Mathway Data Breach | The Odyssey Online
Start writing a post

Mathway Data Breach

A notorious group of threat actors release 25 million user records from Mathway

212
Mathway Data Breach

A data breach broker, known as ShinyHunters, offered to sell a database consisting of 25 million Mathway user records on a marketplace in the dark web. Mathway is a free math problem-solving app that can solve a user's math problems with a snap of a picture. It has over 10 million downloads on google play store and app store.


This breach was one of the latest compared to the many other breaches carried out by the same threat actor. They were also responsible for leaking sensitive data from Tokopedia, Wishbone, Zoosk, and many other companies.


It is recommended that users reset their passwords because according to Mathway, the passwords itself weren't acquired, but rather the cryptographically protected version of it were. Even though not much personal information has been acquired from this breach, it's still something to be cautious about because if a breached account contained an email address and a password, the hacker's first instinct would be to try logging into the user's email account with the same credentials because many people have the tendency to use the same password across many different sites.


According to the interview given by ShinyHunters to ZDNet, it is confirmed that the Mathway breach took place in January 2020. The hackers have accessed the company's backend and removed access to the database to avoid detection. At the start of May, the data from Mathway has been on sale on the darkweb for around $4,000 in Bitcoin and Monero. This type of data is valuable to other cybercrime gangs because it contains email addresses and hashed passwords. But it's unclear whether the hashed passwords can be reverted to their cleartext forms because the password hashing algorithm is unknown.


A big mistake that Mathway has made is not having proper access and privilege controls. In an IT environment, an organization can prevent a sophisticated cyberattack from affecting sensitive data by controlling who has privileges to access what.


Another mistake that Mathway made is using an outdated cryptographic hash known as MD5 to protect user's passwords. Millions of these password hashes can be hacked every second. The company should've used a more secure cryptographic hash to make the computing a lot slower. A salt should also be added on top of the cryptographic hash for extra security.


According to Scott Gordon, CISSP of Pulse Secure, the education sector is prone to many vulnerabilities during this period of time because they need adjust their operations to accommodate millions of students and teachers throughout the United States because of Covid-19. Gordon weighs in on the point he makes: "The EdTech digital marketplace is being targeted for cyberattacks and should consider more progressive security controls as institutions, parents and students seek additional online options to facilitate e-learning. Popular learning apps are often fertile ground for hackers - the ShinyHunters breach of Mathway is a prime example. As the breach exposed 25 million emails and passwords, there is the likelihood that some identity theft will go beyond consumer impact and actually expose organizations."


One major lesson that can be learned from this breach is that there is no reason to rely on credentials such as passwords when there are better ways to improve security.

Report this Content
This article has not been reviewed by Odyssey HQ and solely reflects the ideas and opinions of the creator.
Christmas tree
Librarian Lavender

It's the most wonderful time of the year! Christmas is one of my personal favorite holidays because of the Christmas traditions my family upholds generation after generation. After talking to a few of my friends at college, I realized that a lot of them don't really have "Christmas traditions" in their family, and I want to help change that. Here's a list of Christmas traditions that my family does, and anyone can incorporate into their family as well!

Keep Reading...Show less
Student Life

The 5 Phases Of Finals

May the odds be ever in your favor.

1440
Does anybody know how to study
Gurl.com

It’s here; that time of year when college students turn into preschoolers again. We cry for our mothers, eat everything in sight, and whine when we don’t get our way. It’s finals, the dreaded time of the semester when we all realize we should have been paying attention in class instead of literally doing anything else but that. Everyone has to take them, and yes, unfortunately, they are inevitable. But just because they are here and inevitable does not mean they’re peaches and cream and full of rainbows. Surviving them is a must, and the following five phases are a reality for all majors from business to art, nursing to history.

Keep Reading...Show less
Student Life

How To Prepare For The Library: Finals Edition

10 ways to prepare for finals week—beginning with getting to the library.

2829
How To Prepare For The Library: Finals Edition
Photo by Clay Banks on Unsplash

It’s that time of year again when college students live at the library all week, cramming for tests that they should have started studying for last month. Preparing to spend all day at the library takes much consideration and planning. Use these tips to help get you through the week while spending an excessive amount of time in a building that no one wants to be in.

Keep Reading...Show less
girl roommates
StableDiffusion

Where do we begin when we start talking about our roommates? You practically spend every moment with them, they become your second family and they deal with you at your best and at your absolute worst. They are there to make you laugh just a little harder, cry a little less and make each day a little better. We often forget to thank them for the little things that they do to make college even a tiny bit easier and more fun. This list of 26 things are what you should thank your roommates for right this minute and every day that you live with them.

Keep Reading...Show less
Student Life

20 Thoughts While Studying For Finals

I may or may not be stressing right now.

2914
Thoughts While Studying For Finals
StableDiffusion


That time of the semester has arrived once again, finals. The worst week ever. Who thought it was a good idea for all your classes to have exams all in the same week? Definitely not me. Here's 20 thoughts you may have studying for finals.

Keep Reading...Show less

Subscribe to Our Newsletter

Facebook Comments