully made off with. So it bears repeating, if you’ve ever had a Yahoo account, it’s time to change all your passwords. Again.

If you don’t already have one, now would be a good time to look into a password manager.

Jaina Grey
Former Digital Trends Contributor
Jaina Grey is a Seattle-based journalist with over a decade of experience covering technology, coffee, gaming, and AI. Her…
A simple coding mistake is exposing API keys across thousands of websites
Security gaps that are easier to miss than you think
Computer, Electronics, Laptop

After analyzing 10 million webpages, researchers have found thousands of websites accidentally exposing sensitive API credentials, including keys linked to major services like Amazon Web Services, Stripe, and OpenAI.

This is a serious issue because APIs act as the backbone of the apps we use today. They allow websites to connect to services like payments, cloud storage, and AI tools, but they rely on digital keys to stay secure. Once exposed, API keys can allow anyone to interact with those services with malicious intent.

Read more
AMD’s latest Ryzen 9 9950X3D2 pushes X3D to the limit
Dual 3D V-Cache, higher power, and a focus on enthusiast performance
AMD Ryzen 9 9950X3D2 FEatured

AMD has unveiled what might be its most extreme desktop CPU yet, the Ryzen 9 9950X3D2. And it’s going all-in on one thing: cache.

https://twitter.com/jackhuynh/status/2037159705395491033?s=20

Read more
Next-gen AI breakthrough promises chatbots that can read the room better
Researchers are teaching AI chatbots to read between the lines
Generative AI

Have you ever asked a chatbot something and felt like it completely missed your point? You say something with a bit of nuance, and the AI misses the subtlety entirely. That is exactly the problem researchers are trying to solve.

Even though the emotional connection with AI can feel deeper than human conversation for many users, most AI systems today still treat a sentence as a single block of sentiment. If you mix praise and criticism, the nuance often gets lost.

Read more