It seems that you're using an outdated browser. Some things may not work as they should (or don't work at all).
We suggest you upgrade newer and better browser like: Chrome, Firefox, Internet Explorer or Opera

×
Quote from an e-mail from Kickstarter:
On Wednesday night, law enforcement officials contacted Kickstarter and alerted us that hackers had sought and gained unauthorized access to some of our customers' data. Upon learning this, we immediately closed the security breach and began strengthening security measures throughout the Kickstarter system.

No credit card data of any kind was accessed by hackers. There is no evidence of unauthorized activity of any kind on your account.

While no credit card data was accessed, some information about our customers was. Accessed information included usernames, email addresses, mailing addresses, phone numbers, and encrypted passwords. Actual passwords were not revealed, however it is possible for a malicious person with enough computing power to guess and crack an encrypted password, particularly a weak or obvious one.

As a precaution, we strongly recommend that you change the password of your Kickstarter account, and other accounts where you use this password.

To change your password, log in to your account at Kickstarter.com and look for the banner at the top of the page to create a new, secure password. We recommend you do the same on other sites where you use this password. For additional help with password security, we recommend tools like 1Password and LastPass.

We’re incredibly sorry that this happened. We set a very high bar for how we serve our community, and this incident is frustrating and upsetting. We have since improved our security procedures and systems in numerous ways, and we will continue to do so in the weeks and months to come. We are working closely with law enforcement, and we are doing everything in our power to prevent this from happening again.

Kickstarter is a vibrant community like no other, and we can’t thank you enough for being a part of it. Please let us know if you have any questions, comments, or concerns. You can reach us at accountsecurity@kickstarter.com.

Thank you,

Yancey Strickler
Kickstarter CEO
So if you're on Kickstarter, you should change your password.
Had to log in to see the advice...not even an email of warning or nothing...very disappointed of kickstarter

Thanks for letting me know.
Thanks for the heads up. I have succesfully changed my password, but now the web logs me out on a random basis, when I click on a project or a section of KS. *shrugs*
avatar
rodrolliv: Thanks for the heads up. I have succesfully changed my password, but now the web logs me out on a random basis, when I click on a project or a section of KS. *shrugs*
It's happening to me too...
It seems to be fixed now.

By the by, official blog entry at KS: https://www.kickstarter.com/blog/1269
Great, now I'll be getting even more spam. Can't remember my KS password, but I'm pretty sure it was unique. Changed it as soon as I heard about the breach. Still annoying having my email address end up in the hands of those scum.
While it doesn't help the fact they handle their security poorly I will still recommend password managers because it's easy to track unique passwords so they can't access anything else if find one plus it's dead easy to change them, nothing new to remember too.
avatar
KingOfDust: Great, now I'll be getting even more spam. Can't remember my KS password, but I'm pretty sure it was unique. Changed it as soon as I heard about the breach. Still annoying having my email address end up in the hands of those scum.
When I start getting spam I just make a new email account and switch everything over. Which reminds me, I need to keep better track of every single account I have.
avatar
KingOfDust: Great, now I'll be getting even more spam. Can't remember my KS password, but I'm pretty sure it was unique. Changed it as soon as I heard about the breach. Still annoying having my email address end up in the hands of those scum.
avatar
JetGumRadio: When I start getting spam I just make a new email account and switch everything over. Which reminds me, I need to keep better track of every single account I have.
Password manager is the solution. They generate and save strong passwords. It also doubles as a account tracking database. Copy+paste the password means keyloggers can't get anything other than ctrl+c, ctrl+v. Strong passwords that are randomly generated means trying to hack accounts isn't worth the trouble.

Losing the database encryption key would be a sad, sad day. But adequate backups take care of that.
Luckily I use my FB to login there, but I changed the password just in case.
Got the warning message too.

Changed my password - business as usual i guess ;)
Hope they manage to track down the suckers behind this.
avatar
Solei: Hope they manage to track down the suckers behind this.
Yes, indeed. Can't even imagine the ugly thoughts that must have inspired this mean-spirited effort
Why does nobody seem to bother with server security until they get hit?
My brother just told me about this as I haven't received any email from them yet

Not happy considering they have more than enough money for security AND prompt emails
avatar
Darvond: Why does nobody seem to bother with server security until they get hit?
Because they're lying on their PCI DSS questionnaires cause actually doing what it really requires to keep data safe is expensive.