
The scam exploits the fact that many people use the same password for many sites Twitter has identified a scheme that uses compromised file-sharing sites to steal the log on information of users.The service said it had discovered a number of compromised "torrent" sites that had been set up specifically to skim usernames and passwords. Torrent sites acts as indexes of links to TV, film and music files. Scammers were then able to use the data to gain access to Twitter and other sites because many people use the same logon for multiple services. The firm has reset the accounts of affected users, it said. "The takeaway from this is that people are continuing to use the same email address and password (or a variant) on multiple sites," the firm said in a blog post. "We strongly suggest that you use different passwords for each service you sign up for." The conclusion is echoed by security researchers who say it is a particular problem for banking websites.
[Read more...]