a breach involving data from a large number of customers. If you use the service, you are advised to reset your password as quickly as possible.
In an email to users, Weebly said ‘an unauthorised party’ obtained email addresses and/or usernames, IP addresses and encrypted passwords for a ‘large number’ of customers. Access to these credentials could allow someone to take control of Weebly services, or carry out malicious activity using legitimate accounts.
Media reports state that the breach may have compromised the data of millions of customers.
Weebly is reported as stating it did not believe any customer websites had been improperly accessed, and as the company did not store full credit card numbers, it did not believe any credit card information that could be used for fraudulent charges ‘was part of this incident’.
As well as advising customers to reset passwords, Weebly said it had added a new feature that allowed users to view and verify recent account activity.
Stay Smart Online advises that users of any online service that has been breached should change their passwords/passphrases for that service and consider doing so for any other online service they use as well. You should not use the same access details for more than one online service and we recommend that you use two factor or multi-factor authentication when available.
Stay Smart Online also recommends that users be on the lookout for suspicious emails. You should avoid opening or forwarding emails from unknown senders and do not reply to suspicious messages with personal or financial details. If you are uncertain about a message, confirm with the organisation using details obtained from its website or other legitimate source (not from the message itself).