MyfitnessPal has been hacked! Because email addresses were among the information stolen, criminals have been able to send MyfitnessPal spear phishing emails for the past month. These spear phishing attacks are especially dangerous because stolen personal information that users had logged in the app can be used to make phishing emails very convincing and difficult to detect. . Under Armour’s hugely popular fitness tracker, MyFitnessPal, has been hacked. If you’re one of the 150 million or so users of the app or website don’t panic, but do change your password. If you use Facebook to log in to MyFitnessPal you do not need to change your Facebook password. If you use your MyFitnessPal password on any other websites, change your password on those websites – choose a different, strong password for each one (consider using a password manager if that sounds too difficult).. Strava experienced a data breach impacting 100 million users. Update your credentials to safeguard against potential scams.. MyFitnessPal Accounts, Password Change, Phishing Risks, Account Security. . LinuxSecurity.com Team
Samba admins: get patching and/or updating. Unless you’re content to have your admin passwords overwritten by, well, anyone else using Samba.. That’s the gist of an advisory warning that “On a Samba 4 Active Directory domain controller (AD DC) any authenticated user can change other users' passwords over LDAP, including the passwords of administrative users and service accounts.” . Samba 4 Active Directory Domain Controller enables any verified user to modify administrative passwords, revealing critical vulnerabilities in security measures.. Samba Administration, Password Change Threat, Active Directory Risks, Samba Update Advisory. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.