Update regarding the recent hackings

Discussion in 'Sythe.Org News' started by n4n0, Apr 22, 2012.

Thread Status:
Not open for further replies.
Update regarding the recent hackings
  1. Unread #61 - Apr 24, 2012 at 4:15 AM
  2. trustedornot
    Joined:
    Apr 24, 2012
    Posts:
    1
    Referrals:
    0
    Sythe Gold:
    0

    trustedornot Newcomer

    Update regarding the recent hackings

    Iknow this from a trusted source of HF and heres the story a microsoft application was compromised leading to some hotmails / live emails getting hacked those were the only two kind of emails that were able to get hacked anybody else who claims they have been hacked lies. well not everyone but the hacker only took hotmails and lives since the application didnt have nothing to do with yahoo / gmail etc. well i can confirm that your database hasnt been leaked and that this were simple microsofts fault and that the source told me that this has been fixed and therefor there shouldnt be anymore hacked accounts again. alittle reminder dont post your msn in your signature / in posts that was prob how he got your emails. as said above dont feel like getting hacked? = dont use hotmail! simple as that :) hotmail sucks in everyway gmail or yahoo should keep u safe

    i cant say how exactly this was done. but it had something to do with microsoft forgot to secure a certain breakpoint in the application so all u had to do was write "command" <-- thats not the command but a certain command to the person after youve added them on msn u write a command to them they cant see it but it sends a string / hash or so to the "sender" = sending them your actual password when he then got your password as a hash all he had to do was decrypt it so yeah microsoft fails again.
     
  3. Unread #62 - Apr 24, 2012 at 4:34 AM
  4. just un dude
    Joined:
    May 27, 2005
    Posts:
    5,331
    Referrals:
    5
    Sythe Gold:
    2

    just un dude Hero
    Do Not Trade

    Update regarding the recent hackings

    The method intercepted the password reset link that is supposed to be sent to your alternate e-mail account, they never got your actual password.
     
  5. Unread #63 - Apr 24, 2012 at 10:18 AM
  6. Verts
    Joined:
    Aug 23, 2007
    Posts:
    5,420
    Referrals:
    8
    Sythe Gold:
    32
    Discord Unique ID:
    265793039971123200
    Discord Username:
    verts#0001
    Lumpy Space Princess Le Pokémon Trainer Two Factor Authentication User

    Verts bleep bloop
    Crabby Retired Administrator

    Update regarding the recent hackings

    Regardless, if there was a database leaked with Kevin's information in there then it's one we didn't know about.
     
  7. Unread #64 - Apr 24, 2012 at 4:33 PM
  8. T R 1 B A L
    Joined:
    Jun 27, 2007
    Posts:
    2,726
    Referrals:
    1
    Sythe Gold:
    0

    T R 1 B A L Grand Master
    Retired Sectional Moderator

    Update regarding the recent hackings

    True say, forgot to check his join date, apologies.
    Bearing in mind that it's encrypted with standard md5 (i'm presuming), and nobody has simple 1 word passwords (maybe an announcement about password strength would be advisable), surely there's more chance that the password was obtained via phishing, or another illicit method?

    I really hope that kevin's keylogged (or was phished), rather than the Sythe database being spread around the internet - god knows how many inactive accounts still hang around in the database.
     
  9. Unread #65 - Apr 24, 2012 at 4:52 PM
  10. just un dude
    Joined:
    May 27, 2005
    Posts:
    5,331
    Referrals:
    5
    Sythe Gold:
    2

    just un dude Hero
    Do Not Trade

    Update regarding the recent hackings

    Isn't md5 pretty outdated and pretty easy to dehash now a days lol.

    I hope we're not using that >.>
     
  11. Unread #66 - Apr 24, 2012 at 9:52 PM
  12. Brendan
    Joined:
    Sep 19, 2009
    Posts:
    8,418
    Referrals:
    4
    Sythe Gold:
    18
    Sythe Awards 2012 Winner Christmas 2015 Valentine's Day 2016 Easter 2016 MushyMuncher Tier 1 Prizebox

    Brendan Your friendly neighbourhood cuck
    $50 USD Donor Retired Sectional Moderator

    Update regarding the recent hackings

    Come to think of it, are you sure your old password wasn't related to any of your MSN's? That could be where it came from.
     
  13. Unread #67 - Apr 25, 2012 at 10:50 AM
  14. Miini
    Joined:
    May 10, 2009
    Posts:
    49
    Referrals:
    0
    Sythe Gold:
    0

    Miini Member
    Banned

    Update regarding the recent hackings

    Brilliant, some good news :)
     
  15. Unread #68 - Apr 25, 2012 at 4:29 PM
  16. Divine Angel
    Joined:
    Apr 25, 2012
    Posts:
    308
    Referrals:
    0
    Sythe Gold:
    0

    Divine Angel Forum Addict
    Banned

    Update regarding the recent hackings

    it is unfortunate to see people get hacked :/
     
  17. Unread #69 - Apr 26, 2012 at 4:39 AM
  18. thelatent
    Joined:
    Aug 5, 2011
    Posts:
    834
    Referrals:
    0
    Sythe Gold:
    0

    thelatent Apprentice
    Banned

    Update regarding the recent hackings

    first post, ban evader?
     
  19. Unread #70 - Apr 26, 2012 at 2:44 PM
  20. 688
    Joined:
    Apr 19, 2012
    Posts:
    66
    Referrals:
    0
    Sythe Gold:
    0

    688 Member
    Banned

    Update regarding the recent hackings

    Us this why the websites been cradhing alot?
     
  21. Unread #71 - Apr 26, 2012 at 3:28 PM
  22. ABeeCDee
    Joined:
    Mar 31, 2012
    Posts:
    300
    Referrals:
    0
    Sythe Gold:
    0

    ABeeCDee Forum Addict
    Banned

    Update regarding the recent hackings

    says "sythe.com"

    Thanks for the update.
     
  23. Unread #72 - Apr 26, 2012 at 5:45 PM
  24. Brendan
    Joined:
    Sep 19, 2009
    Posts:
    8,418
    Referrals:
    4
    Sythe Gold:
    18
    Sythe Awards 2012 Winner Christmas 2015 Valentine's Day 2016 Easter 2016 MushyMuncher Tier 1 Prizebox

    Brendan Your friendly neighbourhood cuck
    $50 USD Donor Retired Sectional Moderator

    Update regarding the recent hackings

    I don't think so. I believe the sites crashing because it's under a DDoS attack.
     
  25. Unread #73 - Apr 26, 2012 at 6:26 PM
  26. RPGStash.com
    Joined:
    Jan 25, 2007
    Posts:
    234,798
    Referrals:
    22
    Sythe Gold:
    232,037
    Vouch Thread:
    Click Here
    Discord Unique ID:
    402315258007650304
    Discord Username:
    rpgstash
    Two Factor Authentication User RsProd Sythe's 10th Anniversary Heidy <3 n4n0 Gohan has AIDS (2)

    RPGStash.com RPGStash.com | Professional Gaming Services
    RPGStash.com Donor

    Update regarding the recent hackings

    Hope it's really patched now.

    My msn got blocked after I recovered it back from the hacker due to unusual activity. I was unable to unblock it because "phone service was unavailable in my area". I gave up and made a new MSN.

    I tried to log in just now to see if it's unblocked and the password was incorrect so I recovered again, it seems they hacked it again in the past 72 hours or so. Not sure when because I haven't tried to log in since 3 days ago.
     
  27. Unread #74 - Apr 27, 2012 at 1:44 AM
  28. HJQscammmm
    Joined:
    Apr 27, 2012
    Posts:
    4
    Referrals:
    0
    Sythe Gold:
    0

    HJQscammmm Newcomer
    Banned

    Update regarding the recent hackings

    The hashing function used by sythe and other vBulletin forums is md5(md5($pass).$salt)

    Generally 90% of them or so are crackable, the best GPU running through hashcat about 1.1M passwords a second can be attempted
     
  29. Unread #75 - Apr 27, 2012 at 2:46 AM
  30. Brendan
    Joined:
    Sep 19, 2009
    Posts:
    8,418
    Referrals:
    4
    Sythe Gold:
    18
    Sythe Awards 2012 Winner Christmas 2015 Valentine's Day 2016 Easter 2016 MushyMuncher Tier 1 Prizebox

    Brendan Your friendly neighbourhood cuck
    $50 USD Donor Retired Sectional Moderator

    Update regarding the recent hackings

    You seem to know a lot about the subject.

    Just wondering, is the upgrade to vB4 going to make Sythe any safer? Will it have any extra layers of security that could make it harder for hackers to take the Sythe Database in the future?
     
  31. Unread #76 - Apr 27, 2012 at 7:19 AM
  32. just un dude
    Joined:
    May 27, 2005
    Posts:
    5,331
    Referrals:
    5
    Sythe Gold:
    2

    just un dude Hero
    Do Not Trade

    Update regarding the recent hackings

    He's banned already.

    And the security will pretty much be the same btw, patches are usually rolled out pretty fast if needed.
     
  33. Unread #77 - Apr 27, 2012 at 8:15 AM
  34. Wolfdog
    Joined:
    May 11, 2009
    Posts:
    2,611
    Referrals:
    2
    Sythe Gold:
    87
    Discord Unique ID:
    431330502142722048
    Discord Username:
    wolfdog
    Nitro Booster Hoover Extreme Homosex Homosex Potamus

    Wolfdog Untired, we stand. Exhausted, we fall.
    Retired Sectional Moderator

    Update regarding the recent hackings

    Yeh, security should be nearly the same. The only changes will be added and improved features. :nuts:
     
  35. Unread #78 - Apr 27, 2012 at 10:56 AM
  36. Stl Arr0w
    Joined:
    Apr 10, 2012
    Posts:
    82
    Referrals:
    1
    Sythe Gold:
    0

    Stl Arr0w Member
    Banned

    Update regarding the recent hackings

    ^^^^^
     
  37. Unread #79 - May 1, 2012 at 11:22 PM
  38. ur0wnedman
    Joined:
    Jan 4, 2012
    Posts:
    887
    Referrals:
    1
    Sythe Gold:
    132

    ur0wnedman Apprentice
    $25 USD Donor New

    Update regarding the recent hackings

    It would have to be a keylogger. But phishing would of gotten more info instead of just hacking emails.
     
< SuF ---> Global | Use Extreme Caution During Trades Until Further Notice >

Users viewing this thread
1 guest
Thread Status:
Not open for further replies.


 
 
Adblock breaks this site