{"id":5132,"date":"2020-11-22T08:01:20","date_gmt":"2020-11-21T20:01:20","guid":{"rendered":"https:\/\/kinetics.co.nz\/?p=5132"},"modified":"2020-11-22T08:01:20","modified_gmt":"2020-11-21T20:01:20","slug":"urgent-security-warning-nitro-pdf","status":"publish","type":"post","link":"https:\/\/new.kinetics.co.nz\/?p=5132","title":{"rendered":"Urgent Security Warning \u2013 Nitro PDF"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; admin_label=&#8221;section&#8221; _builder_version=&#8221;3.22&#8243;][et_pb_row admin_label=&#8221;row&#8221; _builder_version=&#8221;3.25&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;3.25&#8243; custom_padding=&#8221;|||&#8221; custom_padding__hover=&#8221;|||&#8221;][et_pb_text admin_label=&#8221;Text&#8221; _builder_version=&#8221;4.9.1&#8243; background_size=&#8221;initial&#8221; background_position=&#8221;top_left&#8221; background_repeat=&#8221;repeat&#8221; hover_enabled=&#8221;0&#8243; sticky_enabled=&#8221;0&#8243;]<\/p>\n<p>CERT NZ have issued a warning about Nitro PDF.\u00a0 It\u2019s a common PDF tool that users log into to share documents.\u00a0<a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2020\/11\/Nitro-1.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignright size-full wp-image-5131\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2020\/11\/Nitro-1.png\" alt=\"\" width=\"167\" height=\"62\" \/><\/a><\/p>\n<h4><strong>Unfortunately, there are reports that hackers have breached their database<\/strong><\/h4>\n<p>We\u2019re being told that \u201c<em>Nitro PDF, a PDF enterprise document creation and sharing web application, has experienced a significant data breach. A person claiming to be in possession of this data has published 2.6 million email addresses and hashed passwords, including over 4,000 .nz email addresses. CERT NZ understands there has been further data released in this breach, the details are not yet confirmed. CERT NZ cannot verify the authenticity of this data.\u201d<\/em><\/p>\n<p>You can read the full report here\u00a0 : <a href=\"https:\/\/www.cert.govt.nz\/individuals\/alerts\/nitro-pdf-users-email-addresses-and-hashed-passwords-leaked\">Nitro PDF users\u2019 email addresses and hashed passwords leaked | CERT NZ<\/a><\/p>\n<p><strong>Interestingly, when I looked on the Nitro PDF website, I could find no reference to this event<\/strong><\/p>\n<p>We know a few clients have Nitro PDF in use. \u00a0\u00a0It tends to be something people have informally and we don\u2019t always know everyone with it.\u00a0 For clients on KARE, we are able to identify machines and we will be in touch where we see it in use to work with you.<\/p>\n<p>We note that CERT NZ recommend a password manager like <a href=\"http:\/\/kinetics.co.nz\/lock-em-up-and-throw-away-the-keys\/\">KARE Password Vault<\/a><\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CERT NZ have issued a warning about Nitro PDF.\u00a0 It\u2019s a common PDF tool that users log into to share documents.\u00a0 Unfortunately, there are reports that hackers have breached their database We\u2019re being told that \u201cNitro PDF, a PDF enterprise document creation and sharing web application, has experienced a significant data breach. A person claiming [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":5131,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"CERT NZ have issued a warning about Nitro PDF.\u00a0 It\u2019s a common PDF tool that users log into to share documents.\u00a0<a href=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2020\/11\/Nitro-1.png\"><img class=\"alignright size-full wp-image-5131\" src=\"http:\/\/kinetics.co.nz\/wp-content\/uploads\/2020\/11\/Nitro-1.png\" alt=\"\" width=\"167\" height=\"62\" \/><\/a>\n<h4><strong>Unfortunately, there are reports that hackers have breached their database<\/strong><\/h4>\nWe\u2019re being told that \u201c<em>Nitro PDF, a PDF enterprise document creation and sharing web application, has experienced a significant data breach. A person claiming to be in possession of this data has published 2.6 million email addresses and hashed passwords, including over 4,000 .nz email addresses. CERT NZ understands there has been further data released in this breach, the details are not yet confirmed. CERT NZ cannot verify the authenticity of this data.\u201d<\/em>\n\nYou can read the full report here\u00a0 :[wow_colorme] <a href=\"https:\/\/www.cert.govt.nz\/individuals\/alerts\/nitro-pdf-users-email-addresses-and-hashed-passwords-leaked\">Nitro PDF users\u2019 email addresses and hashed passwords leaked | CERT NZ<\/a>[\/wow_colorme]\n\n<strong>Interestingly, when I looked on the Nitro PDF website, I could find no reference to this event<\/strong>\n\nWe know a few clients have Nitro PDF in use. \u00a0\u00a0It tends to be something people have informally and we don\u2019t always know everyone with it.\u00a0 For clients on KARE, we are able to identify machines and we will be in touch where we see it in use to work with you.\n\nWe note that CERT NZ recommend a password manager like\u00a0\u00a0[wow_colorme]<a href=\"http:\/\/kinetics.co.nz\/lock-em-up-and-throw-away-the-keys\/\">KARE Password Vault[\/wow_colorme]<\/a>","_et_gb_content_width":"","footnotes":""},"categories":[4],"tags":[],"class_list":["post-5132","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/5132","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=5132"}],"version-history":[{"count":0,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/5132\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/"}],"wp:attachment":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=5132"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=5132"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=5132"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}