Over the past few days, a large number of AOL have reported falling victim to an Email Spoofing attack – Recipients have received emails purporting to be from a friend of theirs, and the content includes links leading to spam websites.
Today, AOL announced that it has launched an investigation into a security breach that allowed hackers to gain access to user data, including email addresses and encrypted passwords.
The company announced that it is working with cyber forensic experts and federal authorities are investigating the security breach.
AOL has determined that the attackers gained access to the following information: email IDs, mailing addresses, contact address book, encrypted passwords and encrypted answers to security questions, and certain employee information .
It also stated that it has no information indicating that password encryption or security question answers were compromised. Finally, it believes that this breach does not include financial data.
The company urges users to change their passwords and security questions.

