Formspring, a social question and answer website popular among young teenagers suffered a data breach after which it disabled the users' passwords following a security reasons.
Approximately 420k password hashes were posted to a security forum amid the breach.
Someone broke into one of their development servers and accessed it to extract account information from a production database.
However, the company immediately fixed the hole and upgraded our hashing mechanisms.
TPRM report: https://scoringcyber.rankiteo.com/company/formspring
"id": "for1511301222",
"linkid": "formspring",
"type": "Breach",
"date": "07/2012",
"severity": "60",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Social Media',
'name': 'Formspring',
'type': 'Company'}],
'attack_vector': 'Server Intrusion',
'data_breach': {'data_exfiltration': True,
'number_of_records_exposed': '420,000',
'type_of_data_compromised': 'Password hashes, account '
'information'},
'description': 'Formspring, a social question and answer website popular '
'among young teenagers, suffered a data breach after which it '
"disabled the users' passwords following security reasons. "
'Approximately 420k password hashes were posted to a security '
'forum amid the breach. Someone broke into one of their '
'development servers and accessed it to extract account '
'information from a production database. However, the company '
'immediately fixed the hole and upgraded our hashing '
'mechanisms.',
'impact': {'data_compromised': 'Account information, password hashes',
'systems_affected': 'Development server, production database'},
'initial_access_broker': {'entry_point': 'Development server'},
'response': {'containment_measures': 'Fixed the vulnerability, upgraded '
'hashing mechanisms'},
'title': 'Formspring Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Unspecified vulnerability in a development server'}