des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google<\/title>\n<meta name=\"description\" content=\"Les hackers utilis\u00e9s des sites Wordpress pour stocker les donn\u00e9es vol\u00e9es, qui \u00e9taient donc accessibles par une simple recherche Google.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google\" \/>\n<meta property=\"og:description\" content=\"Les hackers utilis\u00e9s des sites Wordpress pour stocker les donn\u00e9es vol\u00e9es, qui \u00e9taient donc accessibles par une simple recherche Google.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html\" \/>\n<meta property=\"og:site_name\" content=\"PhonAndroid\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/phonandroid\" \/>\n<meta property=\"article:published_time\" content=\"2021-01-22T11:20:43+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/wp-pa.phonandroid.com\/uploads\/2021\/01\/hackers-mdp-sur-google.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"750\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Simon Aunai\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@phonandroid\" \/>\n<meta name=\"twitter:site\" content=\"@phonandroid\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Simon Aunai\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html\"},\"author\":{\"name\":\"Simon Aunai\",\"@id\":\"https:\/\/www.phonandroid.com\/#\/schema\/person\/1817d4f2934cea4d42df813462f762d6\"},\"headline\":\"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google\",\"datePublished\":\"2021-01-22T11:20:43+00:00\",\"dateModified\":\"2021-01-22T11:20:43+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html\"},\"wordCount\":466,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/www.phonandroid.com\/#organization\"},\"articleSection\":[\"S\u00e9curit\u00e9\"],\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html#respond\"]}],\"copyrightYear\":\"2021\",\"copyrightHolder\":{\"@id\":\"https:\/\/www.phonandroid.com\/#organization\"}},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html\",\"url\":\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html\",\"name\":\"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google\",\"isPartOf\":{\"@id\":\"https:\/\/www.phonandroid.com\/#website\"},\"datePublished\":\"2021-01-22T11:20:43+00:00\",\"dateModified\":\"2021-01-22T11:20:43+00:00\",\"description\":\"Les hackers utilis\u00e9s des sites Wordpress pour stocker les donn\u00e9es vol\u00e9es, qui \u00e9taient donc accessibles par une simple recherche Google.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Accueil\",\"item\":\"https:\/\/www.phonandroid.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.phonandroid.com\/#website\",\"url\":\"https:\/\/www.phonandroid.com\/\",\"name\":\"PhonAndroid\",\"description\":\"PhonAndroid\",\"publisher\":{\"@id\":\"https:\/\/www.phonandroid.com\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.phonandroid.com\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.phonandroid.com\/#organization\",\"name\":\"PhonAndroid\",\"url\":\"https:\/\/www.phonandroid.com\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\/\/www.phonandroid.com\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.phonandroid.com\/wp-content\/themes\/phonadroid-v3\/assets\/images\/lg-phonandroid-amp-4.png\",\"contentUrl\":\"https:\/\/img.phonandroid.com\/2023\/06\/dark.png\",\"width\":280,\"height\":60,\"caption\":\"PhonAndroid\"},\"image\":{\"@id\":\"https:\/\/www.phonandroid.com\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/phonandroid\",\"https:\/\/twitter.com\/phonandroid\",\"https:\/\/www.youtube.com\/user\/Phonandroidtv\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.phonandroid.com\/#\/schema\/person\/1817d4f2934cea4d42df813462f762d6\",\"name\":\"Simon Aunai\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\/\/www.phonandroid.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/75ac3f01e098af007a06ba9b1f972a05?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/75ac3f01e098af007a06ba9b1f972a05?s=96&d=mm&r=g\",\"caption\":\"Simon Aunai\"},\"description\":\"Originaire du monde la pub, j'ai d\u00e9cid\u00e9 de quitter mon ancien job pour retrouver l'esprit du petit geek \/ romancier de SF en herbe que j'\u00e9tais \u00e0 12 ans. Depuis que je passe mes journ\u00e9es \u00e0 \u00e9crire sur les nouvelles technologies et la pop culture sur Phonandroid, ce petit geek a s\u00fbrement h\u00e2te de grandir.\",\"url\":\"https:\/\/www.phonandroid.com\/author\/simon\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google","description":"Les hackers utilis\u00e9s des sites Wordpress pour stocker les donn\u00e9es vol\u00e9es, qui \u00e9taient donc accessibles par une simple recherche Google.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html","og_locale":"fr_FR","og_type":"article","og_title":"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google","og_description":"Les hackers utilis\u00e9s des sites Wordpress pour stocker les donn\u00e9es vol\u00e9es, qui \u00e9taient donc accessibles par une simple recherche Google.","og_url":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html","og_site_name":"PhonAndroid","article_publisher":"https:\/\/www.facebook.com\/phonandroid","article_published_time":"2021-01-22T11:20:43+00:00","og_image":[{"width":1200,"height":750,"url":"https:\/\/wp-pa.phonandroid.com\/uploads\/2021\/01\/hackers-mdp-sur-google.jpg","type":"image\/jpeg"}],"author":"Simon Aunai","twitter_card":"summary_large_image","twitter_creator":"@phonandroid","twitter_site":"@phonandroid","twitter_misc":{"Written by":"Simon Aunai","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html#article","isPartOf":{"@id":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html"},"author":{"name":"Simon Aunai","@id":"https:\/\/www.phonandroid.com\/#\/schema\/person\/1817d4f2934cea4d42df813462f762d6"},"headline":"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google","datePublished":"2021-01-22T11:20:43+00:00","dateModified":"2021-01-22T11:20:43+00:00","mainEntityOfPage":{"@id":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html"},"wordCount":466,"commentCount":0,"publisher":{"@id":"https:\/\/www.phonandroid.com\/#organization"},"articleSection":["S\u00e9curit\u00e9"],"inLanguage":"fr-FR","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html#respond"]}],"copyrightYear":"2021","copyrightHolder":{"@id":"https:\/\/www.phonandroid.com\/#organization"}},{"@type":"WebPage","@id":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html","url":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html","name":"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google","isPartOf":{"@id":"https:\/\/www.phonandroid.com\/#website"},"datePublished":"2021-01-22T11:20:43+00:00","dateModified":"2021-01-22T11:20:43+00:00","description":"Les hackers utilis\u00e9s des sites Wordpress pour stocker les donn\u00e9es vol\u00e9es, qui \u00e9taient donc accessibles par une simple recherche Google.","breadcrumb":{"@id":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Accueil","item":"https:\/\/www.phonandroid.com\/"},{"@type":"ListItem","position":2,"name":"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google"}]},{"@type":"WebSite","@id":"https:\/\/www.phonandroid.com\/#website","url":"https:\/\/www.phonandroid.com\/","name":"PhonAndroid","description":"PhonAndroid","publisher":{"@id":"https:\/\/www.phonandroid.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.phonandroid.com\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"fr-FR"},{"@type":"Organization","@id":"https:\/\/www.phonandroid.com\/#organization","name":"PhonAndroid","url":"https:\/\/www.phonandroid.com\/","logo":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/www.phonandroid.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.phonandroid.com\/wp-content\/themes\/phonadroid-v3\/assets\/images\/lg-phonandroid-amp-4.png","contentUrl":"https:\/\/img.phonandroid.com\/2023\/06\/dark.png","width":280,"height":60,"caption":"PhonAndroid"},"image":{"@id":"https:\/\/www.phonandroid.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/phonandroid","https:\/\/twitter.com\/phonandroid","https:\/\/www.youtube.com\/user\/Phonandroidtv"]},{"@type":"Person","@id":"https:\/\/www.phonandroid.com\/#\/schema\/person\/1817d4f2934cea4d42df813462f762d6","name":"Simon Aunai","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/www.phonandroid.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/75ac3f01e098af007a06ba9b1f972a05?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/75ac3f01e098af007a06ba9b1f972a05?s=96&d=mm&r=g","caption":"Simon Aunai"},"description":"Originaire du monde la pub, j'ai d\u00e9cid\u00e9 de quitter mon ancien job pour retrouver l'esprit du petit geek \/ romancier de SF en herbe que j'\u00e9tais \u00e0 12 ans. Depuis que je passe mes journ\u00e9es \u00e0 \u00e9crire sur les nouvelles technologies et la pop culture sur Phonandroid, ce petit geek a s\u00fbrement h\u00e2te de grandir.","url":"https:\/\/www.phonandroid.com\/author\/simon"}]}},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/posts\/2350410","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/users\/118"}],"replies":[{"embeddable":true,"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/comments?post=2350410"}],"version-history":[{"count":16,"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/posts\/2350410\/revisions"}],"predecessor-version":[{"id":2350429,"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/posts\/2350410\/revisions\/2350429"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/media\/2350414"}],"wp:attachment":[{"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/media?parent=2350410"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/categories?post=2350410"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.phonandroid.com\/wp-json\/wp\/v2\/tags?post=2350410"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}

{"id":2350410,"date":"2021-01-22T12:20:43","date_gmt":"2021-01-22T11:20:43","guid":{"rendered":"https:\/\/www.phonandroid.com\/?p=2350410"},"modified":"2021-01-22T12:20:43","modified_gmt":"2021-01-22T11:20:43","slug":"phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google","status":"publish","type":"post","link":"https:\/\/www.phonandroid.com\/phishing-des-milliers-de-mots-de-passe-voles-apparaissent-en-clair-sur-google.html","title":{"rendered":"Phishing : des milliers de mots de passe vol\u00e9s apparaissent en clair sur Google"},"content":{"rendered":"

Une campagne de phishing a r\u00e9v\u00e9l\u00e9 publiquement des milliers de mots de passe vol\u00e9s \u00e0 des entreprises des secteurs de la construction et de l'\u00e9nergie. Les hackers ont utilis\u00e9 des sites WordPress pour h\u00e9berger les donn\u00e9es subtilis\u00e9es. Celles-ci se sont alors retrouv\u00e9es index\u00e9es par Google, les rendant donc accessibles par n'importe qui.<\/strong><\/p>\n

\"hacking\"
Cr\u00e9dits : Pixabay<\/figcaption><\/figure>\n

Alors que Google d\u00e9tecte plus de 18 millions de malware et mails de phishing par jour<\/a>, il peut arriver que la plateforme indexe elle-m\u00eame des fichiers comprenant des donn\u00e9es vol\u00e9es<\/strong>. C'est en effet ce qu'il s'est pass\u00e9 apr\u00e8s une campagne de phishing massive, dont plusieurs entreprises des secteurs de la construction et de l'\u00e9nergie ont \u00e9t\u00e9 victimes. Les donn\u00e9es vol\u00e9es ont \u00e9t\u00e9 rendues publiques<\/strong>, et donc disponibles par n'importe qui via une simple requ\u00eate sur le moteur de recherche<\/strong>.<\/p>\n

Pour envoyer leur mail frauduleux, les hackers ont utilis\u00e9 un serveur Linux h\u00e9berg\u00e9 sur Microsoft Azure ainsi que des adresses mail pirat\u00e9es pour \u00e9touffer les suspicions. Un fichier HTML \u00e9tait joint dans le message, dans lequel \u00e9tait inclus un code Javascript. C'est ce dernier qui r\u00e9cup\u00e9rait les informations de la victime, avant de la renvoyer vers une page de connexion classique. “Bien que cette attaque peut para\u00eetre simple, elle a r\u00e9ussi […] \u00e0 voler les identifiants de plus d'un millier d'employ\u00e9s”<\/em>, souligne Check Point, qui a r\u00e9v\u00e9l\u00e9 l'affaire.<\/p>\n