+

Cookies on the Business Insider India website

Business Insider India has updated its Privacy and Cookie policy. We use cookies to ensure that we give you the better experience on our website. If you continue without changing your settings, we\'ll assume that you are happy to receive all cookies on the Business Insider India website. However, you can change your cookie setting at any time by clicking on our Cookie Policy at any time. You can also see our Privacy Policy.

Close
HomeQuizzoneWhatsappShare Flash Reads
 

FBI: Russian hackers likely used a simple phishing email on a Yahoo employee to hack 500 million user accounts

Mar 16, 2017, 20:03 IST

Yahoo CEO Marissa MayerAP

The FBI says hackers used social engineering techniques on a "semi-privileged" Yahoo employee in order to break into the company's systems and access 500 million user accounts.

Advertisement

In an interview with Ars Technica, FBI agent Malcolm Palmore said the hackers were able to use a "spear phishing" email to gain the Yahoo employee's credentials. Spear phishing emails can encompass various techniques designed to trick the recipient into giving up their personal information. Phishing emails usually appear to come from a trusted source.

One of the most famous recent cases of phishing was when former Hillary Clinton campaign manager John Podesta fell victim to such an email, causing his private messages to leak.

Complimentary Tech Event
Transform talent with learning that works
Capability development is critical for businesses who want to push the envelope of innovation.Discover how business leaders are strategizing around building talent capabilities and empowering employee transformation.Know More

The US Department of Justice released an indictment Wednesday charging two Russian intelligence agents and two others in connection with the 2014 hacks that compromised 500 million Yahoo user accounts. The DOJ says the two members of Russia's FSB intelligence agency, Dmitry Dokuchaev and Igor Sushchin, "protected, directed, facilitated, and paid" the other two hackers to break into the Yahoo accounts.

The attack was separate from another one in 2013 that compromised 1 billion Yahoo accounts, however no one has been blamed for that attack yet.

Advertisement

So what did the hacker do once they gained access? Read more about the timeline of the data breach here.

NOW WATCH: This animation shows how terrifyingly powerful nuclear weapons have become

Please enable Javascript to watch this video
Next Article