Skip to main content

Database of 13 million MacKeeper users easily accessed online

firmware update for apple multiport adaptor macbook gold 2015 hero
Image used with permission by copyright holder
Mac anti-virus software firm MacKeeper may not be so secure itself. Data on 13 million of its users, including email addresses, phone numbers, and hashed passwords, was found to be easily accessible online, according to one security researcher.

Chris Vickery discovered the database online by searching for open databases on the computer search engine Shodan. First, he discovered four IP addresses that led him to a MongoDB database, and he ultimately found the MacKeeper data featuring users’ IP addresses, software licenses, and activation codes along with the hashed passwords, names, numbers, and email addresses.

It is actually quite common to find open MongoDB databases online. However it remains unclear how long the MacKeeper database was left open. According to Brian Krebs, MacKeeper said its database was left open for about a week due to a server misconfiguration, but Vickery points out that the database he found was last dated around the middle of November.

Most strikingly, the passwords in the database were protected only with the hashing algorithm MD5, which has been decried in the past by its own creator as subpar and no longer secure. There are even MD5 cracking tools available online, which are not hard to find. MacKeeper told Forbes that it is currently updating to the SHA512 hashing algorithm.

Vickery claims that he was unable to reach Kromtech, the company behind MacKeeper, to alert it of the flaws, so he took to Reddit to make his discovery public in the hope of catching the company’s attention.

Kromtech has since responded to Vickery and thanked him for his disclosure. The firm said the vulnerability has now been patched and it will be carrying out an internal review.

“We fixed this error within hours of the discovery. Analysis of our data storage system shows only one individual gained access … the security researcher himself,” said Kromtech. “We have been in communication with Chris and he has not shared or used the data inappropriately.”

So it appears that Vickery is the only person that was aware of this potential leak of customer data, and no malicious actor gained access to the database.

Jonathan Keane
Former Digital Trends Contributor
Jonathan is a freelance technology journalist living in Dublin, Ireland. He's previously written for publications and sites…
The best password managers for 2024
have i been pwned owner uncovers 13 million plaintext passwords leaked from free webhost is a safe password even possible we

If you're thinking about getting a new password manager, we can help narrow down your choices. Here's a list of the best and most secure solutions for taking your logins with you wherever you go, no matter what device you use.
No more retyping passwords every time you switch from your Windows PC to your iPhone or from a Mac to an Android phone. These premium password managers have more than just the basics, making your life easier and keeping your accounts safe at affordable prices.

1Password (Windows, Mac, iOS, Android, Linux, and Chrome OS)

Read more
This Lenovo laptop is normally $2,919 — today it’s $919
The Lenovo ThinkPad T14s Gen 5 opened up on a table.

Lenovo laptop deals aren’t too difficult to come by, but this promotion was so exceptional, it needed its own spotlighting! Right now, Lenovo is knocking $2,000 off the Lenovo ThinkPad T14s. Since it's normally priced at $2,920, it’s hard to say how long this markdown is going to last. If you’ve been sitting on a laptop upgrade for a minute, now might be the time to get some new gear.

Why you should buy the Lenovo ThinkPad T14s laptop
Built for businesses, the ThinkPad has long been the go-to Lenovo laptop for busy professionals. Portability is one of the strong suits here: At 12.50 inches wide, 8.93 inches from front to back, and 0.65 inches tall, the ultraportable T14s is the ideal PC for frequent travelers. It’s lightweight too, weighing but a mere 2.71 pounds.

Read more
Best Dell laptop deals: Cheap laptops starting at $280
The Dell XPS 13 9315 on a table against a window.

Being one of the best laptop brands on the market, it's no surprise that Dell has a huge selection of laptops that you can potentially pick from. Whether you're going for gaming laptops or just normal day-to-day laptops, there's probably a great option for you. In fact, there are even some great budget laptops for those who don't really need anything fancy and just want something basic to get online and access shows or work-related content.
Of course, having so many options can be a bit overwhelming for somebody who isn't familiar with Dell or the laptop market, which is why we scoured the Dell website and other retailers for our favorite picks and listed them below. This list has a lot of crossover with the best Dell XPS deals, student laptop deals and gaming laptop deals, so make sure to check out some of those other great laptop deals as well.

Dell Inspiron 15 -- $280, was $330

Read more