Panasonic is attacked by 4.6 million attacks and unauthorized access to approximately 78,000 personal information such as name, address, telephone number etc.



Name, address, telephone number, gender, date of birth, login ID, mail address, nickname, if registered by yourself, e-mail address for mobile phone · occupation · occupation · family structure · co-work situation · interested category Was found to have been illegally browsed at Panasonic's member website "CLUB Panasonic".

Notice on invalid login to 'CLUB Panasonic' and password change request
http://club.panasonic.jp/maintenance/index20140423_1.html


As for the damage situation, a total of more than 4.6 million attacks were done on Panasonic member website, of which 83,861 were hit, and there is a high possibility that the information was illegally browsed. Panasonic assumes that this 4.6 million attacks are not randomized, "It is highly likely that you are using many ID / passwords that leaked out from other companies' services," probably somewhere in the past It seems that an attack that tried mechanical list of ID and password leaked from web service etc. from one end was done.

The period during which the attacks were held is March 23 - April 21, 2014, and Panasonic has already taken measures to prevent users from logging in to the corresponding 83,861 entries, and the following users The subject mail is delivered,Change PasswordIt seems they are urging us.

Subject line: 【Important: CLUB Panasonic】 Request for change of password and report of incorrect login
Distributor address: [email protected]


As a measure to prevent recurrence, we are implementing the following specific measures.

· Additional image recognition function added to prevent mechanical login request
· Remind attention from the website on the following items from the viewpoint of preventing unauthorized login
1. Do not use passwords used by other services
2. Periodically change your password and do not use anything you used in the past
3. Do not use passwords easily guessed by third parties


· 2014/04/24 16:26 postscript
From Panasonic, users who are not applicable have received the following e-mail.

┏ ┏ ┏ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━ ━
Important 정보 [Important information]
┏┏ ┛
□ Request to cooperate with report on occurrence of illegal login and countermeasure
┛┛┛
━━━━━━━━━━━━━━━━━━━━━━━━━━━━
April 24, 2014
http://club.panasonic.jp/

Thank you for your continued patronage of CLUB Panasonic.

The ID and password which a third party previously acquired from another site etc.
It seems that set list was used, illegal login to CLUB Panasonic
It was confirmed that damage occurred.

━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━
The customer who sent this mail was confirmed on April 21, 2014
It is not subject to the damage of the above illegal login.
━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━

For PC
http://cc.club.panasonic.jp/c/tl?i=【各ユーザーごとに生成された文字列】
For smartphones
http://cc.club.panasonic.jp/c/tl?i=【各ユーザーごとに生成された文字列】

Some IDs used for invalid login attempts are used by CLUB Panasonic
Because it contains many unauthorized things, it leaked from other company's services
I received a password list attack (*) using many ID / passwords
It is assumed that there is a high possibility.

For this reason, we have not confirmed unauthorized login
Let me ask all our customers to cooperate with countermeasures against unauthorized login
We decided to get it.


■ □ ------------------------------------------------ -------------- □ ■
Measures against unauthorized login
■ □ ------------------------------------------------ -------------- □ ■

Currently, at CLUB Panasonic, to an account that may have been illegally logged in
On the other hand, we have taken steps to prevent login and reset password
We ask individually.

Even if you are not covered by the subject, in order to protect your information, password
Please strictly manage. Especially the same password as other company's service
We strongly recommend you to change if you use.
Change / reset to password from here
For PC
http://cc.club.panasonic.jp/c/tl?i=【各ユーザーごとに生成された文字列】
For smartphones
http://cc.club.panasonic.jp/c/tl?i=【各ユーザーごとに生成された文字列】

Strong password example
· Long text password (You can set up to 8 to 16 letters)
· Passwords not used by other services
· Passwords you have never used before
· Passwords hard to guess by others


■ □ ------------------------------------------------ -------------- □ ■
What is password list attack (*)
■ □ ------------------------------------------------ -------------- □ ■

In recent years, the number of illegal access cases aimed at password authentication of Web sites has increased sharply
is. Information-technology Promotion Agency (IPA), an independent administrative agency,
"Password list attack is an attack by a malicious person in advance in some way
Use the obtained ID and password list and automatically input it continuously
By entering these IDs and passwords using programs etc.,
It is a method of trying to log in to the website. "
Explain, "Different passwords on all Internet services!"
I am calling it.

Detail is,
http://cc.club.panasonic.jp/c/tl?i=【各ユーザーごとに生成された文字列】
Please refer to.
※ Transit to the IPA site.


■ □ ------------------------------------------------ -------------- □ ■
Inquiries window on this matter
■ □ ------------------------------------------------ -------------- □ ■

CLUB Panasonic Secretariat
For PC
http://cc.club.panasonic.jp/c/tl?i=【各ユーザーごとに生成された文字列】
For smartphones
http://cc.club.panasonic.jp/c/tl?i=【各ユーザーごとに生成された文字列】
mail address
[email protected]


━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━
Publication: Panasonic Corporation CLUB Panasonic Office
1 - 3 - 1 Uchisaiwaicho, Chiyoda - ku, Tokyo
URL: http://club.panasonic.jp/
━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━
Copyright (c) 2014 Panasonic Corporation

in Note, Posted by darkhorse