Jump to content

Lynda.com database breached

Bouzoo

The main source for this one is an email that I woke up to this morning. Mind you, the breach is supposed to be a small one, less than 55.000 (confirmed?) users according to LinkedIn, shich own Lynda.com in case you missed it:

 

Quote

We recently became aware that an unauthorized third party ?accessed a database that included Lynda.com ?user data. As a precautionary measure, we reset passwords for the less than 55,000 Lynda.com users affected and are notifying them of the issue. We’re also working to notify approximately 9.5 million Lynda.com users who had learner data, but no password information, in the database. We have no evidence that any of this data has been made publicly available and we have taken additional steps to secure Lynda.com accounts.

 

 

The mentioned emaiI I got this morning:

1DboTME.png

 

According to email, they don't have evidence if your account may has been accessed, so those <55.000 might be the ones they are aware off.

Doesn't sound to be a serious breach by any means, but still thumbs up for sending email immediately.

 

Figured I might post this here, considering how huge of a sponsor Lynda.com has been to LMG.

 

 

The ability to google properly is a skill of its own. 

Link to comment
Share on other sites

Link to post
Share on other sites

I wish Lynda was cheaper. I'd totally pay $10/month. $30 a month ($40 in CDN) is a little steep.

So many breeches lately.

CPU: Ryzen 9 5900 Cooler: EVGA CLC280 Motherboard: Gigabyte B550i Pro AX RAM: Kingston Hyper X 32GB 3200mhz

Storage: WD 750 SE 500GB, WD 730 SE 1TB GPU: EVGA RTX 3070 Ti PSU: Corsair SF750 Case: Streacom DA2

Monitor: LG 27GL83B Mouse: Razer Basilisk V2 Keyboard: G.Skill KM780 Cherry MX Red Speakers: Mackie CR5BT

 

MiniPC - Sold for $100 Profit

Spoiler

CPU: Intel i3 4160 Cooler: Integrated Motherboard: Integrated

RAM: G.Skill RipJaws 16GB DDR3 Storage: Transcend MSA370 128GB GPU: Intel 4400 Graphics

PSU: Integrated Case: Shuttle XPC Slim

Monitor: LG 29WK500 Mouse: G.Skill MX780 Keyboard: G.Skill KM780 Cherry MX Red

 

Budget Rig 1 - Sold For $750 Profit

Spoiler

CPU: Intel i5 7600k Cooler: CryOrig H7 Motherboard: MSI Z270 M5

RAM: Crucial LPX 16GB DDR4 Storage: Intel S3510 800GB GPU: Nvidia GTX 980

PSU: Corsair CX650M Case: EVGA DG73

Monitor: LG 29WK500 Mouse: G.Skill MX780 Keyboard: G.Skill KM780 Cherry MX Red

 

OG Gaming Rig - Gone

Spoiler

 

CPU: Intel i5 4690k Cooler: Corsair H100i V2 Motherboard: MSI Z97i AC ITX

RAM: Crucial Ballistix 16GB DDR3 Storage: Kingston Fury 240GB GPU: Asus Strix GTX 970

PSU: Thermaltake TR2 Case: Phanteks Enthoo Evolv ITX

Monitor: Dell P2214H x2 Mouse: Logitech MX Master Keyboard: G.Skill KM780 Cherry MX Red

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

Is there any large company left who hasn't been breached? Isn't it about time people started taking this more seriously?

Link to comment
Share on other sites

Link to post
Share on other sites

Lynda's parent company Linkedin is in the middle of being acquired by Microsoft. I wonder if Microsoft can get Linkedin for cheaper now like Verizon is trying to get Yahoo cheaper cause of their first breach.

OBSIDIAN: CPU AMD Ryzen 9 3900X | MB ASUS ROG Crosshair VIII Hero Wifi | RAM Corsair Dominator RGB 32gb 3600 | GPU ASUS ROG Strix RTX 2080 Ti OC |

Cooler Corsair Hydro X | Storage Samsung 970 Evo 1tb | Samsung 860 QVO 2tb x2 | Seagate Barracuda 4tb x2 | Case Cosair Obsidian 500D RGB SE |

PSU Corsair HX750 | Cablemod Cables | Monitor Asus PG35VQAsus PG279Q | HID Corsair K70 Rapidfire RGB low profile | Corsair Dark Core Pro RGB SE | Xbox One Elite Controller Series 2

Link to comment
Share on other sites

Link to post
Share on other sites

I bet someone learnt how to hack on their site and hacked them.

 

 

/s

CPU: AMD Ryzen 5 5600X | CPU Cooler: Stock AMD Cooler | Motherboard: Asus ROG STRIX B550-F GAMING (WI-FI) | RAM: Corsair Vengeance LPX 16 GB (2 x 8 GB) DDR4-3000 CL16 | GPU: Nvidia GTX 1060 6GB Zotac Mini | Case: K280 Case | PSU: Cooler Master B600 Power supply | SSD: 1TB  | HDDs: 1x 250GB & 1x 1TB WD Blue | Monitors: 24" Acer S240HLBID + 24" Samsung  | OS: Win 10 Pro

 

Audio: Behringer Q802USB Xenyx 8 Input Mixer |  U-PHORIA UMC204HD | Behringer XM8500 Dynamic Cardioid Vocal Microphone | Sound Blaster Audigy Fx PCI-E card.

 

Home Lab:  Lenovo ThinkCenter M82 ESXi 6.7 | Lenovo M93 Tiny Exchange 2019 | TP-LINK TL-SG1024D 24-Port Gigabit | Cisco ASA 5506 firewall  | Cisco Catalyst 3750 Gigabit Switch | Cisco 2960C-LL | HP MicroServer G8 NAS | Custom built SCCM Server.

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

Oops I read that as linkedin and was confused about people talking about courses.

My posts are in a constant state of editing :)

CPU: i7-4790k @ 4.7Ghz MOBO: ASUS ROG Maximums VII Hero  GPU: Asus GTX 780ti Directcu ii SLI RAM: 16GB Corsair Vengeance PSU: Corsair AX860 Case: Corsair 450D Storage: Samsung 840 EVO 250 GB, WD Black 1TB Cooling: Corsair H100i with Noctua fans Monitor: ASUS ROG Swift

laptop

Some ASUS model. Has a GT 550M, i7-2630QM, 4GB or ram and a WD Black SSD/HDD drive. MacBook Pro 13" base model
Apple stuff from over the years
iPhone 5 64GB, iPad air 128GB, iPod Touch 32GB 3rd Gen and an iPod nano 4GB 3rd Gen. Both the touch and nano are working perfectly as far as I can tell :)
Link to comment
Share on other sites

Link to post
Share on other sites

I know Lynda haven't bought any WAN show spots in a while but this coming week would be a hilarious time for them to have a spot.

OBSIDIAN: CPU AMD Ryzen 9 3900X | MB ASUS ROG Crosshair VIII Hero Wifi | RAM Corsair Dominator RGB 32gb 3600 | GPU ASUS ROG Strix RTX 2080 Ti OC |

Cooler Corsair Hydro X | Storage Samsung 970 Evo 1tb | Samsung 860 QVO 2tb x2 | Seagate Barracuda 4tb x2 | Case Cosair Obsidian 500D RGB SE |

PSU Corsair HX750 | Cablemod Cables | Monitor Asus PG35VQAsus PG279Q | HID Corsair K70 Rapidfire RGB low profile | Corsair Dark Core Pro RGB SE | Xbox One Elite Controller Series 2

Link to comment
Share on other sites

Link to post
Share on other sites

ayo lynda,  get the monster truck, we goin huntin'

Details separate people.

Link to comment
Share on other sites

Link to post
Share on other sites

If you have a Lynda account change your password just to be sure.

Don't ask to ask, just ask... please 🤨

sudo chmod -R 000 /*

Link to comment
Share on other sites

Link to post
Share on other sites

So does it mean no more Lynda.com spots in any succeeding Techquickie episodes?

There is more that meets the eye
I see the soul that is inside

 

 

Link to comment
Share on other sites

Link to post
Share on other sites

6 minutes ago, hey_yo_ said:

So does it mean no more Lynda.com spots in any succeeding Techquickie episodes?

Please tell me they had one in the cubersecurity episode 

- snip-

Link to comment
Share on other sites

Link to post
Share on other sites

I don't like it when services reset passwords. A good password is safer than exposing users to a possible man-in-the-middle attack. Let me take care of that myself if I feel the need to ...

THIS SIGNATURE INTENTIONALLY LEFT BLANK

Link to comment
Share on other sites

Link to post
Share on other sites

It doesn't matter if they got the passwords, as they were surely salted and hashed... right?

Current LTT F@H Rank: 90    Score: 2,503,680,659    Stats

Yes, I have 9 monitors.

My main PC (Hybrid Windows 10/Arch Linux):

OS: Arch Linux w/ XFCE DE (VFIO-Patched Kernel) as host OS, windows 10 as guest

CPU: Ryzen 9 3900X w/PBO on (6c 12t for host, 6c 12t for guest)

Cooler: Noctua NH-D15

Mobo: Asus X470-F Gaming

RAM: 32GB G-Skill Ripjaws V @ 3200MHz (12GB for host, 20GB for guest)

GPU: Guest: EVGA RTX 3070 FTW3 ULTRA Host: 2x Radeon HD 8470

PSU: EVGA G2 650W

SSDs: Guest: Samsung 850 evo 120 GB, Samsung 860 evo 1TB Host: Samsung 970 evo 500GB NVME

HDD: Guest: WD Caviar Blue 1 TB

Case: Fractal Design Define R5 Black w/ Tempered Glass Side Panel Upgrade

Other: White LED strip to illuminate the interior. Extra fractal intake fan for positive pressure.

 

unRAID server (Plex, Windows 10 VM, NAS, Duplicati, game servers):

OS: unRAID 6.11.2

CPU: Ryzen R7 2700x @ Stock

Cooler: Noctua NH-U9S

Mobo: Asus Prime X470-Pro

RAM: 16GB G-Skill Ripjaws V + 16GB Hyperx Fury Black @ stock

GPU: EVGA GTX 1080 FTW2

PSU: EVGA G3 850W

SSD: Samsung 970 evo NVME 250GB, Samsung 860 evo SATA 1TB 

HDDs: 4x HGST Dekstar NAS 4TB @ 7200RPM (3 data, 1 parity)

Case: Sillverstone GD08B

Other: Added 3x Noctua NF-F12 intake, 2x Noctua NF-A8 exhaust, Inatek 5 port USB 3.0 expansion card with usb 3.0 front panel header

Details: 12GB ram, GTX 1080, USB card passed through to windows 10 VM. VM's OS drive is the SATA SSD. Rest of resources are for Plex, Duplicati, Spaghettidetective, Nextcloud, and game servers.

Link to comment
Share on other sites

Link to post
Share on other sites

9 hours ago, zMeul said:

maybe lynda should take one of their curses in on-line security -_-

They don't say what type of security they have, but there is no such thing as ultimate security. If they can breach multi billion dollar companies security, what is one Lynda.com? 

The ability to google properly is a skill of its own. 

Link to comment
Share on other sites

Link to post
Share on other sites

6 hours ago, sazrocks said:

It doesn't matter if they got the passwords, as they were surely salted and hashed... right?

Almost definitely were but companies recommend changing passwords regardless in the very slim chance that the hackers somehow manage to decrypt them.

My Build:

Spoiler

CPU: i7 4770k GPU: GTX 780 Direct CUII Motherboard: Asus Maximus VI Hero SSD: 840 EVO 250GB HDD: 2xSeagate 2 TB PSU: EVGA Supernova G2 650W

Link to comment
Share on other sites

Link to post
Share on other sites

Didn't get an email. Does anyone know if this affects organizations that use Shibboleth or (CAS)Central Authentication Services for logins?

▶ Learn from yesterday, live for today, hope for tomorrow. The important thing is not to stop questioning. - Einstein◀

Please remember to mark a thread as solved if your issue has been fixed, it helps other who may stumble across the thread at a later point in time.

Link to comment
Share on other sites

Link to post
Share on other sites

Russians. Did anyone say Russians yet?

- ASUS X99 Deluxe - i7 5820k - Nvidia GTX 1080ti SLi - 4x4GB EVGA SSC 2800mhz DDR4 - Samsung SM951 500 - 2x Samsung 850 EVO 512 -

- EK Supremacy EVO CPU Block - EK FC 1080 GPU Blocks - EK XRES 100 DDC - EK Coolstream XE 360 - EK Coolstream XE 240 -

Link to comment
Share on other sites

Link to post
Share on other sites

I made a trial account last month to watch a series of tutorials on something i needed for work. Didn't end up helping at all so i dropped it. Next week i find out someone charged my account with a premium account service and saw someone had been watching hacking and networking videos from some 3rd world asian country. Fortunately they were fast to respond and give my money back but i can't say i'm happy that they auto charge when trial ends, they store credit or paypal info on the account itself and you can't remove payment info unless you contact support.

Link to comment
Share on other sites

Link to post
Share on other sites

Damnit Lynda, they shouldnt have visited Lynda.com and tried to learn from the experts

 

you see this? this is my signature. btw im Norwegian 

Spoiler


CPU - Intel I7-5820K, Motherboard - ASUS X99-A, RAM - Crucial DDR4 Ballistix Sport 16GB, GPU - MSI Geforce GTX 970, Case - Cooler Master HAF XB evo, Storage - Intel SSD 330 Series 120GB - OS, WD Desktop Blue 500GB - storage 1, Seagate Barracuda 2TB - storage 2, PSU - Corsair RM850x (overkill i know), Display(s)- AOC 24" g2460Pg, Cooling - Cooler Master Hyper 212 Evo, 2 Noctua 120mm PWM, 1 Corsair 120mm AF RED LED, Keyboard - SpeedLink VIRTUIS Advanced, Mouse - razer deathadder chroma, Sound - Logitech Z313, SteelSeries Siberia V2 HyperX Edition, OS - Windows 10 (prefer windows 7)

 

Link to comment
Share on other sites

Link to post
Share on other sites

11 hours ago, Centurius said:

Almost definitely were but companies recommend changing passwords regardless in the very slim chance that the hackers somehow manage to decrypt them.

What does salted and hashed mean?    I saw that mentioned when I was looking up details about a 2013 breach that happened to Adobe for a class assignment in a survey of info security grad school class I just finished.  

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×