Bitcoin Forum

Economy => Scam Accusations => Topic started by: Cryptology on September 24, 2015, 02:55:50 PM



Title: My ICQ and XMPP Jabber accounts were hacked
Post by: Cryptology on September 24, 2015, 02:55:50 PM
My ICQ account 671760262 was just hacked.
Avoid using it to contact me. It's certainly not me.

EDIT:
My XMPP/Jabber account cryptology@jabb3r.org is gone too. Assume also hacked.


Title: Re: ICQ account hacked
Post by: Scam Investigator on September 24, 2015, 03:10:52 PM
Step 1: Scam people
Step 2: Claim ICQ was hacked
Step 3: Claim innocence


Title: Re: ICQ account hacked
Post by: Cryptology on September 24, 2015, 03:50:33 PM
Step 1: Scam people
Step 2: Claim ICQ was hacked
Step 3: Claim innocence

Were is step 1?


Title: Re: ICQ account hacked
Post by: Cryptology on September 24, 2015, 04:42:11 PM
From a backup I was able to recover the ICQ contact list and from a fresh account I was able to send an alert to all of them.
Hopefully nobody will get scammed.


Title: Re: ICQ account hacked
Post by: Cryptology on September 24, 2015, 05:05:15 PM
The whole thing went into extortion mode.

I guess that the funniest part of this sad story is the "I am an honest man" piece.

http://www.anyfiles.org/ahl?download_token=0b1bcbab3d43cbd8b763a915255e870947509549faf8d3d198d9b528aa3578ad


Title: Re: ICQ account hacked
Post by: james.lent on September 25, 2015, 08:09:55 AM
How do they even log into your acc ? ICQ's tied to your mobile number ain't it ?


Title: Re: ICQ account hacked
Post by: Cryptology on September 25, 2015, 08:18:19 AM
How do they even log into your acc ? ICQ's tied to your mobile number ain't it ?

I could not log in back again nor recover the account. As part of the hack the account's phone
number was linked to a different account so every recovery attempt led to this alt account. The hack
was proficiently done.

I managed to recover the contact list because I run all messaging apps on virtual machines
which are backed up frequently.


Title: Re: ICQ account hacked
Post by: james.lent on September 25, 2015, 08:19:25 AM
How do they even log into your acc ? ICQ's tied to your mobile number ain't it ?

I could not log in back again nor recover the account. As part of the hack the account's phone
number was linked to a different account so every recovery attempt led to this alt account. The hack
was proficiently done.

I managed to recover the contact list because I run all messaging apps on virtual machines
which are backed up frequently.


Damn buddy... about time for me to stop using icq i guess...  :o


Title: Re: ICQ account hacked
Post by: Cryptology on September 25, 2015, 08:26:13 AM

Damn buddy... about time for me to stop using icq i guess...  :o

I would definitively recommend not using ICQ.
As to how the hack was done I don't know. Password was sufficiently strong to rule out
a brute force attack. I guess that they either used an exploit at icq.com or maybe
somebody from the inside just sold the account for a bunch of coins.


Title: Re: ICQ account hacked
Post by: james.lent on September 25, 2015, 08:34:03 AM

Damn buddy... about time for me to stop using icq i guess...  :o

I would definitively recommend not using ICQ.
As to how the hack was done I don't know. Password was sufficiently strong to rule out
a brute force attack. I guess that they either used an exploit at icq.com or maybe
somebody from the inside just sold the account for a bunch of coins.

I wouldn't be surprised.. i had a lot of unknown Russian accounts adding me lately. Blocked them all though..
Didn't know they could redirect the registered number to another account. Won't be using ICQ from now on thats for sure.


Title: Re: ICQ account hacked
Post by: necrod on September 25, 2015, 11:20:57 AM
didnt know people still using icq


Title: Re: ICQ account hacked
Post by: Cryptology on September 25, 2015, 12:35:23 PM
What do criminals do after stealing and extortion have failed?
Try to fake a scam to damage your reputation.

http://s04.anon.yahnataetu.com/017f4b963e1e2626d1b3b9ef0cfcec7a.jpg

http://s03.anon.yahnataetu.com/bb644cf2b0c9de03897bed9620f71a4d.jpg

http://s02.anon.yahnataetu.com/8720e784932eeeb874c6c9e0db84c780.jpg

http://s03.anon.yahnataetu.com/9798471e76d8dfa5d57b032bb7d43f18.jpg

http://s04.anon.yahnataetu.com/f5a19c1b8b2cdc0fd7c48863a02dc1cf.jpg


Title: Re: ICQ account hacked
Post by: MarkMJ on September 25, 2015, 01:17:09 PM
When you want to scam this is the best opportunity.


Title: Re: ICQ and XMPP Jabber accounts hacked
Post by: Cryptology on September 25, 2015, 02:52:13 PM
I have just lost access to my XMPP/Jabber account cryptology@jabb3r.org
Assume hacked as with ICQ.


Title: Re: ICQ and XMPP Jabber accounts hacked
Post by: resources on September 25, 2015, 03:14:16 PM
Why don't you contact theymos with some proof? He might help you with recovering those accounts.


Title: Re: ICQ and XMPP Jabber accounts hacked
Post by: james.lent on September 25, 2015, 03:17:24 PM
Why don't you contact theymos with some proof? He might help you with recovering those accounts.

what has theymos got to do with icq and jabber? lol


Title: Re: ICQ and XMPP Jabber accounts hacked
Post by: Brad Harrison on September 25, 2015, 04:02:29 PM
Why don't you contact theymos with some proof? He might help you with recovering those accounts.

what has theymos got to do with icq and jabber? lol

Remember theymos is god


Title: Re: ICQ and XMPP Jabber accounts hacked
Post by: Cryptology on September 25, 2015, 05:38:56 PM
Why don't you contact theymos with some proof? He might help you with recovering those accounts.

Thanks for the idea but is not worth the efforts. I nuked both accounts and I'm certainly not
planning to go back to trading via these insecure channels. Time for a review of communications strategy.

Update:
With 2 accounts blown over 2 different networks both set with very hard to break passwords
the hypothesis of a compromised component is now very realistic. After some review the
most probable attack vector is Pidgin  (https://developer.pidgin.im/wiki/ChangeLog)
a universal chat client that has not seen a release in almost a year. If there is somebody out there using
this client be mindful of the risk.