|
|
 |
 |
 |
 |
register |
bbs |
search |
rss |
faq |
about
|
 |
 |
meet up |
add to del.icio.us |
digg it
|
 |
 |
| Sex and Affection Anything and everything about sex and relations. Please try to keep this forum on-topic, since things tend to wander a bit. Search through old topics before posting a new one, as questions get repeated a lot here. |
 |
|
|
#1
 2007-03-02, 14:05
|
|
Moderator
|
|
dodging the rain and tractors
|
|
READ THIS NOW!
This morning some 'script kiddy' managed to steal a whole bunch of totse user passwords. These he then posted in NS&H.
PEOPLE, DO NOT CLICK ON LINKS UNLESS YOU 'KNOW' AND TRUST THE POSTER (ie avoid links posted by non-regulars on S&A)
Hopefully someone like cense or jeb from NS&H will post here and tell us how we can protect ourselves.
[This message has been edited by jackketch (edited 03-02-2007).]
|
|
#2
 2007-03-02, 14:14
|
|
|
Re: READ THIS NOW!
Firefox+NoScript is an option to stop it if it's javascript based. If he did it with PHP, there is no way to stop it.
My suggestions are, make sure you have tinyurl preview enabled. Make sure you know the poster and trust them. Also take a look at the url. If it seems a bit out of the ordinary, don't click it. There is going to be alot of this going around, now that people know it's possible. Also, if it's not a tinyrul link, do a quick quote of the person who posted the link to make sure it doesn't lead somewhere other that what is displayed in the post
quote:Hopefully someone like cense or jeb from NS&H will post here and tell us how we can protect ourselves.
I'm a regular poster in NS&H and thats the best advice I can give at the moment
[This message has been edited by O RLY (edited 03-02-2007).]
|
|
#3
 2007-03-02, 14:31
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
Also, if your account was stolen Meta managed to 'save' about 75% of them. He'll be posting a list of them soon I hope and you'll be able to get your password from him.
|
|
#4
 2007-03-02, 14:35
|
|
Super Moderator
|
|
Sebastopol CA
|
|
Re: READ THIS NOW!
Jack, would you mind please moving athis to SG too.
I know I could write one like it, or just cut and paste your, but I want to get O'Rly's reply too.
Much grass.
Edit: I forgot to add this: If anyone is trhinking they might have some fun with the accounts that were compromised, just remeber this: We know which ones were compromised, and so if we see a post from one of those accounts we can - and will - check the IP, which will still be yours.
[This message has been edited by Metaphysicist (edited 03-02-2007).]
|
|
#5
 2007-03-02, 14:49
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
bump. People, please keep bumping this up for me to the top of page until everyone has had a chance to read it.
|
|
#6
 2007-03-02, 14:52
|
ShutMeUp 
Regular
|
|
|
|
Re: READ THIS NOW!
Whoa, insane :/
|
|
#7
 2007-03-02, 14:53
|
|
|
Re: READ THIS NOW!
I bet that little mother fucker is still sitting in his undies jacking off to his great stunt.
What's wrong with the youth of today?!
|
|
#8
 2007-03-02, 14:57
|
|
|
Re: READ THIS NOW!
Well, people will know now from this stunt to be more carefull about clicking links. About 75% of the accounts were saved which is better then we could have hoped for. More damage would have been done if that list wasn't posted. I'm sure he might have left out a few accounts to keep for himself though.
|
|
#9
 2007-03-02, 15:13
|
m0ckturtle 
Regular
|
|
|
|
Re: READ THIS NOW!
i wonder if my acct works
|
|
#10
 2007-03-02, 15:15
|
|
|
Re: READ THIS NOW!
Some fucking idiot reads some guides and this is what you get.
|
|
#11
 2007-03-02, 15:26
|
M0rt 
Regular
|
|
|
|
Re: READ THIS NOW!
Would be nice to know what browser the victims have.
If firefox, then suggestion to all is to not use the save password manager with totse accounts. The flaw in firefoxs password manager allows for these kind of RCSR(Reverse Cross-Site Request).
|
|
#12
 2007-03-02, 15:40
|
|
Moderator
|
|
Tokyo, 日本
|
|
Re: READ THIS NOW!
Meh. Cookie stealing is ridonkulously trivial if you know what to look for.
Just disable cookies. Totse works without them.
EDIT: And upon deeper, further inspection, whatever cookies Totse DOES use are simply timestamps and have nothing to do with login information.
[This message has been edited by Trueborn Vorpal (edited 03-02-2007).]
|
|
#13
 2007-03-02, 15:47
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
quote:Originally posted by Trueborn Vorpal:
Meh. Cookie stealing is ridonkulously trivial if you know what to look for.
Just disable cookies. Totse works without them.
EDIT: And upon deeper, further inspection, whatever cookies Totse DOES use are simply timestamps and have nothing to do with login information.
TV, i have just quoted your answer in this thread's 'twin' over on SG http://www.totse.com/bbs/Forum3/HTML/332600.html
|
|
#14
 2007-03-02, 15:56
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
quote:Zok
Administrator posted 03-02-2007 15:54 Click Here to See the Profile for Zok Edit/Delete Message Reply w/Quote
EVERYONE should do this. Click on Preferences at the top of the page, then click the link that says "delete all cookies stored by totse.com" and then click the radio button that says "No" for "Store passwords and login info for one month?"
That is how people are getting your passwords. If you view your cookies, from totse.com there is an entry called Password with your UNENCRYPTED password. I am going to talk to Jeff ASAP about fixing this problem. Through other webpages people can write code that steals cookies from this site. In other words, someone can link you somewhere and find your password in a matter of seconds.
Everyone should change their password and password preferences NOW. http://www.totse.com/bin/bbs/ubbmisc.cgi?action=setprefs
|
|
#15
 2007-03-02, 16:21
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
bumpy bumpo bump
|
|
#16
 2007-03-02, 16:49
|
DesertRebel 
Regular
|
|
|
|
Re: READ THIS NOW!
I have nothing to contribute.
Not even boobs. 
|
|
#17
 2007-03-02, 17:21
|
stream 
Regular
|
|
|
|
Re: READ THIS NOW!
I don't post here a lot, but thankz for the warning.
|
|
#18
 2007-03-02, 17:36
|
gam3r_with_revenge 
Regular
|
|
|
|
Re: READ THIS NOW!
Here ya go Jack
BUMP!
|
|
#19
 2007-03-02, 17:37
|
busyhands 
Regular
|
|
|
|
Re: READ THIS NOW!
Bump.
|
|
#20
 2007-03-02, 18:01
|
|
|
Re: READ THIS NOW!
BUMP!
|
|
#21
 2007-03-02, 18:24
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
quote:Zok
Administrator posted 03-02-2007 15:54 Click Here to See the Profile for Zok Edit/Delete Message Reply w/Quote
Edit: You may want to block cookies from this site as well. I just noticed that it started saving my cookies again after I told it not to. I'm not sure why it did this, but I ultimately disabled cookies in my browser.
THIS IS IMPORTANT!
|
|
#22
 2007-03-02, 18:26
|
|
Regular
|
|
OPS 2A building 688-6911(b)
|
|
Re: READ THIS NOW!
Done.
Can I just say a big thanks to Meta and JBH? Even though I didn't get mine stolen, they still did a tremendous job.
JBH should be made an honorary mod for his efforts.
|
|
#23
 2007-03-02, 18:30
|
oc6 
Regular
|
|
|
|
Re: READ THIS NOW!
Done, and done....
|
|
#24
 2007-03-02, 18:55
|
|
Regular
|
|
OPS 2A building 688-6911(b)
|
|
Re: READ THIS NOW!
To the top!
|
|
#25
 2007-03-02, 19:24
|
|
|
Re: READ THIS NOW!
quote:Originally posted by CptnCrackHound:
Yesterday I got an unusual pop-up, it said Java Update Available. I have never seen this pop-up before. Was this a coincidence or part of the phish.
It wasn't a phish, it was a cookie stealer.
|
|
#26
 2007-03-02, 20:11
|
|
|
Re: READ THIS NOW!
quote:Originally posted by CptnCrackHound:
Wargsm has a bright career ahead of him!
How so?
|
|
#27
 2007-03-02, 20:34
|
Can O Soup 
Regular
|
|
|
|
Re: READ THIS NOW!
Damn. This sucks.
|
|
#28
 2007-03-02, 21:21
|
XHippie HunterX 
Regular
|
|
|
|
Re: READ THIS NOW!
Big thanks to Zok and all the mods for taking care of this shit. We <3 you guys.
And im thinking..... BAN STICK! Somebody needs to get a mutha fucking ban stick!
Swing batta batta SWING batta batta *SWING!* *Crack!* *Banzor!*
|
|
#29
 2007-03-02, 21:23
|
|
Regular
|
|
OPS 2A building 688-6911(b)
|
|
Re: READ THIS NOW!
quote:Originally posted by XHippie HunterX:
BAnd im thinking..... BAN STICK! Somebody needs to get a mutha fucking ban stick!
Swing batta batta SWING batta batta *SWING!* *Crack!* *Banzor!*
Holy fuckin' shit!
That last part was THE funniest thing i've read in a long time!

|
|
#30
 2007-03-02, 21:58
|
|
Regular
|
|
There's a NEW Mexico?
|
|
Re: READ THIS NOW!
If this bump appears, I have not been taken advantage of.
|
|
#31
 2007-03-02, 22:07
|
CptnCrackHound 
Regular
|
|
|
|
Re: READ THIS NOW!
quote:Originally posted by ApocalypsePlease:
If this bump appears, I have not been taken advantage of.
Sorry man, I am straight. I don't do bumps!
|
|
#32
 2007-03-02, 22:16
|
|
|
Re: READ THIS NOW!
quote:Originally posted by CptnCrackHound:
O RLY, I love you and admire your posts. I totally respect you. You are a smart man too.
But com'on, you didn't think of it and come up with the scheme. You have to admit, it was good. He provided a service to Totse to show vulnerability.
Well, he helped changed the passwords to save the accounts. I was the one that linked a mod to the thread right after it was posted. I also mentioned the first time when Meta's account was hijack the method of how they did it. No one listened to me back then and it happned again. I also gave some details and explained to Zok and a few mods on how they did it. No disrespect towards wargsm, this was a group effort and my thanks go out to all of them.
[This message has been edited by O RLY (edited 03-02-2007).]
|
|
#33
 2007-03-02, 22:33
|
Opus 
Regular
|
|
|
|
Re: READ THIS NOW!
Who was this fiend?!
And if you want to keep your TOTSE password saved, just don't do it with cookies. Most modern browsers have autofill, and I'm still using that.
Thank god I refuse to click links.
|
|
#34
 2007-03-02, 22:42
|
Orillian 
Regular
|
|
|
|
Re: READ THIS NOW!
Who dares mess with the temple!?
|
|
#35
 2007-03-02, 22:42
|
Vilkacis 
Regular
|
|
|
|
Re: READ THIS NOW!
Bump
|
|
#36
 2007-03-02, 23:06
|
|
|
Re: READ THIS NOW!
Check.
I got an email saying "hiya bek! It appears you havent run a diagnostics scan on your computer in a while, it sounds like you've had some computer issues recently! Click the link below to start the diagnostics test NOW!"
I wonder if that was part of the thing, or if it was just a generic spyware trick.
|
|
#37
 2007-03-02, 23:08
|
Molotov Everything 
Regular
|
|
|
|
Re: READ THIS NOW!
Bump
|
|
#38
 2007-03-02, 23:17
|
CptnCrackHound 
Regular
|
|
|
|
Re: READ THIS NOW!
quote:Originally posted by yoyobek:
Check.
I got an email saying "hiya bek! It appears you havent run a diagnostics scan on your computer in a while, it sounds like you've had some computer issues recently! Click the link below to start the diagnostics test NOW!"I wonder if that was part of the thing, or if it was just a generic spyware trick.
yoyo:
This was in instance where you click on a link and he accessed your Totse cookie and got your password, then tried the same password to the email account you have on record with Totse. The message you got was just a coincidence.
Edit: That does sound bizzare. To clarify what you saw, was not the Totse breach; however, that's not to say it wasn't something else. Just wanted to CYMA!
[This message has been edited by CptnCrackHound (edited 03-03-2007).]
|
|
#39
 2007-03-03, 02:34
|
stringfire 
Regular
|
|
|
|
Re: READ THIS NOW!
___--__--__-Honor Amongst Thieves__--____-___--
script kiddy
Well you know (his/hers)Ip find a way to fuck him...
|
|
#40
 2007-03-03, 02:38
|
gonzo292 
Regular
|
|
|
|
Re: READ THIS NOW!
BUMP
|
|
#41
 2007-03-03, 02:40
|
|
Regular
|
|
Perth, Western Australia
|
|
Re: READ THIS NOW!
BUMP!
|
|
#42
 2007-03-03, 03:13
|
NiGhT PrOwLeR 
Regular
|
|
|
|
Re: READ THIS NOW!
hmm is mine affected *posts to find out*
|
|
#43
 2007-03-03, 03:53
|
Psionicist 
Regular
|
|
|
|
Re: READ THIS NOW!
*nudges to the top*
|
|
#44
 2007-03-03, 03:54
|
bodomised 
Regular
|
|
|
|
Re: READ THIS NOW!
bump
|
|
#45
 2007-03-03, 03:57
|
stringfire 
Regular
|
|
|
|
Re: READ THIS NOW!
quote:Originally posted by O RLY:
Well, he helped changed the passwords to save the accounts. I was the one that linked a mod to the thread right after it was posted. I also mentioned the first time when Meta's account was hijack the method of how they did it. No one listened to me back then and it happned again. I also gave some details and explained to Zok and a few mods on how they did it. No disrespect towards wargsm, this was a group effort and my thanks go out to all of them.
O RLY for MOD  think about
I'll start a partition if you are interesred.
05-27-2006
Status: Regular
Total Posts: 4825
|
|
#46
 2007-03-03, 04:57
|
DesertRebel 
Regular
|
|
|
|
Re: READ THIS NOW!
*headbutts yoyobek*
|
|
#47
 2007-03-03, 06:33
|
CDAWG 
Regular
|
|
|
|
Re: READ THIS NOW!
whats ns&h
|
|
#48
 2007-03-03, 06:34
|
|
|
Re: READ THIS NOW!
Internet common sense people...
|
|
#49
 2007-03-03, 12:09
|
|
|
Re: READ THIS NOW!
Bump!
|
|
#50
 2007-03-03, 14:16
|
stab 
Regular
|
|
|
|
Re: READ THIS NOW!
Testing account.
|
|
#51
 2007-03-03, 15:35
|
rocker 
Regular
|
|
|
|
Re: READ THIS NOW!
I still seem to be here! or maybe I'm not...
|
|
#52
 2007-03-03, 16:29
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
I'm going to think about simply deleting links posted by noobs (under say maybe 100 posts?). I'll post in the Mod forum and see what Zok thinks.
|
|
#53
 2007-03-03, 18:46
|
DesertRebel 
Regular
|
|
|
|
Re: READ THIS NOW!
quote:Originally posted by jackketch:
I'm going to think about simply deleting links posted by noobs (under say maybe 100 posts?). I'll post in the Mod forum and see what Zok thinks.
Good idea jack, but I think it violates what totses all about. Sides, some regulars change their account names.
|
|
#54
 2007-03-03, 19:16
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
quote:Originally posted by DesertRebel:
Good idea jack, but I think it violates what totses all about. Sides, some regulars change their account names.
I have posted in the mod's forum and we'll see what Zok says although i'm guessing too that it is too draconian for totse.
|
|
#55
 2007-03-03, 21:44
|
torqueman 
Regular
|
|
|
|
Re: READ THIS NOW!
Mine works?
edit: Yep...
[This message has been edited by torqueman (edited 03-03-2007).]
|
|
#56
 2007-03-03, 23:57
|
Warped Mindless 
Regular
|
|
|
|
Re: READ THIS NOW!
I hate script kiddies.
|
|
#57
 2007-03-04, 02:53
|
KRJ 
Regular
|
|
|
|
Re: READ THIS NOW!
Bumpity bump bump
I haven't been on here since about last week,before that I think it was a good month or so.
*Sigh,i'm actually feeling melancholy about it*
|
|
#58
 2007-03-04, 09:28
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
b
u
m
p
|
|
#59
 2007-03-04, 11:25
|
|
|
Re: READ THIS NOW!
It's frighteningly easy to do though.
In the 'Would you date this?' thread, I happily clicked the links just assuming that the person was a worthwhile trustable human.
*hangs self*
|
|
#60
 2007-03-04, 11:28
|
|
Moderator
|
|
dodging the rain and tractors
|
|
Re: READ THIS NOW!
quote:Originally posted by yoyobek:
It's frighteningly easy to do though.
In the 'Would you date this?' thread, I happily clicked the links just assuming that the person was a worthwhile trustable human.
*hangs self*
Well as someone pointed out in that same thread, a jpg probably is safe...probably...maybe..perhaps...
|
|
#61
 2007-03-04, 12:59
|
oc6 
Regular
|
|
|
|
Re: READ THIS NOW!
quote:Originally posted by jackketch:
Well as someone pointed out in that same thread, a jpg probably is safe...probably...maybe..perhaps...
I rarely click on links here. Maybe img tags would useful here?
|
|
#62
 2007-03-04, 13:39
|
stab 
Regular
|
|
|
|
Re: READ THIS NOW!
Just like choosing the right sex partner... might have an STD...
|
|
#63
 2007-03-04, 15:23
|
CowboyJesus 
Regular
|
|
|
|
Re: READ THIS NOW!
Bump.
|
|
#64
 2007-03-04, 22:55
|
|
|
Re: READ THIS NOW!
quote:Originally posted by stab:
Just like choosing the right sex partner... might have an STD...
Hell yes. My computer is the biggest, nastiest most infected slut there is.
|
|
#65
 2007-03-04, 23:11
|
shoesux 
Regular
|
|
|
|
Re: READ THIS NOW!
Im here still....  Why is it always me WHYYYY !!!
|
|
#66
 2007-03-05, 00:17
|
|
|
Re: READ THIS NOW!
BUMP!!
|
|
 |
 |
To the best of our knowledge, the text on this page may be freely reproduced and distributed.

totse.com certificate signatures
|
 |
 |
About | Community | Bad Ideas | Drugs | Ego | Erotica | Fringe | Society | Technology
|
 |
 |
 |
 |
|
|