Cyber Security

Knowledge of over 200 million Deezer customers stolen, leaks on hacking discussion board • Graham Cluley

Knowledge of over 200 million Deezer customers stolen, leaks on hacking discussion board • Graham Cluley
Written by admin


Data of over 200 million Deezer users leaks on hacking forum

Music-streaming service Deezer has owned up to a knowledge breach, after hackers managed to steal the information of over 200 million of its customers.

The info, which seems to have been stolen from one among Deezer’s third-party service suppliers in 2019, consists of:

  • First and final names
  • Dates of start
  • Electronic mail addresses
  • IP addresses
  • Gender
  • Location knowledge (Metropolis and Nation)
  • Be part of date
  • Person ID

In accordance with RestorePrivacy which first reported on the breach, the hacker launched a pattern 5 million stolen information on a well known hacking discussion board, claiming to have a 60GB stash of stolen knowledge, together with 228 million electronic mail addresses:

Immediately im promoting the data of over 200+ million Deezer.com customers from 2019 (particularly earlier than september-october of 2019). It consists of Customers CSV which is a 60gb file with 257,829,454 information, of these information there are approx 228 million non anonymized distinctive emails. A CSV containing logged person periods (IP Tackle and machine). Profiles CS, and a folder named ultimate containing 106 CV’s. Supply remains to be unclear however it looks as if Deezer employed a 3rd occasion knowledge evaluation firm to research their customers. Ailing look ahead to deezer to substantiate the place this got here from lmao. First purchaser additionally recieves entry to the place this got here from (theres some further stuff within the supply of this).

Deezer printed a assist advisory concerning the breach in November, shortly after the hacker’s put up.

Deezer describes the leaked knowledge as “non-sensitive info”, and claims that no passwords or fee particulars have been uncovered.

Non-sensitive? Hmm. On the very least the e-mail addresses and different info could possibly be used to create convicing phishing emails, and maybe be abused by fraudsters to extract additional particulars from Deezer customers.

And I, for one, am disenchanted to haven’t obtain any notification concerning the breach from Deezer.

EmailSignal as much as our publication
Safety information, recommendation, and suggestions.

Again within the mists of time (2014), I had a Deezer account. I’d fully forgotten about it, however managed to log again into Deezer at this time and located my account was nonetheless lively.

Fortunately I haven’t been paying a subscription all this time, however I’m disgruntled that Deezer hasn’t reached out to affected customers to tell them that the breach has occurred. As an alternative, the primary I knew about it was once I obtained a notification from Troy Hunt’s Have I Been Pwned challenge.

Have I Been Pwned notification of Deezer data breach
Have I Been Pwned notification of Deezer knowledge breach

Naturally I’ve modified my password as a precaution although I haven’t used Deezer’s companies for nearly 10 years. Once I get the possibility, I’ll look into how I can delete my account solely.

Chances are you’ll want to think about doing the identical in case you don’t have any use for Deezer, or on the very least change your password.

As all the time, make it a powerful one which’s laborious to crack, and be certain that you’re not utilizing it anyplace else on the web.

Discovered this text attention-grabbing? Comply with Graham Cluley on Twitter or Mastodon to learn extra of the unique content material we put up.


Graham Cluley is a veteran of the anti-virus business having labored for numerous safety firms for the reason that early Nineties when he wrote the primary ever model of Dr Solomon’s Anti-Virus Toolkit for Home windows. Now an impartial safety analyst, he often makes media appearances and is an worldwide public speaker on the subject of pc safety, hackers, and on-line privateness.
Comply with him on Twitter at @gcluley, on Mastodon at @[email protected], or drop him an electronic mail.



About the author

admin

Leave a Comment