Ashley Madison, the online-dating site, was hacked in July and users’ personal information was released by the hackers last month. The users were, however, a little relaxed as their passwords were encrypted and would take years to crack.
But in a major twist to the case, a group going by the name “Cynosure Prime” has revealed in a blog post how they have already cracked over 11 million passwords within days.
The passwords were cryptographically protected using bcrypt, a cryptographic hashing algorithm so strong that it would take years for even a highly specialised computer to crack all the passwords.
After reviewing thousands of lines of code leaked along with the hashed passwords, executive e-mails, and other Ashley Madison data, the Cynosure Prime team made an interesting discovery: some of the login tokens used by the website were protected using MD5, a hashing algorithm that was designed for speed and efficiency rather than slowing down crackers.
All the team had to do then was just brute-force the MD5 tokens of the user accounts, which allowed them to acquire 11.2 Million passwords successfully.
As the weak MD5 hashing algorithm was introduced only June 2012, the team could’nt crack all of the 37 million Ashley Madison passwords. However, researchers estimated that approximately 15 million Ashley Madison accounts could be affected, out of which 11.2 Million have been already deciphered by the team.


EU Prepares Antitrust Probe Into Meta’s AI Integration on WhatsApp
Australia Moves Forward With Teen Social Media Ban as Platforms Begin Lockouts
TSMC Accuses Former Executive of Leaking Trade Secrets as Taiwan Prosecutors Launch Investigation
Apple Appoints Amar Subramanya as New Vice President of AI Amid Push to Accelerate Innovation
Anthropic Reportedly Taps Wilson Sonsini as It Prepares for a Potential 2026 IPO
AI-Guided Drones Transform Ukraine’s Battlefield Strategy
Wikipedia Pushes for AI Licensing Deals as Jimmy Wales Calls for Fair Compensation
Senate Sets December 8 Vote on Trump’s NASA Nominee Jared Isaacman
OpenAI Moves to Acquire Neptune as It Expands AI Training Capabilities
Coupang Apologizes After Massive Data Breach Affecting 33.7 Million Users
Firelight Launches as First XRP Staking Platform on Flare, Introduces DeFi Cover Feature
Microchip Technology Boosts Q3 Outlook on Strong Bookings Momentum
Apple Alerts EU Regulators That Apple Ads and Maps Meet DMA Gatekeeper Thresholds
Intel Boosts Malaysia Operations with Additional RM860 Million Investment
YouTube Agrees to Follow Australia’s New Under-16 Social Media Ban
Samsung Launches Galaxy Z TriFold to Elevate Its Position in the Foldable Smartphone Market 



