GunAuction.com major data breach: email, password, name, address, birthday, and more.

The #1 community for Gun Owners of the Northeast

Member Benefits:

  • No ad networks!
  • Discuss all aspects of firearm ownership
  • Discuss anti-gun legislation
  • Buy, sell, and trade in the classified section
  • Chat with Local gun shops, ranges, trainers & other businesses
  • Discover free outdoor shooting areas
  • View up to date on firearm-related events
  • Share photos & video with other members
  • ...and so much more!
  • TapRackBang

    Cheaper Than Diamonds
    Jan 14, 2012
    1,919
    Bel Air
    Just announced, from haveibeenpwned.com:
    In December 2022, the online firearms auction website GunAuction.com suffered a data breach which was later discovered left unprotected on the hacker's server. The data included over 565k user records with extensive personal data including email, IP and physical addresses, names, phone numbers, genders, years of birth, credit card type and passwords stored in plain text. The leaked identities could subsequently be matched to firearms listed for sale on the website.
    TechCrunch article covering the breach: https://archive.ph/GfSxV
     

    TapRackBang

    Cheaper Than Diamonds
    Jan 14, 2012
    1,919
    Bel Air
    Thanks, but that's in the Water Cooler, where not everybody can see it.

    (And I did search before posting. That thread did not show up.)
     

    TapRackBang

    Cheaper Than Diamonds
    Jan 14, 2012
    1,919
    Bel Air
    Doesn't matter if you chose not to buy online. All companies you would buy from - even local-only stores - put your data online. Stores use computers to keep their books, process credit cards, manage customers. Most of those services are online now. And all of those stores are using Microsoft products (Windows, Office 365, Teams, etc) which are an open book to hackers. Can't be avoided anymore, even with cash in many instances.

    So freeze your credit reports (all seven of them, not three), check them annually, don't reuse passwords anywhere, enable real 2-factor authentication (NOT text messages - that is useless), reconcile bank and credit card statements every month.
     

    Headedthere

    Member
    Jan 3, 2023
    52
    Howard
    Agree with most of what you're saying. But adding gun purchases and sales to the data base is unique to the auction sites.

    Also, for the most part (and I'm not a MS fanboy), MS products aren't the problem. It's the implemenation details, which are very different at each storefront/site.
     

    Users who are viewing this thread

    Latest posts

    Forum statistics

    Threads
    275,585
    Messages
    7,287,399
    Members
    33,480
    Latest member
    navyfirefighter1981

    Latest threads

    Top Bottom