+

Cookies on the Business Insider India website

Business Insider India has updated its Privacy and Cookie policy. We use cookies to ensure that we give you the better experience on our website. If you continue without changing your settings, we\'ll assume that you are happy to receive all cookies on the Business Insider India website. However, you can change your cookie setting at any time by clicking on our Cookie Policy at any time. You can also see our Privacy Policy.

Close
HomeQuizzoneWhatsappShare Flash Reads
 

The details of 13 million Mac users have been leaked

Dec 15, 2015, 13:58 IST

Apple Inc CEO Tim Cook speaks on stage about the new iPad during an Apple event in San Francisco, California October 22, 2013.REUTERS/Robert Galbraith

MacKeeper, an anti-virus tool for Apple Mac users, has leaked the details of over 13 million users, according to researcher Chris Vickery.

Advertisement

The flaw has now been addressed.

Vickery found a section of the MacKeeper website that, when accessed without a password or username, allowed him to see the details of customer information, including names, email addresses, user names, passwords, phone numbers, system information, and more.

Beyond this error, Vickery found that the passwords MacKeeper stored were not secure. Passwords are protected by a "hashing" algorithm that takes the plain text - e.g. "password1234" - and turns it into something only a computer can read. MacKeeper was using a outdated, and easily crackable, algorithm, according to Vickery.

The MacKeeper team wrote a blog post detailing the steps they had taken to address the issue.

Advertisement

"Analysis of our data storage system shows only one individual gained access performed by the security researcher himself," they wrote. "We have been in communication with Chris and he has not shared or used the data inappropriately."

This is all good news, but the fact that the company - which deals in computers - left such a large amount of data available to anyone is worrying.

Business Insider received the following comment from MacKeeper:

Kromtech is aware of a potential vulnerability in access to our data storage system and we are grateful to the security researcher Chris Vickery who identified this issue without disclosing any technical details for public use. We fixed this error within hours of the discovery.

The company went on to reassure users that credit and debit card information is processed by a third-party and was never at risk. "We will continue to take every possible step to protect the data of our customers from the evolving cyber threats that companies both large and small face on a daily basis," it said.

Advertisement

NOW WATCH: Here's how to find out your Uber rating

Please enable Javascript to watch this video
You are subscribed to notifications!
Looks like you've blocked notifications!
Next Article