/

What happened in the Zacks data breach?

What happened in the Zacks data breach?

Twingate Team

May 23, 2024

In December 2022, Zacks Investment Research announced a data breach, with reports in January 2023 indicating an impact on 820k customers. However, by June 2023, a larger database containing information on millions of Zacks users surfaced on a hacking forum. The most recent data in this database was from May 2020.

How many accounts were compromised?

The breach impacted data related to approximately 9 million individuals.

What data was leaked?

The data exposed in the breach consisted of email addresses, names, passwords, phone numbers, physical addresses, and usernames of affected individuals.

How was Zacks hacked?

Hackers gained unauthorized access to Zacks Investment Research's customer records, specifically targeting an older database of customers who had signed up for the Zacks Elite product between November 1999 and February 2005. The exact methods used by the hackers remain undisclosed.

Zacks's solution

In response to the data breach, Zacks Investment Research took several measures to secure its platform and prevent future incidents. The company implemented additional security measures to their network and the password reset process, ensuring that customer accounts from the compromised Zacks Elite database could not be accessed with the exposed passwords.

How do I know if I was affected?

Zacks Investment Research notified customers believed to be affected by the breach. If you're a Zacks customer and haven't received a notification, you may visit Have I Been Pwned to check your credentials.

What should affected users do?

In general, affected users should:

  1. Change Your Passwords: Immediately update your passwords for any affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  2. Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  3. Enable Two-Factor Authentication (2FA): Activate 2FA on affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  4. Monitor Your Financial Accounts: Keep an eye on your financial accounts and consumer credit reports for any suspicious activity or unauthorized transactions.

For more specific help and instructions related to Zacks's data breach, please contact Zacks Investment Research Support directly.

Where can I go to learn more?

If you want to find more information on the Zacks data breach, check out the following news articles:

Rapidly implement a modern Zero Trust network that is more secure and maintainable than VPNs.

/

What happened in the Zacks data breach?

What happened in the Zacks data breach?

Twingate Team

May 23, 2024

In December 2022, Zacks Investment Research announced a data breach, with reports in January 2023 indicating an impact on 820k customers. However, by June 2023, a larger database containing information on millions of Zacks users surfaced on a hacking forum. The most recent data in this database was from May 2020.

How many accounts were compromised?

The breach impacted data related to approximately 9 million individuals.

What data was leaked?

The data exposed in the breach consisted of email addresses, names, passwords, phone numbers, physical addresses, and usernames of affected individuals.

How was Zacks hacked?

Hackers gained unauthorized access to Zacks Investment Research's customer records, specifically targeting an older database of customers who had signed up for the Zacks Elite product between November 1999 and February 2005. The exact methods used by the hackers remain undisclosed.

Zacks's solution

In response to the data breach, Zacks Investment Research took several measures to secure its platform and prevent future incidents. The company implemented additional security measures to their network and the password reset process, ensuring that customer accounts from the compromised Zacks Elite database could not be accessed with the exposed passwords.

How do I know if I was affected?

Zacks Investment Research notified customers believed to be affected by the breach. If you're a Zacks customer and haven't received a notification, you may visit Have I Been Pwned to check your credentials.

What should affected users do?

In general, affected users should:

  1. Change Your Passwords: Immediately update your passwords for any affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  2. Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  3. Enable Two-Factor Authentication (2FA): Activate 2FA on affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  4. Monitor Your Financial Accounts: Keep an eye on your financial accounts and consumer credit reports for any suspicious activity or unauthorized transactions.

For more specific help and instructions related to Zacks's data breach, please contact Zacks Investment Research Support directly.

Where can I go to learn more?

If you want to find more information on the Zacks data breach, check out the following news articles:

Rapidly implement a modern Zero Trust network that is more secure and maintainable than VPNs.

What happened in the Zacks data breach?

Twingate Team

May 23, 2024

In December 2022, Zacks Investment Research announced a data breach, with reports in January 2023 indicating an impact on 820k customers. However, by June 2023, a larger database containing information on millions of Zacks users surfaced on a hacking forum. The most recent data in this database was from May 2020.

How many accounts were compromised?

The breach impacted data related to approximately 9 million individuals.

What data was leaked?

The data exposed in the breach consisted of email addresses, names, passwords, phone numbers, physical addresses, and usernames of affected individuals.

How was Zacks hacked?

Hackers gained unauthorized access to Zacks Investment Research's customer records, specifically targeting an older database of customers who had signed up for the Zacks Elite product between November 1999 and February 2005. The exact methods used by the hackers remain undisclosed.

Zacks's solution

In response to the data breach, Zacks Investment Research took several measures to secure its platform and prevent future incidents. The company implemented additional security measures to their network and the password reset process, ensuring that customer accounts from the compromised Zacks Elite database could not be accessed with the exposed passwords.

How do I know if I was affected?

Zacks Investment Research notified customers believed to be affected by the breach. If you're a Zacks customer and haven't received a notification, you may visit Have I Been Pwned to check your credentials.

What should affected users do?

In general, affected users should:

  1. Change Your Passwords: Immediately update your passwords for any affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  2. Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  3. Enable Two-Factor Authentication (2FA): Activate 2FA on affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  4. Monitor Your Financial Accounts: Keep an eye on your financial accounts and consumer credit reports for any suspicious activity or unauthorized transactions.

For more specific help and instructions related to Zacks's data breach, please contact Zacks Investment Research Support directly.

Where can I go to learn more?

If you want to find more information on the Zacks data breach, check out the following news articles: