Hackers Attack 20 Million Accounts on Alibaba's Taobao Shopping Site

Advertisement
By Reuters | Updated: 4 February 2016 17:00 IST
Hackers in China attempted to access over 20 million active accounts on Alibaba Group Holding Ltd's Taobao e-commerce website using Alibaba's own cloud computing service, according to a state media report posted on the Internet regulator's website.

Analysts said the report from The Paper led to the price of Alibaba's U.S.-listed shares falling as much as 3.7 percent in late Wednesday trade.

An Alibaba spokesman on Thursday said the company detected the attack in "the first instance", reminded users to change passwords, and worked closely with the police investigation.

Advertisement

Chinese companies are grappling a sharp rise in the number of cyber-attacks, and cyber-security experts say firms have a long way to go before defences catch up to US counterparts.

In the latest case, hackers obtained a database of 99 million usernames and passwords from a number of websites, according to a separate report on a website managed by the Ministry of Public Security.

Advertisement

The hackers then used Alibaba's cloud computing platform to input the details into Taobao. Of the 99 million usernames, they found 20.59 million were also being used for Taobao accounts, the ministry website said.

The hackers started inputting the details into Taobao in mid-October and were discovered in November, at which time Alibaba immediately reported the case to police, the ministry website said. The hackers have since been caught, it said.

Advertisement

Alibaba's systems discovered and blocked the vast majority of log-in attempts, according to the ministry website.

The hackers used compromised accounts to fake orders on Taobao, a practice known as "brushing" in China and used to raise sellers' rankings, the newspaper said. The hackers also sold accounts to be used for fraud, it said.

Advertisement

Alibaba's spokesman said the hackers rented the cloud computing service, but declined to comment on security measures designed to stop the system being used for the attack. He said they could have used any such service, and that the attack was not aided by any possible loopholes in Alibaba's platform.

"Alibaba's system was never breached," the spokesman said.

The number of accounts, 20.59 million, represents about 1 out of every 20 annual active buyers on Alibaba's China retail marketplaces.

© Thomson Reuters 2016

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Here's How Much the Vivo Y21 5G, Vivo Y11 5G Could Cost in India
  2. Toaster OTT Release: When and Where to Watch Rajkummar Rao's Comedy Thriller
  3. Samsung Galaxy S25 Ultra Reportedly Gets a Price Cut in India
  4. Realme 16 5G Will Finally Launch in India Soon, Tipster Claims
  1. Samathi Sakatham Now Available for Streaming Online: What You Need to Know
  2. The Taj Story Out on OTT: Know Where to Watch This Intense Courtroom Drama Online
  3. NASA Astronauts Complete 7-Hour Spacewalk to Prepare ISS Power System Upgrade
  4. Samsung Reportedly Plans to Introduce AirDrop Support on Galaxy S26 Series Later This Year
  5. Vivo Y21 5G, Vivo Y11 5G Price in India and Colourways Leaked a Month After Global Launch
  6. Toaster OTT Release: When and Where to Watch Rajkummar Rao’s Comedy Thriller
  7. FBI Warns Tron Blockchain Users of Phishing Attack Using Fake Tokens Impersonating the Agency
  8. Amazon Said to Be Working on New Smartphone Equipped With Alexa Assistant and AI Features
  9. Border 2 Now Streaming Online: Where to Watch Sunny Deol, Varun Dhawan Starrer Movie Online?
  10. Mad For Each Other Now Streaming Online: What You Need to Know About Platform, Cast, and More
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.