Larimer County Genealogical Society

What to Do If You’re Concerned About the 23andMe Breach

You may be interested in an article by Thorin Klosowski published in the Electronic Frontier Foundation’s web site:

In early October, a bad actor claimed they were selling account details from the genetic testing service, 23andMe, which included alleged data of one million users of Ashkenazi Jewish descent and another 100,000 users of Chinese descent. By mid-October this expanded out to another four million more general accounts. The data includes display name, birth year, sex, and some details about genetic ancestry results, but no genetic data. There’s nothing you can do if your data was already accessed, but it’s a good time to reconsider how you’re using the service to begin with. 

What Happened

In a blog post, 23andMe claims the bad actors accessed the accounts through “credential stuffing:” the practice of using one set of leaked usernames and passwords from a previous data breach on another website in hopes that people have reused passwords. 

If your data is included in this stolen data set, there’s not much you can do to get your data back, nor is there a way to search through it to see if your information is included. But you should log into your 23andMe account to make some changes to your security and privacy settings to protect against any issues in the future. 

You can read the full article at: https://www.eff.org/deeplinks/2023/10/what-do-if-youre-concerned-about-23andme-breach