Ashley Madison, the online-dating site, was hacked in July and users’ personal information was released by the hackers last month. The users were, however, a little relaxed as their passwords were encrypted and would take years to crack.
But in a major twist to the case, a group going by the name “Cynosure Prime” has revealed in a blog post how they have already cracked over 11 million passwords within days.
The passwords were cryptographically protected using bcrypt, a cryptographic hashing algorithm so strong that it would take years for even a highly specialised computer to crack all the passwords.
After reviewing thousands of lines of code leaked along with the hashed passwords, executive e-mails, and other Ashley Madison data, the Cynosure Prime team made an interesting discovery: some of the login tokens used by the website were protected using MD5, a hashing algorithm that was designed for speed and efficiency rather than slowing down crackers.
All the team had to do then was just brute-force the MD5 tokens of the user accounts, which allowed them to acquire 11.2 Million passwords successfully.
As the weak MD5 hashing algorithm was introduced only June 2012, the team could’nt crack all of the 37 million Ashley Madison passwords. However, researchers estimated that approximately 15 million Ashley Madison accounts could be affected, out of which 11.2 Million have been already deciphered by the team.


OpenAI's Desktop Superapp: Unifying ChatGPT, Codex, and Browser Tools for Enterprise AI
Palantir's Maven AI Earns Pentagon "Program of Record" Status, Reshaping Military AI Strategy
Cyberattack on Stryker Triggers U.S. Government Warning Over Microsoft Intune Security
Nvidia's Jensen Huang Forecasts $1 Trillion in AI Chip Demand Through 2027
SK Hynix Chairman Warns of Memory Chip Shortage Through 2030 Amid AI Boom
Amazon's "Transformer" Phone: Can It Succeed Where Fire Phone Failed?
AMD CEO Lisa Su Heads to Samsung's South Korea Chip Facility Amid AI Expansion Talks
Micron Technology Beats Q2 Earnings Estimates, Issues Strong AI-Driven Outlook
Microsoft Eyes Legal Action as Amazon-OpenAI Deal Threatens Azure Exclusivity
Meta Eyes Massive Layoffs to Fund AI Ambitions
Alibaba Bets on AI Agents to Unify Its Vast Digital Ecosystem
Elliott Investment Management Takes Multibillion-Dollar Stake in Synopsys
Trump White House Unveils National AI Policy Framework for Congress
Nvidia's Jensen Huang Credits Samsung for Manufacturing New AI Chips, Boosting Stock
xAI Faces Federal Lawsuit Over Grok AI-Generated Child Sexual Abuse Material
Judge Dismisses Sam Altman Sexual Abuse Lawsuit, But Sister Can Refile
Malaysia Semiconductor Industry Eyes Helium Supply Risks Amid Middle East Conflict 



