Monday, April 28, 2025

Latest

Hackers Target Internet Archive in Major Data Breach

The Internet Archive, home to the Wayback Machine, fell victim to a significant cyberattack that compromised its authentication database and triggered a massive Distributed Denial of Service (DDoS) attack. The breach, which happened on September 18, exposed personal information of approximately 31 million registered users, including email addresses, screen names, and Bcrypt-hashed passwords.

The attack first came to light when visitors to archive.org encountered a JavaScript alert popup, mockingly referencing the vulnerability of the Internet Archive and directing users to check Have I Been Pwned (HIBP), a data breach notification service. Troy Hunt, HIBP’s founder, confirmed receiving a 6.4GB database from the threat actor, which appears to contain genuine Internet Archive user data.

Related: Internet Archive Faces Major Setback in Copyright Ruling

Jason Meller, vice president of product at 1Password and former chief security strategist at Mandiant, suggested on Forbes that the attackers likely gained access to the back-end infrastructure and obtained some control over web content delivery. The repeated website outages indicate the attackers may have also achieved dominance at the network layer.

Brewster Kahle, digital librarian and group chair at the Internet Archive, confirmed the DDoS attack, website defacement via a JavaScript library, and the breach of user data. 

Kahle stated that immediate actions were taken, including disabling the compromised JavaScript library, system cleanup, and security upgrades. He also later updated that the Internet Archive’s data had not been corrupted. “Services are currently stopped to upgrade internal systems,” he added on X.  

The pro-Palestinian hacktivist group Black Meta has claimed responsibility for the attacks.


Information for this story was found via the sources and companies mentioned. The author has no securities or affiliations related to the organizations discussed. Not a recommendation to buy or sell. Always do additional research and consult a professional before purchasing a security. The author holds no licenses.

Leave a Reply

Video Articles

Bell Q3 Earnings: Massive Impairments. Guidance Cuts. A Mess.

Alamos Gold Q3: Record Revenue & Production Amid Rising Costs

The Junior Mining Market Is Back

Recommended

Germany Looks To Modernize Military Recruitment But Stops Short of Conscription

First Majestic Silver Posts Topline Revenue Of $146.1 Million In Q3 2024

Related News

Twilio Confirms Data Breach: Millions of Authy Users’ Phone Numbers Exposed

American messaging giant Twilio (NYSE: TWLO) confirmed on Monday that unauthorized “threat actors” accessed phone...

Friday, July 5, 2024, 07:43:28 AM

EMX Reports Potential $2.3 Million Loss Due to Cyber Attack in Turkey Subsidiary

EMX Royalty Corporation (TSXV: EMX) has announced that one of its subsidiaries in Turkey has...

Wednesday, May 15, 2024, 08:05:38 AM

Internet Archive Faces Major Setback in Copyright Ruling

A federal appeals court has dealt a significant blow to the Internet Archive, upholding a...

Thursday, September 5, 2024, 12:10:00 PM

US Investigates Major Telecom Hack Linked to Chinese Intelligence

A major cybersecurity breach linked to the Chinese government has compromised the networks of several...

Monday, October 7, 2024, 10:17:53 AM