Weekly Update 475
作者本周主要处理Synthient威胁数据,涉及约20亿条记录的分析工作。这些数据对受害者影响重大但处理复杂昂贵。作者计划将部分数据整合到HIBP中,并探讨其上线可行性。同时提到Pwned Passwords月度查询量已超17亿次。 2025-10-25 21:32:46 Author: www.troyhunt.com(查看原文) 阅读量:8 收藏

It was the Synthient threat data that ate most of my time this week, and it continues to do so now, the weekend after recording this video. Data like this is equal parts enormously damaging to victims and frustratingly noisy to process. I have to be confident enough that it's new enough, legit enough and impactful enough to justify loading and that the value presented to breach victims sufficiently offsets the inevitable chorus of "what am I meant to do with this, tell me exactly what password was exposed for my record". It's an expensive exercise too; we're currently running an Azure SQL Hyperscale database at 80 cores to analyse the ~2 billion credential stuffing email addresses in this corpus. That's 2 billion unique email addresses too 😮 More on that in the next video, let's just work out if it's going to go live in the system first.

Listen on Apple Podcasts

Watch and Listen on YouTube

Download via RSS

References

  1. Sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSite
  2. We poured 183M email addresses from Synthient's threat data collection into HIBP (over 16M of those hadn't been seen by us before)
  3. We're now up to well over 17 billion monthly queries on Pwned Passwords (every month seems to add another billion... or so)
  4. I've had loads of good feedback on the PC build Gist (I've now sent that to a couple of local builders, I'll share the results)
Weekly update

文章来源: https://www.troyhunt.com/weekly-update-475/
如有侵权请联系:admin#unsafe.sh