AdGuard, a popular ad blocker for Android, iOS, Windows and Mac, is resetting all user passwords, the company’s CTO Andrey Meshkov announced today . The company made the decision after it was hit by a brute-force attack in which an attacker attempted to log into user accounts by guessing passwords. Meshkov said the attacker managed to gain access to some user accounts using names and passwords that had been leaked after breaches at other companies. AdGuard’s CTO said:
We do not know which accounts have been compromised. All passwords stored in AdGuard's database are encrypted, and therefore we cannot check if any have leaked from another database. That's why we decided to reset all users' passwords.
The company says it uses the “Have I Be Pwned” API, so if a password has been leaked, AdGuard’s system will warn the user using it.
Meshkov also announced that AdGuard will use stricter rules for password selection and that they plan to add two-factor authentication at some point in the future.
__________________
- Windows 10 updates: no more arbitrary restarts
- Disqus Why we stopped using the service
- Brave browser now features private browsing via Tor
- Passwords stored on your sleeve? and yet yes!
