World Bulletin / News Desk
More than 400,000 Yahoo Inc user names and passwords were stolen and published on the Web, putting other websites at risk as well, after hackers exploited a vulnerability in Yahoo's computer systems.
Some logins for Google Inc, AOL Inc and Microsoft Corp services were among those compromised. The three companies said they required affected users to reset passwords for sites including Gmail, AOL, Hotmail, MSN and Live.com.
Yahoo issued a statement apologizing for the breach, the latest setback for a company that has lost two chief executives in a year and is struggling to revive stalled revenue growth.
Chairman Alfred Amoroso acknowledged that Yahoo had experienced a "tumultuous" year at its annual shareholder meeting on Thursday morning. Interim CEO Ross Levinsohn told attendees he was optimistic about the company's progress.
The breach prompted criticism from security experts who said that a major Internet firm like Yahoo should do a better job at protecting user data.
"This points to some very lax security practices," said Rob D'Ovidio, associate professor of criminal justice at Drexel University.
As an example, he noted that the hackers were able to produce more than 400,000 cleartext passwords within a day. That indicates that Yahoo either did not encrypt them at all or used an encryption method that was easy to crack, he said.
The professional networking service LinkedIn recently came under similar criticism. Security experts chided the company for failing to use sophisticated encryption practices to secure its passwords, millions of which were released following a breach last month.
Yahoo spokeswoman Dana Lengkeek said "an older file" had been stolen from Yahoo Contributor Network, an Internet publishing service that Yahoo purchased about two years ago. It helps writers, photographers and videographers to sell their work over the Web.
"We are fixing the vulnerability that led to the disclosure of this data, changing the passwords of the affected Yahoo! users and notifying the companies whose users' accounts may have been compromised," she said.
AOL said the Yahoo data published on the Web included valid passwords for 1,699 accounts. Microsoft and Google declined to provide similar numbers.
Other firms whose customers were at risk include Comcast Corp, Verizon Communications Inc and AT&T , Rapid7 researcher Marcus Carey said. He estimated that tens of thousands of accounts of users of services other than Yahoo were affected by the breach.
AT&T and Verizon did not have any immediate comment. Officials with Comcast could not be reached.
AOL Senior Vice President David Temkin said spammers typically use credentials like the ones stolen from Yahoo to break into email accounts and use them to send out spam.
"In this case, I think we actually got ahead of it before the people who stole those accounts were able to use them," Temkin said.
The five most popular passwords in the group were "123456", "password", "welcome" and "ninja", according to an analysis by anti-virus software maker ESET.
Russia generated $356 billion from oil, gas exports last year, data shows.
While stopping far short of targeting physical energy supplies, EU ministers for the first time this week raised the idea of restricting Russian access to oil and gas technology.
They were among nine organisations and three people added to the EU's Syria sanctions list, published in the bloc's Official Journal
Land reform remains a sensitive issue in South Africa, where 20 years after the end of apartheid the white minority still holds around 87 percent of commercial farm land.
Talks are reportedly underway for a number of investment projects, including in pharmaceuticals and automotive assembly, but no final investment agreements are expected this week.
The yuan will be the world's third largest currency after the U.S. dollar and euro, a Chinese report predicts.
Unemployment currently stands at 12.7 percent in Kenya and affects 30 percent of the country's population
GM so far this year has recalled about 14.7 million vehicles worldwide with switch-related issues and has linked at least 16 deaths to those issues.
The deal includes hydropower and nuclear power plants in the South American country.
State-run think tank Korea Institute for Defense Analyses (KIDA) reported earlier this month that a twin-engine version of the fighter jet is expected to cost around 8.5 trillion won
Western officials have repeatedly warned Iranian counterparts over the past six months that more economic pain is a risk for an OPEC member whose oil exports have already shrunk to a fraction of what they could have been
The EU's employment commissioner said he has asked to meet with Microsoft to discuss the social impact of the layoffs.
Although China has promised to invest in Brazil for years and failed to deliver, the pace of deals is picking up with a focus on deficient infrastructure.
The financial aid would be used for rebuilding houses and public buildings, the rapid restoration of water and energy supplies and urgent assistance for those still without proper shelter.
Washington and Brussels say Moscow has been fanning separatist violence in eastern Ukraine and broadened their sanctions, sending Russian shares and the rouble currency down.
Chinese Trade Minister Gao Hucheng said his country would not sit idly by while the United States harmed the rights of Chinese companies.