Notification of data breach in 2016

Status
Not open for further replies.

sothis

Forum Moderator
Anime-Planet Founder
Developer
Back in 2016 we posted about a data breach impacting our forum, for which we had to temporarily close the forums. It has come to our attention that the scope of this attack was larger than previously assumed. We have been notified that the main site was also affected and a data breach consisting of the user accounts from before or during 2016 has been obtained.

The information includes: username, hashed password, email address, last used IP address, and date of birth.

We're sorry about this as we take security very seriously. We are currently investigating if we can pinpoint the exact way this breach happened. However, this occurred years ago in 2016 and we have since replaced most of the legacy systems we had in place back then. We'll keep this thread updated if there are any updates.

As a precaution we will soon force password resets on accounts made up to, and including, the year 2016. It's good practice to change your password from time to time regardless, even if your account is a newer one.
 
Last edited by a moderator:
I only found out about this when firefox warned me! Don't you think rather than posting this on the forum (which I don't use) it should appear on the Site notification? I shouldn't have to learn about this from a third party.

As of yesterday we added a site notification for all impacted users (users with accounts from 2016 or earlier). The run missed a small group of impacted users and our dev team will implement those today.
 
Well my point was for those like me that don't visit the forum, so no, not EVERYONE was warned back in 2016 because otherwise I wouldn't be here making this point!

Thank you Sothis for putting the warning on the notification.
 
what a fun news upon reaching over 800 watched anime, i kind of expected a badge notification not password change notice :]
just keep the good work and try not to slip up again, because it would be a shame to say goodbye. Even if i liked old layout much more you still my number one site about anime
 
So will this affect the people with newer accounts in any way? I will change my password just in case. Thanks for letting is know Sothis!
 
Last edited:
Member since 2011. Changed my username a couple of times and my password a few times too.

I don't even remember hearing about this in 2016. Maybe I did, or maybe I just ignored it. I don't think I used the forums back then (I don't use them much now either).

Fortunately, I don't reuse any of the passwords I've used here for anything that's actually sensitive. Sensitive accounts get unique, strong passwords.
 
IIRC I changed it few times because password reuse is the real enemy anyway and as someone working in the field, I couldn't excuse myself having 3-4 passwords for everything. Thus, I changed it. Thus, I changed it again and again because goddammit I forgot all new passwords and in order to force myself to learn them, I didn't save them in FireFox. TBH, I'm not 100% I know current one anyway. :]

And boi, 7ish years on a-p already? When did I get this old? Soon, I'll be retired and then die and I'll forget to delete my secret stash. And its backups.
 
I don't have enough memory space for dozens of passwords and username variations :hamster: to be honest. And card pins and security of security of security. Let's all just remove all security and open everything for everyone :frustrat: Nothing to steal with all cards on the table.

Seriously, all those people plotting anything against other people have somehow steered past the beauty of a simple, open, considerate life. :duck:



Thank you for mentioning it. Can't say I'm happy with forced PW change but I understand where you're coming from. I'll leave it to my password manager and simply not log in from anywhere but by laptop :lenny:
 
Status
Not open for further replies.
Back
Top