Zephyrnet Logo

Crypto exchange Poloniex forces users to change passwords after data leak

Date:

Crypto exchange Poloniex forces users to change passwords after data leak

Cryptocurrency exchange Poloniex is forcing its users to reset their passwords after a list of email addresses and passwords was allegedly leaked on social media.

Last week, the exchange notified customers of the breach, adding the leaked information could be used to access Poloniex accounts, ZDNet reports.

Poloniex email
Credit: charlysatoshi
Poloniex email to customers that was first thought to be a scam

The email was shared on Twitter by user charlysatoshi, who initially thought it was a phishing attempt. However, Poloniex support confirmed on the social media site that it was, in fact, a legitimate email.

The exchange has also claimed that most of the emails listed aren’t attached to Poloniex accounts.

“While almost all of the email addresses listed do not belong to Poloniex accounts, we are forcing a password reset on any email addresses that do have an account with us, including yours,” the email says.

As ZDNet points out, Poloniex emphasized that most of the email addresses in the leak aren’t connected to the exchange. On the same day of the email also published a tweet advising users how to set up two-factor authentication (2FA) on their accounts.

It’s not entirely clear where the data leak has come from, who exactly was implicated in the breach, or if any accounts have been accessed by bad actors.

Hard Fork has contacted Poloniex for further comment on the extent of the breach, we will update this piece in due course

The lack of information might be a cause for concern for some Poloniex users. But it makes the enforced password change seem like a bit of a knee-jerk reaction, assuming it’s not trying to downplay the situation.

All things considered, if you’re a Poloniex user, it’s probably best to follow their advice. Turn on 2FA and change your password. Better safe than sorry.

Users are right to be weary of phishing attempts, though.

Back in 2018, Google’s Play Store featured a fake cryptocurrency trading app claiming to be for Poloniex. Thankfully, the app was removed soon after it was uncovered by security researchers.

Published January 2, 2020 — 12:24 UTC

Published at Thu, 02 Jan 2020 12:24:16 +0000

spot_img

Latest Intelligence

spot_img

Chat with us

Hi there! How can I help you?