We use cookies to provide you with a better experience. If you continue to use this site, we'll assume you're happy with this. Alternatively, click here to find out how to manage these cookies

hide cookie message
78,678 News Articles

Hackers force Monster to shut down server

Massive data breach at job-hunting site

Hackers have caused a massive data breach at job-hunting website network Monster, forcing the company to shut down a rogue server that had been used to gather personal details of job seekers.

The server contained the stolen names, addresses, phone numbers and email addresses of people who used Monster's service. The company was still determining the number of people affected by the breech on Wednesday. It did not disclose the location of the server.

The Monster incident is one of a growing number of prominent data breaches highlighting continuing difficulties with internet security.

Hackers obtained the log-in credentials for companies seeking employees and used the credentials to access Monster.com's database of job seekers. An automated Trojan, dubbed Infostealer.Monstres by security vendor Symantec, then transmitted the personal information to the rogue server.

Symantec said earlier in the week it had found a server containing 1.6 million records belonging to hundreds of thousands of Monster users, mostly in the US. It was unclear this morning if the server Monster shut down is the same one that Symantec found. A Monster spokeswoman contacted in London could not provide more information.

As part of a multi-step attack, the job-seekers were then sent emails with links to at least two kinds of malicious software. One tries to collect login details for financial sites, and the other is designed to encrypt data on a PC, asking for a ransom to decode the data.

Monster said it will contact the people believed to have been affected by the attacks. It also posted an example of what a phishing email looks like on its website.

"Regrettably, opportunistic criminals are increasingly using the Internet for illegitimate purposes," the company said in a statement.


IDG UK Sites

Top 5 Android tips and tricks for smartphones and tablets

IDG UK Sites

How to join Apple's OS X Beta Seed Program: Get OS X Yosemite on your Mac before public release

IDG UK Sites

Why the BBC iPlayer outage was caused by a DDoS attack: Topsy and Tim isn't *that* popular

IDG UK Sites

BBC using Glasgow 2014 Commonwealth Games to trial 4K/UHD, pan-around video, augmented video and...