The Three Female Ghostsinternet is forever, and, yes, that apparently includes your old Reddit private messages.
The so-called front page of the internet today announced that it suffered a hack in June, and, as a result, Reddit private messages from 2005 to 2007 are now in the hands of the as-of-yet unknown culprits.
That's right, your finely aged secret memes are on the loose. Oh, and also your email addresses and account credentials.
SEE ALSO: Remotely hacking ships shouldn't be this easy, and yet ..."A complete copy of an old database backup containing very early Reddit user data — from the site’s launch in 2005 through May 2007 [was accessed]," explains a statement from the company. "In Reddit’s first years it had many fewer features, so the most significant data contained in this backup are account credentials (username + salted hashedpasswords), email addresses, and all content (mostly public, but also private messages) from way back then."
According to the statement, Reddit plans to notify all affected users and reset passwords for accounts that might still be using decade-old passwords. Importantly, the company insists, if you got your first Reddit account post-2007 you're in the clear.
We reached out to Reddit in an attempt to determine if long-deleted accounts from back in the day were affected in any way, but did not receive an answer to that question as of press time.
So how did this happen? It appears that SMS-based two-factor authentication played a key role.
"Already having our primary access points for code and infrastructure behind strong authentication requiring two factor authentication (2FA), we learned that SMS-based authentication is not nearly as secure as we would hope, and the main attack was via SMS intercept," notes the statement. "We point this out to encourage everyone here to move to token-based 2FA."
Indeed, while 2FA is a vital security tool, it does have its weak points. Dedicated hackers can potentially intercept codes sent via SMS by exploiting a flaw in what is known as the Signaling System 7 protocol (SS7), or simply phish the code. A physical security token, as endorsed by Google, is much more secure.
Reddit is working with law enforcement to investigate the hack, and in the meantime encourages all its users to set up 2FA with an authenticator app.
And, although Reddit doesn't officially recommend this, if you have a super old Reddit account it's worth your time to take a walk down your private message memory lane to double check you didn't reveal anything of value in your old PMs. Because having a hacked 12-year-old private message come back to bite you in the ass is probably not how you want to start your day.
Topics Cybersecurity Reddit
PDD’s cost of revenue nearly tripled last year as Temu expanded aggressively · TechNodeJD’s Dada confirms nearly $80 million revenue overstated in four straight quarters · TechNodeChinese GenAI venture raises $14 million, claims itself akin to Sora · TechNodeRedmi launches Harry Potter Edition of new Turbo 3 smartphone · TechNodeDouyin to enter offline payment field with $190 million purchase of thirdAlibaba Cloud cuts prices for international customers as AI demands rise · TechNodeJD’s Dada confirms nearly $80 million revenue overstated in four straight quarters · TechNodeDouyin launches independent shopping app as eHuawei P70 series now available for preMeituan names a new CEO to lead core local commerce · TechNodeEU starts customs registration of Chinese EVs for potential retroactive tariffs · TechNodeVW Tiguan to use drone maker DJI’s ADAS technology for urban driving · TechNodeBilibili overhauls main site operating unit as profitability timeline looms · TechNodeImposter signs fake agreement on behalf of Li Auto with Uzbekistan dealership · TechNodeTikTok says US ban would “trample free speech” as House passes updated bill · TechNodeVolkswagen, Xpeng expand electric vehicle partnership · TechNodeHonor to debut its first AI PC, the MagicBook Pro 16, next week · TechNodeBilibili expects to achieve operating profit in Q3 as more creators engage in liveFIMI launches Mini 3 drone featuring Sony 48MP sensor and 249g weight · TechNodeMSI launches new Nvidia RTX 4090D graphics card for Chinese market · TechNode Around 10,000 Amazon workers are striking just before Christmas Ladies of the Good Dead by Aisha Sabatini Sloan Poets on Couches: Rita Dove Reads Ingeborg Bachmann by Rita Dove On Returning: Gerhard Richter, New York, and Birds by John Vincler Metadata on U.S. government memos reveals authors linked to Project 2025 Redux: The Vagaries of Taste Might Swerve by The Paris Review Redux: Without Wanting to Live Forever by The Paris Review On Sneakers by Hanif Abdurraqib The 'Mean Girls' directors break down how social media shaped their movie musical Strawberry Moon by Nina MacLaughlin OpenAI removes military and warfare prohibitions from its policies The Talents of the Saar Family by The Paris Review Watch the Summer 2021 Issue Launch by The Paris Review The Travels of a Master Storyteller by Yasmine Seale Eibhlín Dubh’s Rage and Anguish and Love by Doireann Ní Ghríofa Language Once Removed: An Interview with Sara Deniz Akant by Lauren Kane Did Trump's executive order just make everyone in the U.S. female? Redux: Have No Mercy, Gardener by The Paris Review Mark Zuckerberg wants more 'masculine energy' in corporate America Wordle today: The answer and hints for January 15
2.676s , 8225.65625 kb
Copyright © 2025 Powered by 【Three Female Ghosts】,Co-creation Information Network