Bitcoin Forum
May 05, 2024, 05:14:02 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: The hacker/s who hacked Bo Shen gained access to Ethereum forums  (Read 783 times)
spartak_t (OP)
Legendary
*
Offline Offline

Activity: 1960
Merit: 1176


@FAILCommunity


View Profile WWW
December 19, 2016, 09:04:17 PM
 #1

Quote
On December 16, we were made aware that someone had recently gained unauthorized access to a database from forum.ethereum.org. We immediately launched a thorough investigation to determine the origin, nature, and scope of this incident. Here is what we know:

The information that was recently accessed is a database backup from April 2016 and contained information about 16.5k forum users.
The leaked information includes
Messages, both public and private
IP-addresses
Username and email addresses
Profile information
Hashed passwords
~13k bcrypt hashes (salted)
~1.5k WordPress-hashes (salted)
~2k accounts without passwords (used federated login)
The attacker self-disclosed that they are the same person/persons who recently hacked Bo Shen.
The attacker used social engineering to gain access to a mobile phone number that allowed them to gain access to other accounts, one of which had access to an old database backup from the forum.
We are taking the following steps:

Forum users whose information may have been compromised by the leak will be receiving an email with additional information.
We have closed the unauthorized access points involved in the leak.
We are enforcing stricter security guidelines internally such as removing the recovery phone numbers from accounts and using encryption for sensitive data.
Adding the leaked emails to https://haveibeenpwned.com to help notify affected users
Resetting all forum passwords
If you were affected by the attack we recommend you do the following:

Ensure that your passwords are not reused between services. If you have reused your forum.ethereum.org password elsewhere, change it in those places.
Additionally, we recommend this excellent blog post by Kraken that provides useful information about how to protect against these types of attacks.

We deeply regret that this incident occurred and are working diligently internally, as well as with external partners to address the incident.

Questions can be directed to security@ethereum.org.

Source: https://blog.ethereum.org/2016/12/19/security-alert-12192016-ethereum-org-forums-database-compromised/

1714929242
Hero Member
*
Offline Offline

Posts: 1714929242

View Profile Personal Message (Offline)

Ignore
1714929242
Reply with quote  #2

1714929242
Report to moderator
Be very wary of relying on JavaScript for security on crypto sites. The site can change the JavaScript at any time unless you take unusual precautions, and browsers are not generally known for their airtight security.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714929242
Hero Member
*
Offline Offline

Posts: 1714929242

View Profile Personal Message (Offline)

Ignore
1714929242
Reply with quote  #2

1714929242
Report to moderator
1714929242
Hero Member
*
Offline Offline

Posts: 1714929242

View Profile Personal Message (Offline)

Ignore
1714929242
Reply with quote  #2

1714929242
Report to moderator
Cryptotraider16
Sr. Member
****
Offline Offline

Activity: 420
Merit: 250

http://www.leocoinapp.com/


View Profile WWW
December 19, 2016, 09:11:31 PM
 #2

WTH,keep problems with ETH...never ending story

http://www.leocoin.info - LEOcoin info App!
LEOcoin - traded on 8 exchanges! more coming - Solo POS coin!
GreenLighter
Jr. Member
*
Offline Offline

Activity: 36
Merit: 2


View Profile
December 19, 2016, 09:45:25 PM
 #3

Ouch, more drama coming
JeffBrad12
Hero Member
*****
Online Online

Activity: 2772
Merit: 522


Leading Crypto Sports Betting & Casino Platform


View Profile
December 19, 2016, 11:20:31 PM
 #4

Another drama from will be coming, what about that, hack in a row? totally make no sense. So the hacker was gaining the backdoor for accessing ethereum blog database? And the hacker will sell it through the dark net. looks like this was already planting. Glad to see whats happening soon.  Shocked

..Stake.com..   ▄████████████████████████████████████▄
   ██ ▄▄▄▄▄▄▄▄▄▄            ▄▄▄▄▄▄▄▄▄▄ ██  ▄████▄
   ██ ▀▀▀▀▀▀▀▀▀▀ ██████████ ▀▀▀▀▀▀▀▀▀▀ ██  ██████
   ██ ██████████ ██      ██ ██████████ ██   ▀██▀
   ██ ██      ██ ██████  ██ ██      ██ ██    ██
   ██ ██████  ██ █████  ███ ██████  ██ ████▄ ██
   ██ █████  ███ ████  ████ █████  ███ ████████
   ██ ████  ████ ██████████ ████  ████ ████▀
   ██ ██████████ ▄▄▄▄▄▄▄▄▄▄ ██████████ ██
   ██            ▀▀▀▀▀▀▀▀▀▀            ██ 
   ▀█████████▀ ▄████████████▄ ▀█████████▀
  ▄▄▄▄▄▄▄▄▄▄▄▄███  ██  ██  ███▄▄▄▄▄▄▄▄▄▄▄▄
 ██████████████████████████████████████████
▄▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▄
█  ▄▀▄             █▀▀█▀▄▄
█  █▀█             █  ▐  ▐▌
█       ▄██▄       █  ▌  █
█     ▄██████▄     █  ▌ ▐▌
█    ██████████    █ ▐  █
█   ▐██████████▌   █ ▐ ▐▌
█    ▀▀██████▀▀    █ ▌ █
█     ▄▄▄██▄▄▄     █ ▌▐▌
█                  █▐ █
█                  █▐▐▌
█                  █▐█
▀▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▀█
▄▄█████████▄▄
▄██▀▀▀▀█████▀▀▀▀██▄
▄█▀       ▐█▌       ▀█▄
██         ▐█▌         ██
████▄     ▄█████▄     ▄████
████████▄███████████▄████████
███▀    █████████████    ▀███
██       ███████████       ██
▀█▄       █████████       ▄█▀
▀█▄    ▄██▀▀▀▀▀▀▀██▄  ▄▄▄█▀
▀███████         ███████▀
▀█████▄       ▄█████▀
▀▀▀███▄▄▄███▀▀▀
..PLAY NOW..
European Central Bank
Legendary
*
Offline Offline

Activity: 1288
Merit: 1087



View Profile
December 19, 2016, 11:50:57 PM
 #5

well, they always say that alts test things that bitcoin doesn't dare to. ethereum is testing out being the world's most chaotic crypto scenario perfectly.
spartak_t (OP)
Legendary
*
Offline Offline

Activity: 1960
Merit: 1176


@FAILCommunity


View Profile WWW
December 20, 2016, 12:17:37 AM
 #6

well, they always say that alts test things that bitcoin doesn't dare to. ethereum is testing out being the world's most chaotic crypto scenario perfectly.

LM f*cking AO. Cheesy Cheesy Cheesy Nice trolling! Smiley

Dahhi
Full Member
***
Offline Offline

Activity: 238
Merit: 100


MERCATOX


View Profile
December 20, 2016, 01:05:50 AM
 #7

Ethereum is a coin that has refused to die even though many want it dead... maybe it's time to accept the fact that this coin has every intention of remaining at number 2.

DrkLvr_
Hero Member
*****
Offline Offline

Activity: 724
Merit: 500


View Profile
December 20, 2016, 04:53:21 AM
 #8

Lol fuck eth
thepo1m
Hero Member
*****
Offline Offline

Activity: 658
Merit: 500



View Profile
December 20, 2016, 07:03:14 PM
 #9

Ethereum is a coin that has refused to die even though many want it dead... maybe it's time to accept the fact that this coin has every intention of remaining at number 2.

Nobody remember Number 2, Number one is always the story. I just hope Ethereum will not go the normal Altcoin fad way
Cryptotraider16
Sr. Member
****
Offline Offline

Activity: 420
Merit: 250

http://www.leocoinapp.com/


View Profile WWW
December 20, 2016, 07:05:42 PM
 #10

i still think ETH is good platform,just imagine other coins with so much attacks,etc...all may die,but eth keep go forward...Wink good ETH,but still too expensive!

http://www.leocoin.info - LEOcoin info App!
LEOcoin - traded on 8 exchanges! more coming - Solo POS coin!
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!