1. https://appdevelopermagazine.com/security
  2. https://appdevelopermagazine.com/how-the-reddit-security-breach-reminds-us-to-be-careful/
8/6/2018 2:54:26 PM
How the reddit security breach reminds us to be careful
reddit Hack,Website Security,Best Security Practices
/The-Reddit-Security-Breach-and-What-You-Need-to-Know-App-Developer-Magazine_vgbix5cc.jpg
App Developer Magazine
How the reddit security breach reminds us to be careful

Security

How the reddit security breach reminds us to be careful


Monday, August 6, 2018

Austin Harris Austin Harris

The reddit security breach is a reminder to everyone about what best security practices to take when logging into websites to protect your information.

reddit recently disclosed in their announcements feed of a security breach into their system which the hacker "managed to access some user data, including some current email addresses and a 2007 database backup containing old salted and hashed passwords." Include in the disclosed information was some reddit source code and some log files.

They went on to say in the announcement that the hacker did not obtain writing access into their system, but read-only. So the company urged users who have used the platform anywhere near 11 years ago to reset their password and consider enabling 2-factor authentication.

Jessica Marie, cybersecurity evangelist at WhiteHat Security, had this to say about the incident:

"Simply put, web applications are vital for today’s enterprises, offering a gateway to interact with consumers at any time, on any device. With so many consumers using web applications to access everything from their email to their bank accounts, security must be a top priority. According to WhiteHat Security research, web applications are consistently the most exploited means of entry into companies by hackers, and yet, companies are still failing to implement proper application security, to avoid being a vulnerable target.

"In the instance of reddit’s consumer data breach, it confirms again that security testing efforts are lacking and need to be the first step to protect against vulnerable targets, such as websites, databases, network connections, mobile applications, and APIs. With that said, we as users need to be better at taking security precautions, as well. I realize this is common sense, but it bears repeating:

Best practices for website user security

  • Don’t use the same password for all sites and apps. If one site or app is breached, it’s possible that all of your accounts would be a target. At the very least, use a variety of passwords to minimize the impact.
     
  • Turn on two-factor authentication for any app or site that supports it. Yes, it can be a pain, but it’s an effective strategy to protect your online accounts.
     
  • Only log into sites that use SSL; you’ll know this by checking if there is an ‘https://' before the rest of the URL.
     
  • Don’t click on any links or attachments in instant messages or emails. They may seem interesting or completely safe, but chances are, you’re putting your personal data at risk."





Subscribe to App Developer Magazine

Become a subscriber of App Developer Magazine for just $5.99 a month and take advantage of all these perks.

MEMBERS GET ACCESS TO

  • - Exclusive content from leaders in the industry
  • - Q&A articles from industry leaders
  • - Tips and tricks from the most successful developers weekly
  • - Monthly issues, including all 90+ back-issues since 2012
  • - Event discounts and early-bird signups
  • - Gain insight from top achievers in the app store
  • - Learn what tools to use, what SDK's to use, and more

    Subscribe here



Featured Stories


Spotlite Expands Into AI Era With New IP Protection Tool
Spotlite Expands Into AI Era With New IP Protection Tool Wednesday, June 3, 2026




Spotify and UMG strike landmark AI music licensing deal
Spotify and UMG strike landmark AI music licensing deal Thursday, May 28, 2026


Anthropic investigation opened after Mythos accessed by Discord group
Anthropic investigation opened after Mythos accessed by Discord group Wednesday, May 27, 2026


AI layoffS: What is really behind it all
AI layoffS: What is really behind it all Tuesday, May 26, 2026


The identity system is failing under AI
The identity system is failing under AI Monday, May 25, 2026


The Real World Launches Expert-Verified AI Certification Framework
The Real World Launches Expert-Verified AI Certification Framework Friday, May 22, 2026


Multiple language options when developing apps with Evoke
Multiple language options when developing apps with Evoke Thursday, May 21, 2026


When Social Listening Becomes Social Surveillance
When Social Listening Becomes Social Surveillance Wednesday, May 20, 2026


Medical debt relief custom-built platform moopFi launches
Medical debt relief custom-built platform moopFi launches Tuesday, May 19, 2026


Quant Pros Say AI Is Widening the Skills Gap
Quant Pros Say AI Is Widening the Skills Gap Monday, May 18, 2026


Stay Updated

Sign up for our newsletter for the headlines delivered to you

SuccessFull SignUp

Get More App News



/sites/themes/prod/assets/js/less.js"> ' ' %>