You need to be logged in to your Sky Poker account above to post discussions and comments.

You might need to refresh your page afterwards.

PSA - Zynga security breach

EvilPinguEvilPingu Member Posts: 3,462
edited December 2019 in Poker Chat
Posting this on here because I expect a large number of players on here will have used Zynga Poker (The main play money Poker app that you can get on Facebook).

I'm signed up to a site called Have I been pwned, which notifies users of data breaches when details linked to their email address are leaked. It appears that Zynga have been the victim of this.

You've been pwned!
You signed up for notifications when your account was pwned in a data breach and unfortunately, it's happened. Here's what's known about the breach:

Email found: My email address - Redacted
Breach: Zynga
Date of breach: 1 Sep 2019
Number of accounts: 172,869,660
Compromised data: Email addresses, Passwords, Usernames
Description: In September 2019, game developer Zynga (the creator of Words with Friends) suffered a data breach. The incident exposed 173M unique email addresses alongside usernames and passwords stored as salted SHA-1 hashes. The data was provided to HIBP by dehashed.com.
Therefore, if you are someone who has played Zynga Poker (or any other Zynga game) at any point, and you use the same username/email address and password combination anywhere else, especially real money poker/betting sites, I recommend changing your password on that gambling site immediately to something that is both new and unique to that site (adding additional security such as 2 step verification where available).

There is a possibility of this information being used to target real money Poker accounts, hence this post - If any of your real money Poker accounts anywhere have the same username/email and password as your Zynga account, then someone could access your account and either transfer or dump your funds across to themselves and cash out.

It does happen - I've had money disappear out of a Sportsbook account in the past because my username/password was the same as another site where they had a data breach, and I've known this happen to others too. Fortunately I got my money back on that occasion, but it's not a risk worth taking. Make sure your accounts are secure.

Comments

  • mumsiemumsie Member Posts: 8,172
    edited December 2019
    Interesting, thanks for this info @EvilPingu .

    I did some snooping around and found a Google password feature.

    Heres a link to check if your passwords are secure

    https://passwords.google.com/

    I've found loads of my passwords breaced, weak or repeated in my setup.

    I'm spending the next few days changing them all to unique longer passwords .

    Maybe I'll write a little script to generate one off passwords on an offline tablet.

    Heres what I found with my passwords.










  • Tikay10Tikay10 Member, Administrator, Moderator Posts: 172,052

    Crikey @mumsie

    How many accounts do you have?
  • madprofmadprof Member Posts: 3,461
    mumsie said:

    Interesting, thanks for this info @EvilPingu .

    I did some snooping around and found a Google password feature.

    Heres a link to check if your passwords are secure

    https://passwords.google.com/

    I've found loads of my passwords breaced, weak or repeated in my setup.

    I'm spending the next few days changing them all to unique longer passwords .

    Maybe I'll write a little script to generate one off passwords on an offline tablet.

    Heres what I found with my passwords.









    Just change them all to @MISTY4ME poker status= DONKEY! >:)
  • mumsiemumsie Member Posts: 8,172
    edited December 2019
    Done.





Sign In or Register to comment.