150m users of pop­u­lar fit­ness app have their data stolen

Daily Mail - - Confidential - By Jim Nor­ton

HACK­ERS have stolen ac­count de­tails from 150mil­lion users of diet and ex­er­cise app MyFit­nessPal in this year’s big­gest data breach at any com­pany.

Un­der Ar­mour, the Amer­i­can sports­wear brand that owns the app, ad­mit­ted they only found out user­names, email ad­dresses and pass­words had been stolen a month af­ter it hap­pened.

In a statement, the firm said they did not know the hack­ers’ iden­tity and urged mem­bers to change their pass­words.

The app al­lows users to mon­i­tor calo­rie in­take and mea­sure it against how much ex­er­cise they have done us­ing a data­base of more than two mil­lion foods.

Un­der Ar­mour, which is based in Mary­land, be­gan in­form­ing users four days af­ter learn­ing of the breach last Sun­day. Data se­cu­rity

‘Big­gest breach of this year’

firms and law en­force­ment agen­cies are now in­ves­ti­gat­ing the hack af­ter it emerged it ac­tu­ally hap­pened at the end of Fe­bru­ary.

No pay­ment de­tails were said to have been stolen as these are pro­cessed sep­a­rately.

It is the largest data breach this year and one of the top five of all time, ac­cord­ing to com­puter se­cu­rity firm Se­cu­rity Score card. How­ever, it is dwarfed by pre­vi­ous hacks such as at Ya­hoo in 2013, when three bil­lion ac­counts were breached. In 2016 hack­ers tar­geted 412mil­lion users of adult web­sites run by Friend Finder Net­works.

Founded by brothers Mike and Al­bert Lee in 2005, MyFit­nessPal was sold to Un­der Ar­mour for £338.1mil­lion in 2015.

It is part of the firm’s fit­ness di­vi­sion, which last year ac­counted for 1.8 per cent of its £3.5bil­lion to­tal sales.

In an email to users, Un­der Ar­mour said: ‘We un­der­stand that you value your pri­vacy and we take the pro­tec­tion of your in­for­ma­tion se­ri­ously … once we be­came aware, we quickly took steps to de­ter­mine the na­ture and scope of the is­sue.’

Newspapers in English

Newspapers from UK

© PressReader. All rights reserved.