Author Topic: WARNING about Account Hijacking  (Read 5539 times)

0 Members and 1 Guest are viewing this topic.

Offline EEVblogTopic starter

  • Administrator
  • *****
  • Posts: 38715
  • Country: au
    • EEVblog
WARNING about Account Hijacking
« on: May 01, 2024, 12:06:39 am »
WARNING: We have had a huge uptick in the number of hijacked accounts on the forum.
Security on the forum has NOT been compromised, it's because spammers have gotten a stolen credentials list, and people reuse passwords.
Please DON'T REUSE PASSWORDS, and change your pasword if you think you have been compromised.
And if you get an email that someone has tried to log into your forum account, if means your details have been compromised elsewhere and other accounts you have on other sites are at risk.

This has been mostly happenign to older accounts that don't often get used, but and automated script we now have in place to detect this is showing up to 4 accounts per day being compromised, hence the recent uptick in spam necroposting from established accounts.
 
The following users thanked this post: PeterG, thm_w, Kean, Nominal Animal, Martin72, mendip_discovery

Offline strawberry

  • Super Contributor
  • ***
  • !
  • Posts: 1199
  • Country: lv
Re: WARNING about Account Hijacking
« Reply #1 on: May 01, 2024, 09:17:16 pm »
ahoy
I am here, shall me show who are made of wood or steel
I am here, if they have got guts even to try
 

Online Kean

  • Supporter
  • ****
  • Posts: 2299
  • Country: au
  • Embedded systems & IT consultant
    • Kean Electronics
Re: WARNING about Account Hijacking
« Reply #2 on: May 04, 2024, 12:55:09 pm »
Probably made easier due to the publicly available member list which they can try cross-referencing against user names or partial email addresses with leaked credentials from other sites.
A pain in the rear, but it is what is is and part of the process these days of putting almost anything on the Internet.
 

Offline schwaggins

  • Contributor
  • Posts: 14
  • Country: au
Re: WARNING about Account Hijacking
« Reply #3 on: August 22, 2024, 11:00:27 pm »
Thanks for unfreezing my account, my all Chrome data got stolen then reposted on some dark web forum. 541 compromised passwords is not fun to deal with
 
The following users thanked this post: EEVblog

Offline radiolistener

  • Super Contributor
  • ***
  • Posts: 4055
  • Country: ua
Re: WARNING about Account Hijacking
« Reply #4 on: August 28, 2024, 03:08:18 pm »
my all Chrome data got stolen then reposted on some dark web forum

How it happens?
 

Online Kean

  • Supporter
  • ****
  • Posts: 2299
  • Country: au
  • Embedded systems & IT consultant
    • Kean Electronics
Re: WARNING about Account Hijacking
« Reply #5 on: August 28, 2024, 03:14:23 pm »
my all Chrome data got stolen then reposted on some dark web forum

How it happens?

Usually via malware
 

Offline madires

  • Super Contributor
  • ***
  • Posts: 8176
  • Country: de
  • A qualified hobbyist ;)
Re: WARNING about Account Hijacking
« Reply #6 on: August 28, 2024, 03:41:51 pm »
For example: Qilin ransomware caught stealing credentials stored in Google Chrome (https://news.sophos.com/en-us/2024/08/22/qilin-ransomware-caught-stealing-credentials-stored-in-google-chrome/)
 


Share me

Digg  Facebook  SlashDot  Delicious  Technorati  Twitter  Google  Yahoo
Smf