TLDR:
- A hacker known as ‘ObamaCare’ has uploaded a database containing almost 10 billion unique passwords to a crime marketplace.
- The database, named RockYou2024, is a compilation of stolen and leaked passwords from data breaches and hacks over two decades.
Security researchers have uncovered the largest collection of stolen passwords with the RockYou2024 database. The database, uploaded to a crime forum by a hacker using the name ‘ObamaCare’, contains nearly 10 billion unique passwords collected from various data breaches and hacks over the years. The credentials are in plaintext format and cover a period from 2021 to 2024, sourced from 4,000 databases of stolen credentials. This poses a significant risk of credential stuffing attacks, allowing threat actors to gain unauthorized access to various online accounts. While experts acknowledge the magnitude of the leak, they emphasize the importance of using unique passwords, password managers, and multi-factor authentication to enhance security.