Recently a hacker using the Twitter account “@smitt3nz” managed to breach the World Poker Tour Amateur Poker League ( WPTAPL ) website and leak a database containing the email addresses, passwords in plain text for more than 170,000 users.
The staff have now confirmed the security breach at SC Magazine. However, they are trying to downplay the impact of the breach.
Kurt McPhail, President and CEO of WPTAPL claimed that the information leak is more or less useless and that most of the exposed data was old.
They also mentioned that only 50,000 accounts that are still active have been leaked and the information cannot be used to log into their website, because the players use a different username to log in.
I cannot agree with their view that the leaked information has no value. Email addresses and passwords may not allow attackers to log into WPTAPL, but most people usually use the same password for their email. An intruder could use the information to compromise an email account.
This vulnerability is reported to have been identified and the members have been notified about the breach.

