Gawker is in the process of emailing its users about the compromise.
kommons.com
kommons.com
If Gawker needs help, they can let us know. We finished updating their users ~ 10 hours ago.
http://thenextweb.com/media/2010/12/13/digital-good-samarita...
"Nice Job" hint.io.
It ended up in everyone's spam folders for a reason.
Knowing that we've saved tons of people's accounts from being vulnerable while Gawker sat back and did nothing is what I would call a nice job.
Cheers,
Dru
"We are in the process of sending out emails to all ~1.5m users affected. Unfortunately, sending out that many emails is not a simple process."
I think MailChimp/Campaign Monitor/SendGrind should be able to handle a 1.5M volume quite nicely.
Sending a large amount of email to a well established list can actually help your reputation, since the ISPs see that you send large numbers of emails that don't get reported as span -- that makes the (hopefully) few that do not affect your reputation as much.
FWIW, my password reset email was sent via Gawker side-project kinja.com. Curious.
If there weren't a nugget of truth in this, this phrase from the email would actually be hilarious:
"We HIGHLY recommend you change all of your online passwords as a precaution."
Thankfully my Gawker password was limited to a few sites of no worth and you can't deduce any of my other ones form it.
There's a little bit of scaremongering in that sentence though. Why change your other passwords, UNLESS your Gawker password was your email password too? After 19 years on the Internet, I have a lot of logins.
OpenID ain't looking too bad now, is it?
What a weird world we live in.
It would seem to be possible for Gawker to notify their users more quickly.
and really, your actions kinda put a lie to gawker's sloth, so extra props for that.
The links in their "Your account has been compromised" lead me to a login page for the beta site, which of course I don't have an account for.
Very odd to advertise for a site which then the "users" can't use.