Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI toolsNEW
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
  • AI
  • Tech
  • Cybersecurity
  • Finance
  • DeFi & Blockchain
  • Startups
  • Gaming
Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI toolsNEW
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
Dataconomy
No Result
View All Result

Internet Archive is breached again

The Internet Archive was breached via its Zendesk support platform, a critical flaw rooted in the organization's failure to rotate stolen GitLab authentication tokens

byKerem Gülen
October 21, 2024
in Cybersecurity
Home News Cybersecurity
Share on FacebookShare on TwitterShare on LinkedInShare on WhatsAppShare on e-mail
Google Preferred Source

For a digital library that touts its mission as providing “universal access to all knowledge,” the Internet Archive seems to be having a hard time keeping control over its own data. In a breach that could be described as a cautionary tale for any organization sitting on piles of sensitive user information, hackers once again made off with critical data.

The reason behind the latest Internet Archive data breach

The Internet Archive was breached via its Zendesk support platform, a critical flaw rooted in the organization’s failure to rotate stolen GitLab authentication tokens. Yes, you read that right—the same API tokens that had been compromised in a previous attack were still in play, a fact that had been pointed out by threat actors and security experts alike. As the hacker brazenly put it in a taunting email: “Whether you were trying to ask a general question, or requesting the removal of your site from the Wayback Machine, your data is now in the hands of some random guy. If not me, it’d be someone else.”

That stings. But what’s worse? The proof lies in the digital pudding. The email headers checked out, confirming that these messages were indeed fired off by authorized Zendesk servers. Over 800,000 support tickets were now in the hands of hackers, and some of them reportedly contained personal identification documents from removal requests. Essentially, if you tried to cover your tracks by deleting something from the Wayback Machine, those very efforts may now have exposed you.

Stay Ahead of the Curve!

Don't miss out on the latest insights, trends, and analysis in the world of data, technology, and startups. Subscribe to our newsletter and get exclusive content delivered straight to your inbox.

What’s fascinating—and downright absurd—is that this wasn’t even an attack driven by monetary gain or political motivations. There were no ransom notes, no governmental intrigue. This was a flex. The hacker wanted to boost their reputation in the underworld of cyber criminals, where the currency of power is based on whose breach is bigger, more audacious, and more public. In this case, the Internet Archive was the perfect target—a well-known name, popular across the globe, but with seemingly gaping holes in its defenses.

Internet Archive is breached again
Internet Archive is breached again (Image credit)

Sure, conspiracy theories flooded the internet, with some alleging that Israel, the U.S. government, or big corporations had a hand in the breach. But the reality? Far less glamorous. It was just a matter of opportunity and prestige among hackers. In a twisted form of irony, the very institution committed to preserving information became the latest exhibit in the museum of breached data.

This wasn’t even the first time the Archive had been hit. In fact, it was their third major breach in just the month of October. Earlier, an exposed GitLab token allowed hackers to steal the source code and user data for 33 million users. The hackers even had the audacity to deface the website’s JavaScript, flashing a message to visitors that their data had been compromised. “See 31 million of you on [Have I Been Pwned],” it read.


Details of Internet Archive breach reveal 31 million accounts got compromised


And while the organization may argue that its vast library remains intact, the digital equivalent of broken glass on the floor tells a different story. The Internet Archive has been busy dealing with more pressing issues—namely lawsuits over copyright infringement—leaving cybersecurity on the backburner.

Will they ever learn?

Despite public promises from founder Brewster Kahle to “strengthen defenses” and ensure security, the repeated incidents suggest something more systemic. Kahle himself has acknowledged these failures, stating the nonprofit is working “around the clock” to improve security, but how many times can you rebuild from the ashes before users simply stop trusting you?


Featured image credit: Markus Spiske/Unsplash

Tags: Data BreachInternet Archive

Related Posts

Proven privacy: Why ‘no-log’ claims need real evidence today

Proven privacy: Why ‘no-log’ claims need real evidence today

June 12, 2026
Critical UpdraftPlus flaw puts 3 million WordPress sites at risk

Critical UpdraftPlus flaw puts 3 million WordPress sites at risk

June 11, 2026
Which security awareness training solution is right for you? 5 options compared

Which security awareness training solution is right for you? 5 options compared

June 10, 2026
Why secure software delivery depends on better release management

Why secure software delivery depends on better release management

June 3, 2026
Popular Codex package caught exfiltrating authentication credentials

Popular Codex package caught exfiltrating authentication credentials

June 2, 2026
GTA V cheat service Atlas Menu hacked, exposing 64,000 accounts

GTA V cheat service Atlas Menu hacked, exposing 64,000 accounts

June 2, 2026

LATEST NEWS

“Free robots are an illusion”: Why we’ll pay for system intelligence, not delivery workers

How Henrique Schmaiske led Meteor.js through its biggest transformation

Proven privacy: Why ‘no-log’ claims need real evidence today

ChatGPT hits 1 billion users as global AI adoption surges despite backlash

Huawei launches HarmonyOS 7 developer beta with upgraded API 26

OpenAI Codex referral program rewards users with extra rate resets

BEST AI MODELS LEADERBOARD

See the best AI models, ranked by intelligence, benchmark results, speed and token price. Find the most suitable LLMs, Text-to-Image, Image Editing, Text-to-Speech, Text-to-Video and Image-to-Video  artificial intelligence model for your tasks and business.

LATEST TOOLS

Roboto AI

Pickaxe

Pfpmaker

MindPal

Syllaby

ScreenApp

FinanceBrain

GitHub Spark

Hints

VisionStory AI

Dataconomy

COPYRIGHT © DATACONOMY MEDIA GMBH, ALL RIGHTS RESERVED.

  • About
  • Imprint
  • Contact
  • Legal & Privacy

Follow Us

  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI tools
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
No Result
View All Result
Subscribe

This website uses cookies to improve your experience. You can choose to accept or reject them. Visit our Privacy Policy.