[HN Gopher] HaveIBeenPwned adds yesterday's Facebook breach
       ___________________________________________________________________
        
       HaveIBeenPwned adds yesterday's Facebook breach
        
       Author : gnabgib
       Score  : 44 points
       Date   : 2021-04-04 18:53 UTC (4 hours ago)
        
 (HTM) web link (haveibeenpwned.com)
 (TXT) w3m dump (haveibeenpwned.com)
        
       | akarma wrote:
       | The creator of HaveIBeenPwned clarified on Twitter that there's
       | no plans to add "search by phone number," so odds are that, if
       | your data is in this leak, you won't see it through
       | HaveIBeenPwned.
       | 
       | >500m Facebook records were leaked and <10m records have an email
       | address -- far more records are phone number but no email.
       | 
       | [1] https://twitter.com/troyhunt/status/1378463581604220931
        
         | kace91 wrote:
         | Is there any (legal) way to see the leak? or at least to know
         | if your data is among the leaked set?
         | 
         | No interest in seeing other people's info, but I want to know
         | if I'm affected.
        
           | tacker2000 wrote:
           | Search telegram for fbleaks
        
           | edoceo wrote:
           | Can't you search the mentioned site?
           | 
           | There were links to a ufile folder with all the zips on here
           | yesterday.
           | 
           | I took a peek, relieved I wasn't in there.
        
             | gruez wrote:
             | >There were links to a ufile folder with all the zips on
             | here yesterday.
             | 
             | The pastebin with the links got taken down, although
             | there's an archive.is mirror of it. The forum where it's
             | from also has torrent magnet links.
             | 
             | >I took a peek, relieved I wasn't in there.
             | 
             | AFAIK it was publicly scraped data combined with the
             | exploit to get phone numbers[1]. If you didn't have a
             | public profile you're probably safe.
             | 
             | [1] https://news.ycombinator.com/item?id=25624982
        
         | ginko wrote:
         | Looks like he's considering adding phone number search. There's
         | a poll further down in the thread.
        
           | [deleted]
        
       | pvorb wrote:
       | One thing that really keeps annoying me about HaveIBeenPwned is
       | the fact that I can enter anyone's email and get their status
       | immediately. This way I can anonymously check if that email had
       | an account at a breached site at the time of the breach. The
       | obvious solution would be sending out a link via email before
       | results can be looked up, but this might not be in
       | HaveIBeenPwned's interest.
        
         | sneak wrote:
         | It's not HIBP that caused that data leak. The fact of which
         | emails have accounts on which sites is public following the
         | breach/leak of that site's data.
        
       | ttz wrote:
       | Kind of a shitpost:
       | 
       | Anyone read the post title as "HaveLBeenPwned", like Havel from
       | Dark Souls? Who often pwned you the first time around...
        
       ___________________________________________________________________
       (page generated 2021-04-04 23:00 UTC)