Credential-stuffers enjoy up to 2% attack success rate – report

General News

Summary

Hackers achieve a success rate of 0.1 to 2 per cent when reusing stolen credentials to access other sites, according to a new study by Shape Security. "As a result, automated fraud losses from credential stuffing is in the billions of dollars worldwide, based on the value of accounts taken over. Yahoo!, which reported two separate spills in 2016, leaked the greatest number of login credentials, followed by FriendFinder, MySpace, Badoo and LinkedIn. Tech companies spilled the most credentials (1.75 billion) but the gaming industry was the sector that witnessed the largest number of breaches. The proposed checks are included in Draft NIST Special Publication 800-63B Digital Identity Guidelines.

Classifications

industries
Fintech & Banking
applications
Anti Piracy

AskAI Classifications

Labels
No AI classifications detected

Linked Companies