"Historic Zacks Breach Impacts Nearly Nine Million"

Security researchers have recently discovered a breach at Zacks Investment Research dating back to 2020, which appears to have impacted millions of customers.  So far, the stock research and analysis firm has made no public disclosure about the incident.  However, a post on the breach site HaveIBeenPwned revealed that a trove of data numbering nearly nine million customers are being widely shared on a popular hacking forum.  Security researchers noted that the most recent data was dated May 2020 and included names, usernames, email and physical addresses, phone numbers, and passwords stored as unsalted SHA-256 hashes.  The publication of the data means that customers should expect follow-on phishing and other attacks.  In January, the firm revealed a data breach that affected an estimated 820,000 customers, which it said occurred “sometime between November 2021 and August 2022.” This particular incident involved a legacy database of customers who signed up for the Zacks Elite product between November 1999 and February 2005.  

 

Infosecurity reports: "Historic Zacks Breach Impacts Nearly Nine Million"

Submitted by Anonymous on