Neowin.net mentioned on the BBC News website


Recommended Posts

Hotmail accounts 'posted online'

Thousands of hotmail passwords have been hacked and posted online, according to reports.

Microsoft, which owns the popular web-based email system, told BBC News that it was aware of the claims and that it was "investigating the situation".

A report on technology blog neowin.net said that the details of "over 10,000" accounts had been posted to a website.

The blog suggested the accounts had been hacked or had been collected as part of a phishing scheme.

Phishing involves using fake websites to lure people into revealing personal details such as bank accounts or login names and passwords.

'Rapid response'

Neowin claims the details were posted on 01 October to pastebin.com, a website commonly used by developers to share code.

Although the details have since been removed, the website said it had seen part of the list.

"[We] can confirm the accounts are genuine and most appear to be based in Europe," Tom Warren, a neowin blogger, wrote on the site.

He said that the list included details of Microsoft's Windows Live Hotmail accounts with email addresses ending hotmail.com, msn.com and live.com.

Microsoft said it had "been made aware of the claims that Windows Live IDs and passwords have been made available on the web".

"We're actively investigating the situation and will take appropriate steps as rapidly as possible," a spokesperson said.

Neowin said that it recommended Windows Live Hotmail users to change their "password and security question immediately".

souricon.gif News source: BBC News

The BBC fixed the typo in the meantime. Pity they didn't linkify the URL while they were at it.

Edited by Mephistopheles
So I take it the accounts have not been hacked directly from MS' servers? These are all resultant from successfully 'phished' accounts from a dodgy clone website of the official Microsoft site?

It looks like it from the article... It must have been a pretty big operation to get 10,000 though

Too bad. If the BBC starts linking you you loose all credibility as they did years ago as 'objective' reporters.

If you shrink BBC's leftwing propaganda to 1/1000 and paint it pretty pale blue holding a sign i am objective you still can see it's not.

What's there to wonder? Neowin writers blog about what other sites write about.

You find way too many of "According to...", or "X has reported" on the main page of Neowin.

We're a news site, not a blog. Just because we use sources other than ourselves for news posts (usually), that makes us no less of a news site.

What's there to wonder? Neowin writers blog about what other sites write about.

You find way too many of "According to...", or "X has reported" on the main page of Neowin.

I don't believe that was the case in this instance, I believe it was a neowin member that alerted Tom (although I have no evidence to back that up apart from the "heads-up" for "Chris" in the article).

I think it's the latest form of spam, social compliance etc. If you get told that someone you talked to on MSN etc had blocked you - then what's the first thing you're going to do especially if you speak to 'em a lot, if you;'re a bit miffed? Sign up. And... oh, look, here's my username and password :/

I expect more attacks like this, if I'm honest. Hotmail is the first casualty. Although I bet it's Windows Live accounts, rather than just Hotmail (ie MSN and everything else).

I may be way off the mark, I've nothing to back this up on - just seems like the logical thing for an organised spammer / phishing organisation to do. Plus, that's what conmen do - you ever seen the Real Hustle??

Great news though, about time Neowin gets the recognition it deserves. Neobond, ya best get ready for the interview...

Ad

Sky is linking to here too... http://bit.ly/7xOOT.

Just a thought. Neowin is a technology NEWS site, not a blogging site... guess the Beeb and sky don't like the idea of there being other news sites?

As more people find out (bear in mind the west coast of the USA is getting to work now)... neowin is gonna be mega mega busy later...

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • How many other companies will follow Ford's lead? Or, have they already gotten lazy and become enslaved to AI--and now can't figure out how to get out of that mess.
    • Why would any self-respecting intelligent person follow any recommendation by Donald's GOP administration? With almost two years of fabrications, deceit, and blatantly illegal behavior, why believe them now? They had best be gone after the November 2026 election, so we'll wait and see.
    • AltSendme 0.4.1 by Razvan Serea AltSendme is a minimal, cross-platform application designed for fast, secure, and private peer-to-peer file transfers. It allows users to send files or entire directories directly between devices without relying on cloud servers, accounts, or any personal information. Everything is encrypted end-to-end using modern protocols like QUIC and TLS 1.3, ensuring both strong security and low-latency performance. Transfers are verified with BLAKE3 for data integrity, and interrupted downloads automatically resume, making the experience reliable even on unstable connections. You can transfer anything—images, videos, documents, and more. Integrity checks are performed on both ends, so your files are automatically verified for correctness during both sending and receiving. AltSendme works seamlessly across local networks or long-distance links, capable of saturating multi-gigabit connections for extremely fast delivery. With built-in NAT traversal and encrypted relay fallback, it connects devices almost anywhere. The app integrates with the Sendme CLI and will soon support mobile and web platforms. Fully free and open-source, AltSendme offers a lightweight, privacy-first alternative to traditional cloud-based services, removing size limits, upload costs, and unnecessary data exposure. AltSendme 0.4.1 changelog: Release Highlights Self-hosted relays: Run your own iroh relay so transfers don't rely on public infrastructure. Includes a full deployment template in deploy/relay/ with Docker Compose for a VPS and configuration examples for production use. Fly.io support: One-click deploy template for Fly.io, including a quick-start config (fly.dev.toml) for testing without a custom domain, plus production setup with Let's Encrypt and your own hostname. Relay settings UI: New Settings → Network panel to choose how AltSendme connects: automatic public relays, custom self-hosted URLs (with optional auth token), or disabled. Test connections, verify latency, and see live relay status in the footer. Disable relays: Turn off relay servers entirely when you only need same-network transfers (e.g. LAN). Direct connections only. No relay hop required when devices can reach each other. Android graduates from beta: Android is now part of the regular release cycle alongside desktop. APKs ship with each version (universal, arm64, and armv7). Other improvements Private relay access control via shared auth token Relay fallback notifications when a custom relay is unreachable Broadcast mode toggle in sharing settings Android release build fixes (split-per-ABI APKs, universal APK preservation) UI polish: mobile safe-area insets, dropzone layout, transfer progress animation Bug fixes for minification-related serialization issues and system tray icon loading What's Changed feat(relay): add relay status functionality and settings UI (a120cdf) feat(relay): implement custom relay server configuration and verification (51276c7) feat(relay): add configuration for private relay access and enhance observability features (48fbabf) feat(relay): enhance relay URL validation, display connection status (d4fffa0) feat(relay): add RelayChangeGuard component and enhance relay-related translations (16ba514) feat(broadcast): add toggle setting for broadcast mode in sharing UI (ca6d977) fix(relay): correct QUIC discovery port, pin image, templatize fly.dev (52a2ba5) fix: More broken serialization due to minification (67491a9) fix(android): preserve true universal APK across per-ABI builds (e9f256f) fix(ui): conditional safe-area insets padding on mobile (1182f0e) refactor(transfer): CircularRing component animation fix (944572b) chore(android): drop x86 and x86_64 release APKs, keep universal+arm64+armv7 (34ada0b) Download: AltSendme 0.4.1 | ARM64 | ~9.0 MB (Open Source) Download: AltSendme for MacOS | Android Links: AltSendme Home Page | GitHub | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • You are mostly right about the ephemeral nature of it. As I mention in the article, if you dont add a second device or take a backup of your account before uninstalling it, then yes you will lose access to your account. That said, in terms of actual user experience when you sync multiple devices your message history carries across and there's also a Saved Messages chat like there is on Telegram to send messages and attachments between your installs. But yh, what you point out are correct and its not trying to emulate Messenger or Telegram.
    • OK so SearXNG is a meta search engine that you can install locally or use via a public instance. It scrapes other search engines which you choose and then sorts the results. Not as complicated as multiple relays
  • Recent Achievements

    • Week One Done
      flexorcist earned a badge
      Week One Done
    • One Month Later
      Woland13 earned a badge
      One Month Later
    • Week One Done
      Woland13 earned a badge
      Week One Done
    • One Year In
      bernmeister earned a badge
      One Year In
    • Week One Done
      Scoobystu earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      495
    2. 2
      +Edouard
      225
    3. 3
      PsYcHoKiLLa
      150
    4. 4
      Steven P.
      75
    5. 5
      FloatingFatMan
      71
  • Tell a friend

    Love Neowin? Tell a friend!