Online retailer CafePress, which specializes in custom T-shirts and merchandise, is reported to have suffered a data breach involving sensitive information of more than 23 million customers in February of 2019. According to HIBP (Have I Been Pwned), CafePress was hacked in February of 2019 and the personal information for 23,205,290 users was exposed including Email addresses, Names, Passwords, Phone numbers, and Physical addresses.

Sources have asked CafePress if they can comment as it doesn’t appear any notification emails or formal disclosures mentioning a breach has been acknowledged by CafePress. About 77 percent of the email addresses in the breach have shown up in the HIBP breach alerts.

Provided the reports of a breach are accurate, questions as to how the breach occurred are still unknown. Researchers mention that many of the exposed passwords were encoded in base64 SHA1 – a particularly weak encryption that security experts have criticized as being an outdated method.

Users who accessed CafePress through third-party applications such as Facebook and Amazon, however, did not have their passwords compromised.

To help defend against attacks like this, NNT suggests utilizing our Security Information and Event Manager (SIEM) product called Log Tracker Enterprise™ which is designed to help organizations analyze unusual and suspicious activity across your network.

Contact Us

USA Offices

New Net Technologies LLC
Suite #10115, 9128 Strada Place
Naples, Florida, 34108

New Net Technologies LLC
1175 Peachtree St NE
Atlanta, Georgia, 30361.

Tel: (844) 898-8358
[email protected]

 

UK Office

New Net Technologies Ltd
Rivers Lodge, West Common
Harpenden, Hertfordshire
AL5 2JD

Tel: 020 3917 4995
 [email protected]

SC Magazine Cybersecurity 500 Infosec Security Winners 2018 CIS benchmarking SEWP Sans Institute Now Certified IBM Security
Copyright 2020, New Net Technologies LLC. All rights reserved. 
NNT and Change Tracker are registered trademarks of New Net Technologies LLC.
All other product, company names and trademarks are the property of their respective owners.