The Internet Archive endured a significant data breach followed by website defacement and persistent DDoS attacks. Malicious actors compromised 31 million unique email addresses, usernames, bcrypt password hashes, and system data as confirmed by security researcher Troy Hunt. The breach, initially concealed and later publicized via an illicit JavaScript pop-up, and ongoing attacks, have led to service interruptions and exposed the organization to cybersecurity and legal risks.
Source: https://www.wired.com/story/internet-archive-hacked/
TPRM report: https://scoringcyber.rankiteo.com/company/internet-archive
"id": "int000101124",
"linkid": "internet-archive",
"type": "Breach",
"date": "10/2024",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"
{'affected_entities': [{'industry': 'Non-profit digital library',
'name': 'Internet Archive',
'type': 'Organization'}],
'attack_vector': ['malicious actors'],
'data_breach': {'number_of_records_exposed': '31 million',
'type_of_data_compromised': ['email addresses',
'usernames',
'bcrypt password hashes',
'system data']},
'description': 'The Internet Archive endured a significant data breach '
'followed by website defacement and persistent DDoS attacks. '
'Malicious actors compromised 31 million unique email '
'addresses, usernames, bcrypt password hashes, and system data '
'as confirmed by security researcher Troy Hunt. The breach, '
'initially concealed and later publicized via an illicit '
'JavaScript pop-up, and ongoing attacks, have led to service '
'interruptions and exposed the organization to cybersecurity '
'and legal risks.',
'impact': {'data_compromised': ['email addresses',
'usernames',
'bcrypt password hashes',
'system data'],
'operational_impact': ['service interruptions']},
'references': [{'source': 'Troy Hunt'}],
'title': 'Internet Archive Data Breach and DDoS Attacks',
'type': ['data breach', 'website defacement', 'DDoS attacks']}