Report: Ashley Madison Data Leak Was an Inside Job

Report: Ashley Madison Data Leak Was an Inside Job

LOS ANGELES — If Internet security expert John McAfee is correct, the much publicized data breach of adult affair site AshleyMadison.com was an inside job.

In an article for International Business Times, John McAfee claims that Ashley Madison was not hacked, but its most private data — including sensitive consumer information — was stolen by a female employee of parent company Avid Life Media, who was working on her own.

McAfee has been analyzing the 40GB data dump, and determined that it was the result of a lone wolf attacker with intimate access to the company’s systems.

“A hacker is someone who uses a combination of high-tech cybertools and social engineering to gain illicit access to someone else’s data,” McAfee wrote. “But this job was done by someone who already had the keys to the Kingdom. It was an inside job.”

“Any adept social engineer would have easily seen this from the wording in the first manifesto published by the alleged hacking group,” McAfee added. “I was one of the first practitioners of social engineering as a hacking technique and today it is my only tool of use, aside from a smartphone — in a purely white hat sort of way.”

In his article, McAfee outlines the processes he used to make his assertions, and discusses the type of information he was able to glean from the data dumps, including the decoded password hash tables of every company employee, MySQL databases, office layouts, organization charts and every private email to and from the CEO — even the raw source code for all the company’s programs.

There was so much information in the breach, garnered from multiple systems, and with so much of it having no value to outside organizations, that it convinced McAfee that the breach was an inside job.

“These are just a few of the many strangely included files that would take even a top notch hacker years to gather, and seem to have little or no value,” McAfee explains. “Any reasonable cybersecurity expert would come to the conclusion that only someone on the inside, who could easily gain all of the files through deception and guile, could have done the job.”

As for those high-level emails, Krebs on Security is reporting that contained within in them are revelations that a former Ashley Madison exec had hacked a competitor’s website — grabbing its full user database.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Toni Ribas on Porn, Passion and the Essential Perv Factor

Toni Ribas is practicing his swing.  “I always thought golf was for old people, but I guess I’m there,” jokes the veteran performer, who recently turned 50.

X3 Amsterdam Imports Hollywood Glitz With Continental Style

A throng of fans from across Europe and around the globe descended on the Passenger Terminal building on Friday, eager to meet their favorite adult stars at the inaugural X3 Amsterdam fan expo.

California, Florida Reps File Latest Bill to Repeal Section 230

Two members of Congress on Thursday introduced new legislation to repeal Section 230 of the Communications Decency Act, which protects interactive computer services — including adult platforms — from liability for user-generated content.

Admaze Introduces Flat-Rate Media Buying for Publishers, Advertisers

Adult ad network and agency Admaze has introduced a flat-rate media buying model for publishers and advertisers.

Centro Launches Lifetime Revenue Share Affiliate Program 'CentroPulse'

Centro has launched CentroPulse, its new lifetime revenue share affiliate program for performance marketers, adult traffic affiliates, established webmasters, and sub-affiliate network operators.

Fanstage Launches Telegram Sales Solution

Fanstage has launched its new platform, allowing creators to sell PPV content directly from their Telegram DMs.

Second Bill Proposed to Shield US Sites From 'Foreign Censorship'

For the second time in recent weeks, a Republican congressman has introduced legislation to bar U.S. courts from helping to enforce foreign laws restricting speech that would domestically be protected under the First Amendment, potentially including foreign age verification laws.

SextPanther Launches in EU, UK

SextPanther has expanded its territory to include the U.K. and E.U.

Segpay Expands to Australia, Names Sam O'Connell Managing Director

Segpay has expanded its territory to include Australia and named Sam O’Connell as managing director of its Australian operation.

Ondato Joins ASACP as Corporate Sponsor

Age and identity verification company Ondato has signed on as the latest corporate sponsor for Association of Sites Advocating Child Protection (ASACP).

Show More