Interestana
Home/News/Gyazo Breach Exposes 23.62 Million User Records
The Hacker News2 min read

By Interestana AI Editorial — AI-drafted, human-overseen. How we report

Gyazo Breach Exposes 23.62 Million User Records

Gyazo Breach Exposes 23.62 Million User Records

Gyazo, an image-sharing service operated by Helpfeel, disclosed a significant security breach on Wednesday, revealing that approximately 23.62 million user records were compromised. The exposed data includes user email addresses and password hashes, according to a notice published by the Kyoto-based company. In addition to user credentials, the breach also affected approximately 490 million image metadata records. This metadata primarily pertains to images uploaded in January 2019 or earlier and includes the unique identifiers that form the basis of Gyazo image links. Helpfeel stated that the compromised metadata does not contain the actual image content itself, but rather the links and associated information. The company is currently investigating the full extent of the breach and its implications for its users. Helpfeel, the parent company of Gyazo, is a Japanese technology firm that provides various web-based services. Gyazo itself is known for its simple and quick image and screen capture functionality, allowing users to easily share visual content. The exposure of password hashes, while not plaintext passwords, still presents a security risk, as these hashes can potentially be cracked using brute-force or dictionary attacks, especially if users have reused their passwords across multiple platforms. The incident highlights ongoing cybersecurity challenges faced by online services, particularly those handling large volumes of user data and digital assets. The company has not yet specified the exact date the breach occurred, only that the affected image metadata is largely from before January 2019. Helpfeel has initiated an internal investigation and is working with external cybersecurity experts to understand the root cause of the breach and to implement enhanced security measures to prevent future incidents. The company has also stated its commitment to notifying affected users directly and providing guidance on steps they can take to protect their accounts. The scale of the breach, affecting over 23 million user records and nearly half a billion metadata entries, underscores the critical importance of robust data protection protocols for all online platforms. The company's public notice serves as an attempt to be transparent with its user base regarding the security incident, a practice increasingly expected in the wake of numerous high-profile data breaches across various industries. Further details regarding the investigation and remediation efforts are expected to be released by Helpfeel in the coming weeks.

Original source — read the full reporting at the publisher:

Read on The Hacker News

Get the weekly AI digest

AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.

Read next