Yahoo suffered from a cyber-attack incident that technically tricked cookies into users' logging account passwords.
Yahoo investigated the incident and asked those affected by the attack to log into their accounts without passwords.
Source: https://www.zdnet.com/article/yahoo-says-32m-user-accounts-accessed-via-cookie-forging-attack/
TPRM report: https://scoringcyber.rankiteo.com/company/yahoo
"id": "yah11136722",
"linkid": "yahoo",
"type": "Breach",
"date": "02/2017",
"severity": "60",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Technology',
'location': 'Global',
'name': 'Yahoo',
'type': 'Company'}],
'attack_vector': 'Cookie Manipulation',
'description': 'Yahoo suffered from a cyber-attack incident that technically '
"tricked cookies into users' logging account passwords. Yahoo "
'investigated the incident and asked those affected by the '
'attack to log into their accounts without passwords.',
'response': {'communication_strategy': 'Yahoo asked affected users to log '
'into their accounts without '
'passwords.'},
'title': 'Yahoo Cyber Attack Incident',
'type': 'Cyber Attack',
'vulnerability_exploited': 'Web Application Vulnerability'}