Weekly Update 233

Data breaches all over the place this week! Not just data breaches, but noteworthy data breaches; the VPN ones for being pretty shady, Oxfam because it included my data which was posted to a hacking forum, Ticketcounter because of the interactions I had with them during the disclosure process and Gab because, well, everything about Gab is always weird. The CEO's behaviour is just appalling and that seems to trickle down to many of the users too, including some who joined in the live stream. But hey, it's giving me amazing conference material and some of the stuff from the last couple of days is just so good, I'm going to save it for when I can actually present it in front of a live audience and watch the gasps at just how batshit crazy it is 🙂

Listen on Apple Podcasts
Get it on Google Play
Download via RSS


  1. Home Assistant is checking secrets in the config file against Pwned Passwords (HA is one of my favourite things, so happy to see this!)
  2. SuperVPN and GeckoVPN are kinda shady VPN services that both got themselves pwned (they appear to share the same underlying DB)
  3. The Oxfam charity in Australia was also pwned (including my personal data, which was used as a "proof" of the breach on a hacking forum)
  4. Ticketcounter in the Netherlands was pwned too (as I say in the video, it's always interesting speaking to people inside organisations dealing with a breach, it gives me a much more human perspective on things)
  5. Gab was really pwned (including my own personal account, for which I'm still waiting to receive my breach notification)
  6. Sponsored by MEGA - The world's largest provider of zero-knowledge E2EE cloud storage plus chat. Join 200m others who enjoy privacy - try MEGA for free.
Weekly update
Tweet Post Update Email RSS

Hi, I'm Troy Hunt, I write this blog, create courses for Pluralsight and am a Microsoft Regional Director and MVP who travels the world speaking at events and training technology professionals