Security Notice from Epik
Hello,
We are contacting you to notify you of an urgent security notice. Despite the extensive security practices we use to protect our platforms and customer information, we have confirmed an unauthorized intrusion into some of our domain-related systems.
We have mobilized the full force of multiple cyber security teams to assess the scope of this intrusion. We are taking aggressive action to completely secure and remediate all potentially affected systems, while complying with all applicable laws. As we work to confirm all related details, we are taking an approach toward maximum caution and urging customers to remain alert for any unusual activity they may observe regarding their information used for our services – this may include payment information including credit card numbers, registered names, usernames, emails, and passwords.
At this time, we have not confirmed that your card information has been compromised. As a precautionary measure, you may choose to contact any credit card companies that you used to transact with Epik and notify them of a potential data compromise to discuss your options with them directly. Should you observe any unauthorized activity, please document and report it immediately.
We are notifying you because we consider your privacy and security our single greatest priority. Our mission to provide legendary service to all customers remains unchanged. We appreciate your support as we work through the full resolution of this situation, and we will continue to provide you with ongoing updates as we learn more.
Thank you,
Epik Security Team
Comments
“extensive security practices” for them meant md5 hashing… Lol, what fools.
you mean plaintext
Free NAT KVM | Free NAT LXC
The funny thing on their about page it says "Epik has a long-standing reputation for protecting the registrant. " also claims to be "Swiss Bank of Domains" but can't even implement basic login security by hashing the passwords, sure some might be hashed md5 no one in their right mind use that nowadays.
https://haveibeenpwned.com/PwnedWebsites#Epik
firefox monitor sent a data breach notice for this issue.