GoDaddy hack impacting 1.2 million of their customers

GoDaddy announced yesterday that the data of up to 1.2 million of its customers was exposed, due to hackers gaining access to its Managed WordPress hosting service.
GoDaddy is one of the world’s largest domain registrars and a web hosting company providing services to more than 20 million customers worldwide. The breach was discovered by GoDaddy on 17 November, but the hackers had access since at least 6 September.
Demetrius Comes, GoDaddy’s Chief Information Security Officer, said: “Using a compromised password, an unauthorized third party accessed the provisioning system in our legacy code base for Managed WordPress. Our investigation is ongoing and we are contacting all impacted customers directly with specific details.”
We use GoDaddy for domain registration only, and have never recommended their hosting services due to multiple security and performance issues. If you are a GoDaddy customer using WordPress hosting services with them, we recommend you change all passwords and conduct a security audit immediately.