This week, Facebook sued against the Israeli company NSO Group, which develops and sells spyware…
“Hidden in the flood of complaints about technical issues, a smaller stream of users reported losing access to their accounts”, — write ZDNet reporters.
The ZDNet publication found out that user accounts are already sold on the darknet at a price of $ 3 to $ 11 apiece, and sometimes even free.
Victims say that hackers logged out of their accounts on all devices, and then changed their email address and password, effectively taking control and blocking the previous owner.
“The speed at which hackers have mobilized to monetize Disney+ accounts is astounding. Accounts were put up for sale on hacking forums within hours after the service’s launch.”, —wonder ZDNet reporters.
Although some victims admitted to reporters that they reused passwords, others said they did not and used unique credentials. This indicates that the attackers “steal” Disney + accounts not only with credentials leaked from other sites, but also with the help of keyloggers and other malware, which apparently infected victims’ devices.
Read also: US company discovered a hack when an attacker spent all the disk space on the server
According to the publication, the darknet already sells access to thousands of Disney + accounts.
“Disney + launch has been absolutely horrible. Their customer service is no help at all and apparently hundreds of accounts were hacked and sold online. My account got hacked & email/password changed, thankfully I cancelled my subscription before the hack”, — writes on Twiter Harry (@Harry8__) user.
In addition, some hacker forums have also published free Disney + credential lists for account sharing, as the service allows this. User names and credentials in these cases are available in clear text. Having contacted some of the defendants in these lists, the journalists found out that the credentials really belong to them and are still active.
1.99 is a site that tries to trick you into clik to its browser notifications…
Dolophin.com is a site that tries to force you into clik to its browser notifications…
Maxfirewall.co.in is a site that tries to force you into subscribing to its browser notifications…
Opennetworklink.co.in is a domain that tries to force you into clik to its browser notifications…
Nopixelads.top is a site that tries to force you into subscribing to its browser notifications…
Unhesiss.shop is a domain that tries to trick you into clik to its browser notifications…