Jump to content

Gawker's Latest Embarrassment


Bouchart
 Share

What is worse?  

37 members have voted

  1. 1. Which makes Gawker look worse?

    • Their user passwords were stolen
    • They use this to plug an article about creating strong passwords


Recommended Posts

  • Replies 267
  • Created
  • Last Reply

Top Posters In This Topic

Just ... fucking ... urgh.

I've changed everything important I think, just in case, even though I didn't see my name on any lists. I'd still like to get the full list to make sure, but the torrent has been removed.

 

Why is there no option for deleting accounts on their stupid websites?

Link to comment
Share on other sites

This is one of the better write-ups I've seen

http://blogs.forbes.com/firewall/2010/12/13/the-lessons-of-gawkers-security-mess/

 

Their using a fucking 30 year old encryption method.

 

http://twitter.com/#!/crecenteb/status/14323378466852864

 

Which I'm sure the WONDERFUL FOLKS who provoked 4chan & Co, and the WONDERFUL FOLKS who put up such shoddy security have nothing to do with it.

Link to comment
Share on other sites

Haha, so much for it being a "joke," eh Otko? :Phttp://twitter.com/o...313813642223616

By the way, I'm posting an image of the linked account… in case it gets shut down. http://twitter.com/#...885979559895041

5257958306_f6bb272b7b_o.pngJoke's on you, Giz. Yeah, in actuality, it may be just a joke account, but I just love the irony of it all if that's the case, for a real attack to pop up after this one was "announced."

I don't know about everyone else, but I'm pretty much done with Gawker.

 

I reckon I'll just hang around Lifehacker and io9 now, maybe even drop into Jezebel once in a while, but for Gizmodo and Kotaku? I'm basically done and over with them. Hell, Jalopnik isn't even good anymore, and it used to be the poster child of quality Gawker comment communities.

Link to comment
Share on other sites

I can check anyone's account if they want. Downloaded the torrent. I just need your username.

 

yes please ... check for drag and sanzen for me? also maybe drift, but that one's hell of old and i don't think i linked my email to it so whatever.

 

For the username "drag", the email wasn't compromised, but a MD5SUM encrypted password was posted, so you better change it.

 

For the username "sanzen", the password wasn't compromised, but the email was.

 

As for drift, there are a few of those, and some have the email compromised.

Link to comment
Share on other sites

I can check anyone's account if they want. Downloaded the torrent. I just need your username.

 

yes please ... check for drag and sanzen for me? also maybe drift, but that one's hell of old and i don't think i linked my email to it so whatever.

 

For the username "drag", the email wasn't compromised, but a MD5SUM encrypted password was posted, so you better change it.

 

For the username "sanzen", the password wasn't compromised, but the email was.

 

As for drift, there are a few of those, and some have the email compromised.

 

Could you check me? My account name was Reicheru I think.

 

Both password and e-mail are compromised.

Link to comment
Share on other sites

I can check anyone's account if they want. Downloaded the torrent. I just need your username.

 

yes please ... check for drag and sanzen for me? also maybe drift, but that one's hell of old and i don't think i linked my email to it so whatever.

 

For the username "drag", the email wasn't compromised, but a MD5SUM encrypted password was posted, so you better change it.

 

For the username "sanzen", the password wasn't compromised, but the email was.

 

As for drift, there are a few of those, and some have the email compromised.

 

Could you check me? My account name was Reicheru I think.

 

Both password and e-mail are compromised.

 

What do you mean by e-mail? As in they hacked the e-mail I registered with? Or they just published my e-mail?

 

Also, could you e-mail whatever the password was that I was using? :lol:

 

As far as I know, your e-mail is only published for all to see, but I changed my email password just in case (I'm not sure how these things work exactly, so better safe than sorry). The password is encrypted with an MD5SUM string/hash/whatever you call it, so it's just random characters in the text file, but anyone who cares enough can decrypt it without any troubles (my Facebook pass was also encrypted like that (I posted once using my FB account years ago) and it almost got jacked this morning).

 

@Yar: password compromised, no e-mail.

@jayc4life: both e-mail and password compromised.

Link to comment
Share on other sites

so ... i should be alright as long as i change my drag account password? which i have done already

 

i tried to change my twitter password before i realised that the email for it and maybe the password i've not used on anything else before. now i basically can't get back in and it wants a phone number before it'll resend/ reset my password. i never gave it a fucking phone number

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

 Share


×
×
  • Create New...