Monday, February 10, 2025
HomeSecurity NewsPassProtect - Google Chrome Plugin Tell You If your Password has Been...

PassProtect – Google Chrome Plugin Tell You If your Password has Been Breached

Published on

SIEM as a Service

Follow Us on Google News

A new free Chrome extension “PassProtect” to check in real-time whether you have been using already a breached password in the past.

It quickly checks your password with Have I Been Pwned that contains hundreds of millions of leaked accounts. If your password found in the list, then it shows “unsafe password detected” and the password is found in the 68,340 data breaches.

Okta introduced the new Chrome plugin powered by the HaveIBeenPwned database ” PassProtect quickly alerts users of possible “riskier” passwords so they can take action immediately and without compromising privacy.”

PassProtect

To check the password with Have I Been Pwned API PassProtect using k-anonymity communication protocol that ensures that your passwords are never seen, stored, or sent over the network during this checking process.

PassProtect is published under the MIT license so developers can integrate directly to the website or the app, it is available only for Chrome now and will be soon to Firefox.

Here is the list of worst passwords used in 2017 that extracted by SplashData from Five million passwords leaked.

PassProtect

Last year many of critical data breaches have been reported and many of organization lost million of sensitive data’s and millions of customer passwords that have been stored even in plain text.

Targeted attacks are becoming more frequent, and more successful, and this poses a serious challenge for security administrators everywhere.

With haveibeenpwned you can check that your account has been compromised in the largest breaches.

PassProtect

It was launched by Hunt to help organizations avoid using passwords that have previously appeared in a data breach or have been otherwise compromised in the past.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Tor Browser 14.0.6 Released, What’s New!

The Tor Project has officially unveiled Tor Browser 14.0.6, now accessible for download from the...

Hackers Exploit AnyDesk Vulnerability to Gain Admin Access – PoC Released

A newly discovered vulnerability in AnyDesk, the popular remote desktop software, has sparked serious...

UK Pressures Apple to Create Global Backdoor To Spy on Encrypted iCloud Access

United Kingdom has reportedly ordered Apple to create a backdoor allowing access to all...

Autonomous LLMs Reshaping Pen Testing: Real-World AD Breaches and the Future of Cybersecurity

Large Language Models (LLMs) are transforming penetration testing (pen testing), leveraging their advanced reasoning...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

New FUD Malware Targets MacOS, Evading Antivirus and Security Tools

A new strain of Fully Undetectable (FUD) macOS malware, dubbed "Tiny FUD," has emerged,...

Google Blocks 2.28 Million Malicious Apps from Play Store in Security Crackdown

In a continued commitment to enhancing user safety and trust, Google has outlined significant...

Hackers Exploiting DNS Poisoning to Compromise Active Directory Environments

A groundbreaking technique for Kerberos relaying over HTTP, leveraging multicast poisoning, has been recently...