General
64 results found
-
Add sprashivai.ru breach
Website with questions with high popularity in Russia 'sprashivai.ru' (clone of formspring.me and so on) has been breached recently.
https://vk.com/wall6492_5205 (in russian)
http://tjournal.ru/p/sprashivairu-passwords-leak (in russian)(I don't know where to get data)
1 voteGreat tip! The data is now live on the site.
-
Include RAT and Keylogger logs.
Including things like this (http://pastebin.com/4fJAYTRt) would be a good addition to those who have been infected and do not know about it.
1 voteAlready implemented in the paste service.
-
Add breaches that may be hoaxes, but make it clear!
Often there are "breaches" which turn out to be hoaxes. On the one hand, having only verified breaches in the system is important in terms of confidence in the data but on the other hand, people still want to know if their email address is circulating in a hoax breach.
This feature would need to indicate that the breach has not been verified and may be a hoax. It's also important that it wouldn't just automatically appear in results returned by the API, rather it could be requested by passing a parameter to the API such as "IncludeUnverifiedBreaches=true" where the…
9 votes -
Enable a web hook for a callback when an account I'm monitoring is pwned
At present, notifications can be set up for when an individual address is pwned or when an address on a domain someone is monitoring is pwned. This idea is to programatically enable calling an HTTP endpoint when this event occurs.
The benefit of this idea is that developers can then implement their own logic which is automatically invoked when an event like this occurs. It's of most value to those monitoring domains where notifications are no a rare occurrence, particularly when we're talking about larger domains.
12 votesThis is now complete and is documented here: http://www.troyhunt.com/2015/07/have-i-been-pwned-goes-little-bit.html
- Don't see your idea?