Skip to main content

New details reveal over 43M accounts were breached in 2012 Last.fm hack

The scale of a 2012 hack of music site Last.fm is now coming to light, revealing that more than 43 million accounts were affected.

LeakedSource, a data breach and hacking notification site, says it has obtained a copy of the hacked database. The site was originally breached in March 2012, which led the company to send out a password reset notification to its users, but it’s only now that the full scale of the hack is rearing its ugly head.

Recommended Videos

After analyzing and verifying the data, LeakedSource published its findings Thursday. It says the data includes usernames, hashed passwords, email addresses, and the date the user signed up to the site and/or the newsletter, as well as advertising data.

Please enable Javascript to view this content

Perhaps most alarming is the hashed password data, which was secured with the MD5 hashing algorithm. MD5 has been considered outdated for a number of years. In 2012, the year of this hack, the original author of the algorithm wrote that it was no longer safe to us. As far back as 2005, a cryptographer wrote that MD5 was “broken”.

The case bears similarity to the Dropbox hack, details of which emerged Wednesday. Passwords were protected with SHA-1, another hashing algorithm that is becoming more and more outdated as computing power gets stronger.

In the case of Last.fm, LeakedSource was particularly alarmed by the use of MD5. “This algorithm is so insecure it took us two hours to crack and convert over 96 percent of them to visible passwords,” LeakedSource said, adding that it recently invested more into its own password-cracking capabilities for testing purposes.

The site also published a list of some of the most commonly used passwords it found and it doesn’t make for encouraging reading. The three passwords at the top of the list were “123456,” “password,” and “lastfm.”

Last.fm has yet to respond to the new details.

Jonathan Keane
Former Digital Trends Contributor
Jonathan is a freelance technology journalist living in Dublin, Ireland. He's previously written for publications and sites…
Discord is supercharging games with built-in messaging and voice chats
Discord SDK in-game menu.

Discord has announced a new Social SDK to allow developers to integrate Discord-powered communication features directly into their games. This means gamers will be able to message, invite, and voice chat with their friends super easily -- even if they don't have a Discord account.

As reported by The Verge, the company has been testing the SDK with studios like Theorycraft Games, Facepunch Studios, and Elodie Games -- and now it's available to everyone. It's compatible with C++, Unreal Engine, and Unity, and it supports Windows 11 and macOS. Mobile and console developers can't use it yet but support is coming.

Read more
Microsoft’s Copilot can now control your phone from your PC
Microsoft Copilot Pro.

Microsoft Support announced an improvement to the Phone Connection app in a blog post. The update makes tasks like messaging, setting alarms, and locating places more manageable through the Copilot app. Microsoft set the update for general availability to all users by the end of February 2025. However, Phone Connection is not currently available in the web version of Copilot, as spotted by Windows Latest.

Microsoft aims to make everyday tasks more manageable by allowing you to access your contacts without picking up your phone. The app was formerly known as Phone Plugin and now has a refreshed visual design to make it nicer to look at. Microsoft says the feature "boosts your productivity by allowing you to perform common phone actions on your PC, such as sending messages, setting alarms and timers, locating places using the map on your device, and more, without needing to reach for your device."

Read more
Google’s new satellite network can help spot wildfires
penny machine learning income predictor 30619164  space satellite orbiting the earth

The first FireSat satellite has launched and made a connection with Earth. The FireSat system is a collaborative effort between Google Research, Muon Space, Earth Fire Alliance, Moore Foundation, and numerous other agencies, and it has a single, deceptively simple purpose: to detect wildfires before they become too hard to contain and control.

Wildfires have been a constant problem for agencies. Early detection is vital, but fires can often start in subtle ways; by the time anyone notices the growing blaze, it's too late to stop. Just take the wildfires in Los Angeles earlier this year as an example. Apps have been created to crowdsource fire detection, and the traditional method of watching for wildfires is through satellite imagery.

Read more