Bitcoin Forum
April 26, 2024, 11:00:05 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: My ICQ and XMPP Jabber accounts were hacked  (Read 1212 times)
Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 24, 2015, 02:55:50 PM
Last edit: September 25, 2015, 05:26:13 PM by Cryptology
 #1

My ICQ account 671760262 was just hacked.
Avoid using it to contact me. It's certainly not me.

EDIT:
My XMPP/Jabber account cryptology@jabb3r.org is gone too. Assume also hacked.
1714172405
Hero Member
*
Offline Offline

Posts: 1714172405

View Profile Personal Message (Offline)

Ignore
1714172405
Reply with quote  #2

1714172405
Report to moderator
1714172405
Hero Member
*
Offline Offline

Posts: 1714172405

View Profile Personal Message (Offline)

Ignore
1714172405
Reply with quote  #2

1714172405
Report to moderator
Every time a block is mined, a certain amount of BTC (called the subsidy) is created out of thin air and given to the miner. The subsidy halves every four years and will reach 0 in about 130 years.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714172405
Hero Member
*
Offline Offline

Posts: 1714172405

View Profile Personal Message (Offline)

Ignore
1714172405
Reply with quote  #2

1714172405
Report to moderator
1714172405
Hero Member
*
Offline Offline

Posts: 1714172405

View Profile Personal Message (Offline)

Ignore
1714172405
Reply with quote  #2

1714172405
Report to moderator
Scam Investigator
Full Member
***
Offline Offline

Activity: 124
Merit: 100


View Profile
September 24, 2015, 03:10:52 PM
 #2

Step 1: Scam people
Step 2: Claim ICQ was hacked
Step 3: Claim innocence
Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 24, 2015, 03:50:33 PM
 #3

Step 1: Scam people
Step 2: Claim ICQ was hacked
Step 3: Claim innocence

Were is step 1?
Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 24, 2015, 04:42:11 PM
 #4

From a backup I was able to recover the ICQ contact list and from a fresh account I was able to send an alert to all of them.
Hopefully nobody will get scammed.
Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 24, 2015, 05:05:15 PM
 #5

The whole thing went into extortion mode.

I guess that the funniest part of this sad story is the "I am an honest man" piece.

james.lent
Hero Member
*****
Offline Offline

Activity: 602
Merit: 501



View Profile
September 25, 2015, 08:09:55 AM
 #6

How do they even log into your acc ? ICQ's tied to your mobile number ain't it ?
Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 25, 2015, 08:18:19 AM
 #7

How do they even log into your acc ? ICQ's tied to your mobile number ain't it ?

I could not log in back again nor recover the account. As part of the hack the account's phone
number was linked to a different account so every recovery attempt led to this alt account. The hack
was proficiently done.

I managed to recover the contact list because I run all messaging apps on virtual machines
which are backed up frequently.
james.lent
Hero Member
*****
Offline Offline

Activity: 602
Merit: 501



View Profile
September 25, 2015, 08:19:25 AM
 #8

How do they even log into your acc ? ICQ's tied to your mobile number ain't it ?

I could not log in back again nor recover the account. As part of the hack the account's phone
number was linked to a different account so every recovery attempt led to this alt account. The hack
was proficiently done.

I managed to recover the contact list because I run all messaging apps on virtual machines
which are backed up frequently.


Damn buddy... about time for me to stop using icq i guess...  Shocked
Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 25, 2015, 08:26:13 AM
 #9


Damn buddy... about time for me to stop using icq i guess...  Shocked

I would definitively recommend not using ICQ.
As to how the hack was done I don't know. Password was sufficiently strong to rule out
a brute force attack. I guess that they either used an exploit at icq.com or maybe
somebody from the inside just sold the account for a bunch of coins.
james.lent
Hero Member
*****
Offline Offline

Activity: 602
Merit: 501



View Profile
September 25, 2015, 08:34:03 AM
 #10


Damn buddy... about time for me to stop using icq i guess...  Shocked

I would definitively recommend not using ICQ.
As to how the hack was done I don't know. Password was sufficiently strong to rule out
a brute force attack. I guess that they either used an exploit at icq.com or maybe
somebody from the inside just sold the account for a bunch of coins.

I wouldn't be surprised.. i had a lot of unknown Russian accounts adding me lately. Blocked them all though..
Didn't know they could redirect the registered number to another account. Won't be using ICQ from now on thats for sure.
necrod
Newbie
*
Offline Offline

Activity: 41
Merit: 0


View Profile
September 25, 2015, 11:20:57 AM
 #11

didnt know people still using icq
Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 25, 2015, 12:35:23 PM
Last edit: September 25, 2015, 12:48:39 PM by Cryptology
 #12

What do criminals do after stealing and extortion have failed?
Try to fake a scam to damage your reputation.









MarkMJ
Hero Member
*****
Offline Offline

Activity: 714
Merit: 500


one for one and 1 2 3


View Profile
September 25, 2015, 01:17:09 PM
 #13

When you want to scam this is the best opportunity.

I'm RED and that's GOOD, i will never be GREEN and that's not BAD! there's no one i'd rather be than me.
DEV for cryptocurrency but I HATE forks
Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 25, 2015, 02:52:13 PM
 #14

I have just lost access to my XMPP/Jabber account cryptology@jabb3r.org
Assume hacked as with ICQ.
resources
Full Member
***
Offline Offline

Activity: 123
Merit: 100


View Profile
September 25, 2015, 03:14:16 PM
 #15

Why don't you contact theymos with some proof? He might help you with recovering those accounts.
james.lent
Hero Member
*****
Offline Offline

Activity: 602
Merit: 501



View Profile
September 25, 2015, 03:17:24 PM
 #16

Why don't you contact theymos with some proof? He might help you with recovering those accounts.

what has theymos got to do with icq and jabber? lol
Brad Harrison
Full Member
***
Offline Offline

Activity: 168
Merit: 100


View Profile
September 25, 2015, 04:02:29 PM
 #17

Why don't you contact theymos with some proof? He might help you with recovering those accounts.

what has theymos got to do with icq and jabber? lol

Remember theymos is god

Cryptology (OP)
Legendary
*
Offline Offline

Activity: 1008
Merit: 1001

In Cryptography We Trust


View Profile
September 25, 2015, 05:38:56 PM
 #18

Why don't you contact theymos with some proof? He might help you with recovering those accounts.

Thanks for the idea but is not worth the efforts. I nuked both accounts and I'm certainly not
planning to go back to trading via these insecure channels. Time for a review of communications strategy.

Update:
With 2 accounts blown over 2 different networks both set with very hard to break passwords
the hypothesis of a compromised component is now very realistic. After some review the
most probable attack vector is Pidgin
a universal chat client that has not seen a release in almost a year. If there is somebody out there using
this client be mindful of the risk.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!