Bitcoin Forum
June 17, 2024, 02:46:16 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: 000webhost hacked - 13 million passwords leaked  (Read 2017 times)
Lt.Bitcoin (OP)
Member
**
Offline Offline

Activity: 91
Merit: 10

On the mission to earn 100 BTC


View Profile
November 16, 2015, 02:48:44 PM
 #1

Hello Guys!

I just saw this  news here:
http://www.forbes.com/sites/thomasbrewster/2015/10/28/000webhost-database-leak/
http://www.troyhunt.com/2015/10/breaches-traders-plain-text-passwords.html

000webhost has been recently hacked and 13 million plain passwords has been leaked.
If you want to check if you are victim or not of this attack, visit here: https://haveibeenpwned.com/

Such a bad news for the users of 000webhost.com
Lt.Bitcoin

Im Lt.Bitcoin - 1LtBTC2MSL4g3wFrcmNcKffrxoFGZr85tc
WWC-DEV
Full Member
***
Offline Offline

Activity: 125
Merit: 100


View Profile
November 16, 2015, 02:55:46 PM
 #2

If you want to check if you are victim or not of this attack, visit here: https://haveibeenpwned.com/

Is it safe to visit this site?
mexxer-2
Hero Member
*****
Offline Offline

Activity: 924
Merit: 1005


4 Mana 7/7


View Profile
November 16, 2015, 03:00:01 PM
 #3

If you want to check if you are victim or not of this attack, visit here: https://haveibeenpwned.com/

Is it safe to visit this site?
Backing from pcworld and other trusted sites. Seems safe to visit.
WWC-DEV
Full Member
***
Offline Offline

Activity: 125
Merit: 100


View Profile
November 16, 2015, 03:06:07 PM
 #4

If you want to check if you are victim or not of this attack, visit here: https://haveibeenpwned.com/

Is it safe to visit this site?
Backing from pcworld and other trusted sites. Seems safe to visit.

Is that site owned by pcworld?
mexxer-2
Hero Member
*****
Offline Offline

Activity: 924
Merit: 1005


4 Mana 7/7


View Profile
November 16, 2015, 03:07:27 PM
 #5


Is that site owned by pcworld?
Nope, I meant its backed/supported/reported(in a good way) by PCworld and other sites like thebussinessinsider, digitaltrends etc. You can see it if you google it
Spoetnik
Legendary
*
Offline Offline

Activity: 1540
Merit: 1011


FUD Philanthropist™


View Profile
November 16, 2015, 03:17:34 PM
 #6

I heard similar a week ago about cheating date site Ashley Madison

FUD first & ask questions later™
Faradey100
Newbie
*
Offline Offline

Activity: 42
Merit: 0


View Profile
November 16, 2015, 03:39:53 PM
 #7

They not publiced logins and passwords?
kolloh
Legendary
*
Offline Offline

Activity: 1736
Merit: 1023


View Profile
November 16, 2015, 03:47:19 PM
 #8

Wow 13million user records and passwords stored in plain text. /facepalm
WWC-DEV
Full Member
***
Offline Offline

Activity: 125
Merit: 100


View Profile
November 16, 2015, 03:49:07 PM
 #9

They not publiced logins and passwords?

I don't think the passwords are public yet.
Daniel91
Legendary
*
Offline Offline

Activity: 3374
Merit: 1824



View Profile
November 16, 2015, 05:48:19 PM
 #10

This is old news already, happened 2 weeks ago.
WE all had to change passwords and now can use this hosting and edit our sites again, without problem.

.freebitcoin.       ▄▄▄█▀▀██▄▄▄
   ▄▄██████▄▄█  █▀▀█▄▄
  ███  █▀▀███████▄▄██▀
   ▀▀▀██▄▄█  ████▀▀  ▄██
▄███▄▄  ▀▀▀▀▀▀▀  ▄▄██████
██▀▀█████▄     ▄██▀█ ▀▀██
██▄▄███▀▀██   ███▀ ▄▄  ▀█
███████▄▄███ ███▄▄ ▀▀▄  █
██▀▀████████ █████  █▀▄██
 █▄▄████████ █████   ███
  ▀████  ███ ████▄▄███▀
     ▀▀████   ████▀▀
BITCOIN
DICE
EVENT
BETTING
WIN A LAMBO !

.
            ▄▄▄▄▄▄▄▄▄▄███████████▄▄▄▄▄
▄▄▄▄▄██████████████████████████████████▄▄▄▄
▀██████████████████████████████████████████████▄▄▄
▄▄████▄█████▄████████████████████████████▄█████▄████▄▄
▀████████▀▀▀████████████████████████████████▀▀▀██████████▄
  ▀▀▀████▄▄▄███████████████████████████████▄▄▄██████████
       ▀█████▀  ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀  ▀█████▀▀▀▀▀▀▀▀▀▀
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.PLAY NOW.
WWC-DEV
Full Member
***
Offline Offline

Activity: 125
Merit: 100


View Profile
November 16, 2015, 06:04:34 PM
 #11

This is old news already, happened 2 weeks ago.
WE all had to change passwords and now can use this hosting and edit our sites again, without problem.

There are some people who lost their accounts too.
shorena
Copper Member
Legendary
*
Offline Offline

Activity: 1498
Merit: 1520


No I dont escrow anymore.


View Profile WWW
November 16, 2015, 08:54:13 PM
 #12

The full dump is here[1] for now at least[2]. Very interesting top100 passwords, esp. #11 (outch) and the seemingly random one that was used >9000 times[4].

[1] https://000webhost.thecthulhu.com/
[2] https://twitter.com/CthulhuSec/status/666167981949526016
[3] https://twitter.com/asdizzle_/status/661323805214814209
[4] https://twitter.com/asdizzle_/status/665933815420989440

Im not really here, its just your imagination.
Lauda
Legendary
*
Offline Offline

Activity: 2674
Merit: 2965


Terminated.


View Profile WWW
November 16, 2015, 09:10:29 PM
 #13

Is it safe to visit this site?
That site is actually very good and I did not know that it existed. I just checked that I was "pwned". I didn't even know that I had accounts on some of these places! Time to start deleting. It's quite unfortunate that this happens on places that do not deserve to be hacked. This is why companies need to start hiring more (skilled) people to handle security, it should never be neglected.

"The Times 03/Jan/2009 Chancellor on brink of second bailout for banks"
😼 Bitcoin Core (onion)
Lt.Bitcoin (OP)
Member
**
Offline Offline

Activity: 91
Merit: 10

On the mission to earn 100 BTC


View Profile
November 17, 2015, 02:33:42 PM
 #14

Is it safe to visit this site?
That site is actually very good and I did not know that it existed. I just checked that I was "pwned". I didn't even know that I had accounts on some of these places! Time to start deleting. It's quite unfortunate that this happens on places that do not deserve to be hacked. This is why companies need to start hiring more (skilled) people to handle security, it should never be neglected.
Yup, I got that information while i was searching for free web hosting and security is the main thing of any organization or anything. From your home to your phones, I think 000webhost had this intention to do that's why they stored the data in plain text instead of an encrypted string.

Lt.Bitcoin

Im Lt.Bitcoin - 1LtBTC2MSL4g3wFrcmNcKffrxoFGZr85tc
An0nym0us
Sr. Member
****
Offline Offline

Activity: 303
Merit: 250



View Profile
November 17, 2015, 02:46:40 PM
 #15

Fuck i had a account there....
Parazyd
Hero Member
*****
Offline Offline

Activity: 812
Merit: 587


Space Lord


View Profile WWW
November 17, 2015, 02:54:29 PM
 #16

I have a copy of the dump. All the passwords are plaintext Grin
You see how dumb people actually are with their passwords...

What do I do with it now?
Lauda
Legendary
*
Offline Offline

Activity: 2674
Merit: 2965


Terminated.


View Profile WWW
November 17, 2015, 03:12:37 PM
 #17

I have a copy of the dump. All the passwords are plaintext Grin
You see how dumb people actually are with their passwords...

What do I do with it now?
Well you can't generalize either. There are people that have created their accounts in the past for testing (or other reasons) and have not deleted them. However, you are also right. I have quickly looked through that list as well.

"The Times 03/Jan/2009 Chancellor on brink of second bailout for banks"
😼 Bitcoin Core (onion)
Parazyd
Hero Member
*****
Offline Offline

Activity: 812
Merit: 587


Space Lord


View Profile WWW
November 17, 2015, 03:29:25 PM
 #18

I have a copy of the dump. All the passwords are plaintext Grin
You see how dumb people actually are with their passwords...

What do I do with it now?
Well you can't generalize either. There are people that have created their accounts in the past for testing (or other reasons) and have not deleted them. However, you are also right. I have quickly looked through that list as well.

Did you find mine? A fucking 6char password... Damn I was an idiot back then. I think it was 2010. or something.
Spoetnik
Legendary
*
Offline Offline

Activity: 1540
Merit: 1011


FUD Philanthropist™


View Profile
November 17, 2015, 03:51:08 PM
 #19

I have a copy of the dump. All the passwords are plaintext Grin
You see how dumb people actually are with their passwords...

What do I do with it now?

brag to your friends about having them LOL

edit:
Ahh i see the pwned site now.
Yeah i have been there before with another hacker story i seen at Neowin.net News site.
It's legit i think.
And no i was not on the list of pwned guys but i will see again now hahhaha
i thought it was just for that one incident long ago.. not multiple hacks etc.

edit:
Nope.
I checked all the accounts i use ..i was not on any list  Cool
I didn't think i would be..

FUD first & ask questions later™
Parazyd
Hero Member
*****
Offline Offline

Activity: 812
Merit: 587


Space Lord


View Profile WWW
November 17, 2015, 04:32:14 PM
 #20

I have a copy of the dump. All the passwords are plaintext Grin
You see how dumb people actually are with their passwords...

What do I do with it now?

brag to your friends about having them LOL

edit:
Ahh i see the pwned site now.
Yeah i have been there before with another hacker story i seen at Neowin.net News site.
It's legit i think.
And no i was not on the list of pwned guys but i will see again now hahhaha
i thought it was just for that one incident long ago.. not multiple hacks etc.

edit:
Nope.
I checked all the accounts i use ..i was not on any list  Cool
I didn't think i would be..

It's a legit dump nevertheless... I found my account inside  Undecided
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!