grue (OP)
Legendary
Offline
Activity: 2058
Merit: 1446
|
|
June 20, 2011, 03:02:30 AM |
|
from accounts.csv (you know which one) 4856,gruez,free.133ch@gmail.com,$1$ZyEFTEke$cWSfcMkc7pjPmHLzMt7dv0 ps. this idea was stolen off of someone else. Actually, aren't you ? that was someone else.
|
|
|
|
imperi
|
|
June 20, 2011, 03:02:47 AM |
|
from accounts.csv (you know which one) 4856,gruez,free.133ch@gmail.com,$1$ZyEFTEke$cWSfcMkc7pjPmHLzMt7dv0 ps. this idea was stolen off of someone else. Actually, aren't you ? I think he knows what his own email is?
|
|
|
|
Astro
|
|
June 20, 2011, 03:26:32 AM |
|
I'm under 2000 but above 1000.
|
|
|
|
Quantumplation
|
|
June 20, 2011, 06:12:15 AM |
|
Wait, that means... There are MULTIPLE grues around these parts? I get the feeling I'm about to be eaten...
|
NOTE: This account was compromised from 2017 to 2021. I'm in the process of deleting posts not made by me.
|
|
|
The Script
|
|
June 20, 2011, 07:13:54 AM |
|
Hey anyone want to do me a favor and look "The Script" up on the list? I'm on my iPad at home, 3G Internet and I can't download the csv file but I'm curious what number I am at. I'm guessing less than 3000
|
|
|
|
|
franzl
Newbie
Offline
Activity: 8
Merit: 0
|
|
June 20, 2011, 08:35:05 AM |
|
I'm 100 I think I've registered on 2010-07-29, that's when I first sent coins to mtgox.
|
|
|
|
Timo Y
Legendary
Offline
Activity: 938
Merit: 1001
bitcoin - the aerogel of money
|
|
June 20, 2011, 09:00:46 AM |
|
Y'know, those < 3100 are all easily crackable? looks like somebody already cracked mine. (Mine is < 400) When I tried to log into my gmail account that was registered on mtgox I got this message from gmail: "suspicious activity reported. please change your password". Good thing I had a unique password just for mtgox!
|
|
|
|
scribe
|
|
June 20, 2011, 09:41:25 AM |
|
I'm #604 (same username as here), but not logged in for months so my password is in the old hash form - I'm assuming it's been cracked, but would love to have confirmation. Anyone that's run Jack on the file able to PM or e-mail me or something if they have?
Paranoia mode on.
|
|
|
|
Inedible
|
|
June 20, 2011, 10:15:58 AM |
|
To make the game more interesting, if you could also post the last IP address that accessed the account, your email address (bonus points if you can provide that password too), account name your old password (as that's now useless) and your full physical address, age, date of birth and your mother's maiden name, we can make a nice graph out of that. What do you say chaps?
(For those without a sense of humour or sense that is common: DO NOT TAKE THIS POST SERIOUSLY!)
|
If this post was useful, interesting or entertaining, then you've misunderstood.
|
|
|
killer2021
Member
Offline
Activity: 84
Merit: 10
|
|
June 20, 2011, 10:22:07 AM |
|
well ... i know companies that don't give sequential numbers starting at 1 just to hide real numbers.
You mean companies that care about their customers and don't use amateur college-level PHP coding full of security holes? Is that message implying that PHP is insecure, or am I misreading it? PS: College-level? I was 13 and I released a perfectly secure Club Penguin Private Server, with multi-pass SHA256... PPS: Don't do the above unless you like angry Disney lawyers I'm saying (current) college-level PHP coding is unsecure. It's a curse of the software industry, that nobody adds security unless it's been proven to be required. Usually the proof of requirement is pretty damaging. I suppose the quality level of mtgox coding is on par with their ability on html/css/graphic output. Does nobody consider that some (PHP/Web) CMS projects have millions of lines of code and years of user testing on millions of installations and still identify and fix security holes? And people never use those (in this community), instead they cowboy-code their own low complexity implementations? True but there is a cost to everything. Not everyone can afford to hire 15 php master coders with 20+ years experience and PHDs in computer science, ya know!
|
|
|
|
killer2021
Member
Offline
Activity: 84
Merit: 10
|
|
June 20, 2011, 10:27:18 AM |
|
Y'know, those < 3100 are all easily crackable? I was able to find 640 passwords belonging to users 1 through 3036... and i know absolutely nothing about Cryptography (Which also means they could be wrong) just by feeding them into some gammy online hash cracker yokie 329,Mahkul,p.makulski@gmail.com,$1$e1u03TlV$wGLXQ8ynWjXib5E4qj0fm. Did you manage to crack my password? I thought it was pretty good. You can post it here, I never use the same password for more than one site anyway. Its 123456789. Pretty good, eh?
|
|
|
|
joepie91
|
|
June 21, 2011, 02:41:13 AM |
|
well ... i know companies that don't give sequential numbers starting at 1 just to hide real numbers.
You mean companies that care about their customers and don't use amateur college-level PHP coding full of security holes? Is that message implying that PHP is insecure, or am I misreading it? PS: College-level? I was 13 and I released a perfectly secure Club Penguin Private Server, with multi-pass SHA256... PPS: Don't do the above unless you like angry Disney lawyers I'm saying (current) college-level PHP coding is unsecure. It's a curse of the software industry, that nobody adds security unless it's been proven to be required. Usually the proof of requirement is pretty damaging. I suppose the quality level of mtgox coding is on par with their ability on html/css/graphic output. Does nobody consider that some (PHP/Web) CMS projects have millions of lines of code and years of user testing on millions of installations and still identify and fix security holes? And people never use those (in this community), instead they cowboy-code their own low complexity implementations? True but there is a cost to everything. Not everyone can afford to hire 15 php master coders with 20+ years experience and PHDs in computer science, ya know! You don't realize how many fees Mt. Gox has been raking in?
|
Like my post(s)? 12TSXLa5Tu6ag4PNYCwKKSiZsaSCpAjzpu I just can't wait for fall/winter. My furnace never generated money for me before. I'll keep mining until my furnace is more profitable.
|
|
|
allinvain
Legendary
Offline
Activity: 3080
Merit: 1080
|
|
June 21, 2011, 09:57:01 PM |
|
400,000 BTC can buy a boat load of coders...
|
|
|
|
speeder
|
|
June 21, 2011, 10:36:59 PM |
|
well ... i know companies that don't give sequential numbers starting at 1 just to hide real numbers.
You mean companies that care about their customers and don't use amateur college-level PHP coding full of security holes? Is that message implying that PHP is insecure, or am I misreading it? PS: College-level? I was 13 and I released a perfectly secure Club Penguin Private Server, with multi-pass SHA256... PPS: Don't do the above unless you like angry Disney lawyers I'm saying (current) college-level PHP coding is unsecure. It's a curse of the software industry, that nobody adds security unless it's been proven to be required. Usually the proof of requirement is pretty damaging. I suppose the quality level of mtgox coding is on par with their ability on html/css/graphic output. Does nobody consider that some (PHP/Web) CMS projects have millions of lines of code and years of user testing on millions of installations and still identify and fix security holes? And people never use those (in this community), instead they cowboy-code their own low complexity implementations? True but there is a cost to everything. Not everyone can afford to hire 15 php master coders with 20+ years experience and PHDs in computer science, ya know! You don't realize how many fees Mt. Gox has been raking in? You don't realize WHEN the fees were raked in? MtGox went from nothing to everything in 2 months, MagicalTux more than once mentioned desperately trying to hire workers and not working so well. It is not much of a money issue, but also time issue.
|
|
|
|
goodlord666
Sr. Member
Offline
Activity: 434
Merit: 250
100%
|
|
June 23, 2011, 09:55:43 PM |
|
To make the game more interesting, if you could also post the last IP address that accessed the account, your email address (bonus points if you can provide that password too), account name your old password (as that's now useless) and your full physical address, age, date of birth and your mother's maiden name, we can make a nice graph out of that. What do you say chaps?
THAT's the spirit!
|
|
|
|
grue (OP)
Legendary
Offline
Activity: 2058
Merit: 1446
|
|
June 23, 2011, 10:05:17 PM |
|
To make the game more interesting, if you could also post the last IP address that accessed the account, your email address (bonus points if you can provide that password too), account name your old password (as that's now useless) and your full physical address, age, date of birth and your mother's maiden name, we can make a nice graph out of that. What do you say chaps?
last ip: 127.0.0.1 email: in original post email pass: same as mtgox pass
|
|
|
|
|