Security experts have warned users to change their passwords twice, after a series of attacks on high profile sites including LinkedIn, LastFM and eHarmony.LinkedIn was forced to admit the leak after passwords were posted online, but has said it's aware of no unauthorised access attempts. The social network reset the 6.5m affected accounts, as eHarmony and LastFM also warned users to update passwords after being attacked.
Andy Dancer, CTO at Trend Micro, said that's a good first step, but advised anyone using a site hit by hackers to reset passwords a second time.
"They should change passwords straight away, and then again when they [the company] has figured out what the problem is," he said. If the hackers still have access, they will be able to steal the new passwords too, he noted.
Bogdan Botezatu, senior analyst at Bitdefender, said LinkedIn has likely blocked the attack by now and new passwords should be safe. However, he did advise users who use a similar password at other sites to also update those credentials.
Read more:
http://www.pcpro.co.uk/news/security/375052/account-hacked-change-your-password-twice