User Tag List

Results 1 to 2 of 2

Thread: Genealogy site MYHERITAGE says 92 million users compromised...350 days old

  1. #1
    Established Member
    Molecular Biologist ~Elizabeth~'s Avatar
    Last Online
    Join Date
    Trump 2020
    United States

    Default Genealogy site MYHERITAGE says 92 million users compromised...

    MyHeritage, one of the nation’s most popular online genealogy sites, said a security breach had affected the email addresses and hashed passwords of 92 million users, raising concerns about the security of more sensitive data that the company collects.

    The website allows users to create family trees, search historical records, and look for possible relatives. It also operates MyHeritage DNA, a genetic testing service that lets users to send in their spit and have their genetic information analyzed.

    In a statement issued late Monday afternoon, MyHeritage said there was “no reason to believe” that data other than email addresses and hashed passwords had been accessed without authorization. Family trees or genetic data, it said, are stored on different systems with “added layers of security.”

    A security researcher contacted the company after discovering a file named “myheritage” on a private server, MyHeritage said. The company reviewed the file and confirmed it contained the email addresses of every user who had signed up for MyHeritage before Oct. 26, 2017, along with their hashed passwords, which conceal a user’s actual password.

    The security breach underscores growing concerns about the privacy of data submitted to genealogy platforms. Last month, news that investigators tracked down their suspect in the case of the Golden State Killer sparked worry about the privacy of genetic data shared with commercial sites such as MyHeritage.

    Other genealogy sites, such as 23andMe, have security systems similar to the one apparently used by MyHeritage. Last year, 23andMe CEO Anne Wojcicki told Recode that the company keeps genetic information “totally separate” from information that could be used to identify a user, such as email addresses.

    A study published in 2017 found that genetic testing sites could be vulnerable to computer hacks that expose personal genetic information.

    Researchers at the University of Washington encoded a strand of DNA to contain malware, which allowed them to take remote control of a computer that was being used to process genetic data. And while the researchers stressed the chances of that kind of attack are minimal, they found a host of vulnerabilities in the commercial programs that are used to analyze DNA.

    “Any programs that process data can potentially be attacked,” said Peter Ney, a doctoral student in UW’s Paul G. Allen School of Computer Science & Engineering, told STAT at the time. “In many cases, the best practices for security are not being used.”

    Even if genetic data from a commercial site like MyHeritage is compromised, it’s not clear how they might be used. That does not tend to allay consumer anxiety, experts say.

    “When you put DNA and privacy together in a sentence, understandably and correctly, it makes people nervous,” said Laura Hercher, a professor at Sarah Lawrence College who teaches about genetics and ethics. But, Hercher said, the security breach involving MyHeritage doesn’t seem to be any different than security breaches at other companies that don’t work with genetic information.

    “I would rather give someone my DNA than my social security number, my search history, or my credit card,” she said.

    MyHeritage said it will hire an independent cybersecurity firm to help probe the breach and provide recommendations about how to prevent security lapses going forward. The company said it’s also speeding up its work to roll out two-factor authentication for users. In the meantime, MyHeritage said all users should change their passwords.

    Anyone here have their genealogy on MyHeritage? If yes, change your password.

    I'm glad I'm not on MyHeritage. I have some of my genealogy at Ancestry, the rest I keep at home.

    Who here has their genealogy online somewhere?

  2. # ADS
    Advertisement bot
    Join Date
    All threads

  3. #2
    Established Member
    Junior Member
    Last Online
    2018-12-20 @ 19:51
    Join Date


    Millions Trust With Their Genetic Code: What Could Go Wrong?

    Millions of semi-conscious consumers, most of whom were probably outraged and appalled by recent privacy scandal outbreaks involving companies like Facebook and Equifax, have been casually shipping away the most precious keys to their genetic code and helping compile the worlds largest DNA database. More than 5 million people have already "spit into tubes" and mailed it into's database, according a recent report by the Tampa Bay Times.

    These 5 million people were the basis of a brand new investigative report published by the Tampa Bay Times, which detailed how, marketing itself as a family friendly and wholesome way to discover ones ethnicity, is actually possibly setting itself up for the largest and most complex security breach of all time.

    That’s because is compiling a database, not just of personal information like your Social Security number or date of birth, but also of your DNA. As the report notes, your DNA is arguably the most complex and sensitive form of identification that you can have as a human being.

  4. The Following 2 Users Say Thank You to Skomand For This Useful Post:

    Opie (2019-05-05), ~Elizabeth~ (2018-06-06)

Similar Threads

  1. 'MyHeritage DNA' - Would you consider ordering it?
    By shazou in forum Genetic DNA Companies
    Replies: 6
    Last Post: 2018-02-05, 01:14
  2. Fishy MyHeritage DNA results
    By CrazyDaisy in forum Genetic DNA Companies
    Replies: 79
    Last Post: 2017-10-05, 22:15
  3. Desertrose MyHeritage free results
    By Desertrose in forum Member Results
    Replies: 6
    Last Post: 2017-08-03, 19:13
  4. Longbowman's MyHeritage
    By Longbowman in forum Genetic DNA Companies
    Replies: 12
    Last Post: 2017-08-02, 06:09
  5. Shazou's MyHeritage DNA results
    By shazou in forum Member Results
    Replies: 13
    Last Post: 2017-05-12, 17:08

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts