As reported by the Lower Silesian Provincial Police Headquarters in Wrocław:

In recent days, an escalation of data leaks has been observed—involving logins and passwords linked to Polish services. It is worth visiting https://bezpiecznedane.gov.pl—the search engine is available after logging in to the website via Trusted Profile—and checking whether our data has also been affected by the leak.

The officers add:

The data concerns user accounts of nine services, including Facebook, Allegro, mBank, ING Bank Śląski, poczta.onet.pl, poczta.wp.pl and the government platform gov.pl.

They also remind us:

  • The first step that should be taken is to proactively change the passwords for the websites we use where our payment card details are stored. Let’s create a password that is not a dictionary word, but is complex and impossible for people who know us to guess.
  • If we encounter any problems while using payment cards, we should not simply ignore them. Such situations may be caused by various factors, but we must always remain vigilant, as fraud may also have occurred. In such a case, contact the bank or financial institution that issued the card to clarify the matter as quickly as possible.
  • It is also worth checking recent money transfers and our account balance, monitoring bank statements and reviewing transactions. We must also beware of scam attacks, i.e. malicious messages used to obtain data fraudulently. They will become more likely as a consequence of millions of logins and passwords linked to Polish online services and internet accounts being leaked onto the web.
  • If your email address or phone number has been leaked online, criminals will try to take advantage of the opportunity to successfully lure a victim into disclosing their data, while impersonating trusted institutions or online services.
  • Let’s remember never to provide confidential personal data, such as a credit card number or passwords, under any circumstances. Do not click suspicious links or respond to suspicious requests; do not open attachments, especially if they are sent via email or social media platforms.
  • In response to the data leak, a special website has been launched to check whether our data has also been affected. It is worth visiting https://bezpiecznedane.gov.pl. The search engine is available after logging in to the website via Trusted Profile.

How to protect your cybersecurity?

If our data is safe, let’s remember these universal recommendations, which will help us remain safe online:

  • Let’s change the passwords we use, especially when logging in to stores or email.
  • Let’s choose trusted online stores that have good reviews and are known for secure online transactions.
  • Let’s avoid unknown or suspicious websites, especially those that do not inspire trust.
  • Let’s avoid suspicious, implausibly attractive offers and promotions. If an offer seems too good to be true, there is a high risk that it is an attempted fraud aimed at obtaining money and data.
  • Let’s avoid sending card information by email or through unsecured and suspicious forms. If you use online services, remember to keep your antivirus software up to date.
  • Two-factor authentication for the services we use remains the foundation of security. It is worth using 2FA when logging in to services wherever possible.