Chegg Data Breach Affects 40 Million Customers

Chegg Data Breach Affects 40 Million Customers

The hack dates back to April 2018, and compromised information includes email addresses and passwords.

Textbook rental giant Chegg reported to the Securities and Exchange Commission (SEC) Wednesday that they had discovered a security breach affecting over 40 million users.

The report was discovered last week, but the intrusion allegedly began in April 2018. Chegg reported that “an unauthorized party gained access to the company database that hosts user data for chegg.com” in the SEC filing.

Chegg said the hack gained access to user names, email addresses, shipping addresses, and chegg.com passwords. The passwords were stored with a hashing algorithm, but it was not stated which one. Hashing algorithms can be broken, rendering the deciphered data in plain text.

However, Chegg did say that hackers did not gain access to Social Security numbers or financial information, such as credit card or bank account numbers. The company said it plans to reset all user passwords.

As a result of the data breach, Chegg’s stock plunged more than 12 percent. Other companies have had bad luck with data breaches as well, with Under Armour having suffered a similar attack in March. This breach comes on the heels of British Airways having their mobile app that compromised information for nearly 400,000 card payments.

About the Author

Jordan Lutke is an intern with 1105 Media.

Featured

New Products

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • ResponderLink

    ResponderLink

    Shooter Detection Systems (SDS), an Alarm.com company and a global leader in gunshot detection solutions, has introduced ResponderLink, a groundbreaking new 911 notification service for gunshot events. ResponderLink completes the circle from detection to 911 notification to first responder awareness, giving law enforcement enhanced situational intelligence they urgently need to save lives. Integrating SDS’s proven gunshot detection system with Noonlight’s SendPolice platform, ResponderLink is the first solution to automatically deliver real-time gunshot detection data to 911 call centers and first responders. When shots are detected, the 911 dispatching center, also known as the Public Safety Answering Point or PSAP, is contacted based on the gunfire location, enabling faster initiation of life-saving emergency protocols.

  • EasyGate SPT and SPD

    EasyGate SPT SPD

    Security solutions do not have to be ordinary, let alone unattractive. Having renewed their best-selling speed gates, Cominfo has once again demonstrated their Art of Security philosophy in practice — and confirmed their position as an industry-leading manufacturers of premium speed gates and turnstiles.