<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Last.fm on Omid Farhang</title><link>https://omid.dev/tags/last.fm/</link><description>Recent content in Last.fm on Omid Farhang</description><image><title>Omid Farhang</title><url>https://omid.dev/images/bio-photo-150x150.jpg</url><link>https://omid.dev/images/bio-photo-150x150.jpg</link></image><generator>Hugo -- 0.163.3</generator><language>en-US</language><copyright>2026 Omid Farhang | All rights reserved.</copyright><lastBuildDate>Sat, 09 Jun 2012 12:43:00 +0000</lastBuildDate><atom:link href="https://omid.dev/tags/last.fm/index.xml" rel="self" type="application/rss+xml"/><item><title>Millions of Last.fm passwords leaked</title><link>https://omid.dev/2012/06/09/millions-of-last-fm-passwords-leaked/</link><pubDate>Sat, 09 Jun 2012 12:43:00 +0000</pubDate><guid>https://omid.dev/2012/06/09/millions-of-last-fm-passwords-leaked/</guid><description>&lt;p&gt;&lt;img loading="lazy" src="http://lh6.ggpht.com/-S3R_neFyA6k/T9M95dipghI/AAAAAAAAGNg/ySAo5xvDO0U/s1600-h/lastfm_red%25255B2%25255D.gif" alt="lastfm_red" /&gt;
&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;The H-Online:&lt;/strong&gt; A list with several million passwords belonging to users of the music community site &lt;a href="http://www.last.fm/"&gt;Last.fm&lt;/a&gt; has been posted on the internet. The site owners have posted &lt;a href="http://www.lastfm.de/passwordsecurity"&gt;a statement&lt;/a&gt; saying that the company is investigating the leak and that all users of the service should change their passwords immediately. This is the third major compromise of a popular web site&amp;rsquo;s passwords in as many days.&lt;/p&gt;
&lt;p&gt;The H&amp;rsquo;s associates at heise Security are in possession of a list containing approximately 2.5 million password hashes. Like the recently leaked data from &lt;a href="http://www.h-online.com/news/item/eHarmony-admits-to-leaking-1-5-million-passwords-1612654.html"&gt;eHarmony&lt;/a&gt;, these are unsalted MD5 hashes that are trivial to crack in today&amp;rsquo;s world of fast CPU and GPU hardware and specialised techniques such as using &lt;a href="http://www.h-online.com/security/features/Cheap-Cracks-Of-dictionaries-and-rainbows-746217.html"&gt;rainbow tables&lt;/a&gt;. At least one million of these hashes have already been cracked and the clear text passwords have also been posted on the internet. The hashes that were leaked from &lt;a href="https://omid.dev/2012/06/linkedin-passwords-in-circulation.html"&gt;LinkedIn&lt;/a&gt; were generated using the SHA-1 algorithm.&lt;/p&gt;</description></item></channel></rss>