Opera

Opera

The Opera Sync service may have been compromised, according to a security notice released by Opera for its users.

Opera made every Sync user who received notice by mail of questionable activity with their accounts change their passwords in reaction to the purported incident.

However, some information was discovered to have been accessed, including login names and passwords for some sync users.

Opera made it clear that the system's authentication passwords are salted and hashed using per-user salts; yet, the business withheld details regarding the authentication passwords' hashing procedure.

Source: https://securityaffairs.com/50690/data-breach/opera-sync-security-breach.html

TPRM report: https://scoringcyber.rankiteo.com/company/opera-software

"id": "ope2132291023",
"linkid": "opera-software",
"type": "Breach",
"date": "08/2016",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Technology',
                        'name': 'Opera',
                        'type': 'Company'}],
 'customer_advisories': ['Sent notices by mail to affected users'],
 'data_breach': {'data_encryption': ['Passwords were salted and hashed'],
                 'sensitivity_of_data': ['Authentication credentials'],
                 'type_of_data_compromised': ['login names', 'passwords']},
 'description': 'The Opera Sync service may have been compromised, according '
                'to a security notice released by Opera for its users. Opera '
                'made every Sync user who received notice by mail of '
                'questionable activity with their accounts change their '
                'passwords in reaction to the purported incident. However, '
                'some information was discovered to have been accessed, '
                'including login names and passwords for some sync users. '
                "Opera made it clear that the system's authentication "
                'passwords are salted and hashed using per-user salts; yet, '
                'the business withheld details regarding the authentication '
                "passwords' hashing procedure.",
 'impact': {'data_compromised': ['login names', 'passwords'],
            'systems_affected': ['Opera Sync Service']},
 'response': {'communication_strategy': ['Sent notices by mail to affected '
                                         'users'],
              'containment_measures': ['Made users change their passwords']},
 'title': 'Opera Sync Service Data Breach',
 'type': 'Data Breach'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.