The web commenting system, Disqus has confirmed that email addresses, Disqus user names, sign-up dates, and last login dates in plain text 17.5 million e-mails were stolen in a hack going back to 2012, with some of the exposed user data goes back to 2007.
Disqus says it has forced reset of all passwords of affected users.
Specifically, at the end of 2012 we changed our password hashing algorithm from SHA1 to bcrypt.
[
blog.disqus.com...]