Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar Mark Forums Read
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 12-03-2018, 06:57 PM   #1
AdultKing
Raise Your Weapon
 
AdultKing's Avatar
 
Industry Role:
Join Date: Jun 2003
Location: Outback Australia
Posts: 15,605
Quora hacked. 100 million accounts compromised.

This seems to happen every week now.

Quote:
Quora announced tonight that one of their systems was hacked and has led to the exposure of approximately 100 million user's data to an unauthorized third-party.
https://www.bleepingcomputer.com/new...-data-exposed/
AdultKing is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-03-2018, 07:21 PM   #2
King Mark
So Fucking Banned
 
Industry Role:
Join Date: Aug 2016
Posts: 27,033
That sucks. Gotta check my shit.
King Mark is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-03-2018, 08:45 PM   #3
VRPdommy
Too lazy to set a custom title
 
Industry Role:
Join Date: Oct 2014
Posts: 10,676
Sometimes 'hacked' means someone made money for letting it happen..... LOL
Think about that.
But, as I have said for the last over 15 years, the term 'internet security' is a oxymoron.
No such thing.
You should never use the 2 words together in a sentence.
You can't begin to fix it for as long as anonymity and spam can exist.
Funny, you really can't be anonymous on the back-end, so why allow it on the front end ?
mixed feelings about all that.
VRPdommy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-03-2018, 09:32 PM   #4
Bladewire
StraightBro
 
Bladewire's Avatar
 
Industry Role:
Join Date: Aug 2003
Location: Monarch Beach, CA USA
Posts: 56,232
↑↑↑ Truth
__________________


Skype: CallTomNow

Bladewire is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-03-2018, 09:43 PM   #5
Rochard
Jägermeister Test Pilot
 
Rochard's Avatar
 
Industry Role:
Join Date: Dec 2001
Location: NORCAL
Posts: 72,792
I got an email saying my account was hacked. However, I've never heard of this company.
__________________
“The choice is no longer between right or left. The choice is between normal and crazy.”
- Sarah Huckabee Sanders

YNOT MAIL | THE BEST ADULT MAILING SOLUTION
Rochard is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-03-2018, 09:44 PM   #6
Rochard
Jägermeister Test Pilot
 
Rochard's Avatar
 
Industry Role:
Join Date: Dec 2001
Location: NORCAL
Posts: 72,792
Quote:
Originally Posted by VRPdommy View Post
Sometimes 'hacked' means someone made money for letting it happen..... LOL
Think about that.
But, as I have said for the last over 15 years, the term 'internet security' is a oxymoron.
No such thing.
You should never use the 2 words together in a sentence.
You can't begin to fix it for as long as anonymity and spam can exist.
Funny, you really can't be anonymous on the back-end, so why allow it on the front end ?
mixed feelings about all that.
This is true. And very scary.
__________________
“The choice is no longer between right or left. The choice is between normal and crazy.”
- Sarah Huckabee Sanders

YNOT MAIL | THE BEST ADULT MAILING SOLUTION
Rochard is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-03-2018, 10:28 PM   #7
ilnjscb
Confirmed User
 
ilnjscb's Avatar
 
Industry Role:
Join Date: Jun 2009
Posts: 8,785
No NO NO!! Now who will give pointless bullshit answers to questions!
ilnjscb is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 06:45 AM   #8
freecartoonporn
Confirmed User
 
freecartoonporn's Avatar
 
Industry Role:
Join Date: Jan 2012
Location: NC
Posts: 7,683
please tell me they stored encrypted passwords and not in plaintext.
freecartoonporn is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 06:46 AM   #9
CaptainHowdy
Too lazy to set a custom title
 
CaptainHowdy's Avatar
 
Industry Role:
Join Date: Dec 2004
Location: Happy in the dark.
Posts: 92,988
Quote:
Originally Posted by ilnjscb View Post
No NO NO!! Now who will give pointless bullshit answers to questions!
. . .
__________________
FLASH SALE INSANITY! deal with a 100% Trusted Seller
Buy Traffic Spots on a High-Quality Network

1 Year or Lifetime — That’s Right, Until the Internet Explodes!
CaptainHowdy is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 07:24 AM   #10
CurrentlySober
Too lazy to wipe my ass
 
CurrentlySober's Avatar
 
Industry Role:
Join Date: Aug 2002
Location: A Public Bathroom
Posts: 38,488
Quote:
Originally Posted by Dead Eye View Post
Gotta check my shit.
Can I come with you and help please?
__________________


👁️ 👍️ 💩
CurrentlySober is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 07:48 AM   #11
ladida
Confirmed User
 
ladida's Avatar
 
Join Date: Nov 2005
Posts: 2,166
Nothing new here to see, move on.
__________________
agentGFY *at* gmail.com
ladida is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 08:13 AM   #12
Manfap
Confirmed User
 
Manfap's Avatar
 
Industry Role:
Join Date: Jan 2013
Posts: 2,616
Quote:
Originally Posted by freecartoonporn View Post
please tell me they stored encrypted passwords and not in plaintext.
they say they did.

'While the passwords were encrypted (hashed with a salt that varies for each user), it is generally a best practice not to reuse the same password across multiple services, and we recommend that people change their passwords if they are doing so.'
Manfap is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 08:18 AM   #13
sleazyashell
Registered User
 
Industry Role:
Join Date: Nov 2018
Posts: 35
overhyped

Quote:
Originally Posted by AdultKing View Post
This seems to happen every week now.



*********************************
does it really matter... what personal information do we really have on quora...
sleazyashell is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 01:10 PM   #14
VRPdommy
Too lazy to set a custom title
 
Industry Role:
Join Date: Oct 2014
Posts: 10,676
Quote:
Originally Posted by freecartoonporn View Post
please tell me they stored encrypted passwords and not in plaintext.
If there is money involved, change your password every 12 months anyway.
Many times we do not learn of data breaches till long after the fact.
If I were working with larger amounts, I would change it every 4 months.

Never use your true birthdate where the folks you are giving it to have no real need for it.
Use the same fictitious date everywhere else so you can remember it as needed.

Use different passwords between what you use for really important stuff like banking and lame accounts like email, but keep them long and memorable in any case.

email is as important as banking cause if anyone gets a hold of your email, they may be able to change any of your other accounts without you knowing. Using cell text conformations is probably good, but I don't like it for some reason. Use both email and text if you are going to use them if you can. Having worked with voip systems the last 15 years, I don't exactly trust the full capability of the voice/data networks.

The point is, a person can pick up enough info from little pieces sprinkled around in lame sites to make everything else exposable. Limit your footprint where you can and skew data where it does not matter.

Your mothers maiden name, dob, last 4ssn can get you a full ssn. Your done !
(even less in some cases)

Facial ID is the coming thing. I don't like it either. Nor the idea we all have to give up our full biometric data to live.
Face ID, retina scan, finger print... perhaps soon DNA.
The face id goes to a larger 'track-ability' issue .

I can see the future of a insurance co raising your rates because you go in a bar or eat fast food more than twice a month etc etc etc
Until we have some really good rules on data privacy and punishment for breaching and hacks, we should not be using any biometrics for anything.
It all can be used against us in ways we have yet to see.
Who can collect it, can they store it, can they sell it... what about the hacks to it's storage.

Some large retailers have been experimenting in store with them. Almost all cams in banks and other security use have a new variety that make extracting biometric data from them easy and very accurate as those in your state BMV's/FBI data warehouses.
Facebook has been working with it for years on user photo and video even on old uploads.
That's how the FBI is finding folks so much faster from security footage and facebooks help.
...wait till those get hacked...it's only a matter of time...it may have already happened.
VRPdommy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 01:48 PM   #15
Bladewire
StraightBro
 
Bladewire's Avatar
 
Industry Role:
Join Date: Aug 2003
Location: Monarch Beach, CA USA
Posts: 56,232
Each user should be paid money in the hundreds or thousands of dollars every time this happens. Information & privacy ate worth money.
Bladewire is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 01:57 PM   #16
rowan
Too lazy to set a custom title
 
Join Date: Mar 2002
Location: Australia
Posts: 17,393
Quote:
Originally Posted by freecartoonporn View Post
please tell me they stored encrypted passwords and not in plaintext.
When my bank changed from a normal password field, which allowed me to enter both lower and upper case, to a "virtual" keyboard, which only allowed me to enter upper case, my mixed case password still worked when entered as all uppercase.

This suggests that the password was stored as plaintext.

Things that make you go HMMMMMM...
rowan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 01:59 PM   #17
rowan
Too lazy to set a custom title
 
Join Date: Mar 2002
Location: Australia
Posts: 17,393
Quote:
Originally Posted by sleazyashell View Post
does it really matter... what personal information do we really have on quora...
If people reuse passwords then an email address and password would be sufficient to access many other accounts.

Even if they use a unique password per site, other information such as security question answers or additional information like a name or DOB could help a hacker gain access to other accounts.
rowan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 05:39 PM   #18
bronco67
Too lazy to set a custom title
 
bronco67's Avatar
 
Join Date: Dec 2006
Posts: 29,035
What will be exposed? The time someone asked how to cure a cold sore in 24 hours?
__________________
bronco67 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-04-2018, 05:56 PM   #19
VRPdommy
Too lazy to set a custom title
 
Industry Role:
Join Date: Oct 2014
Posts: 10,676
Quote:
Originally Posted by bronco67 View Post
What will be exposed? The time someone asked how to cure a cold sore in 24 hours?
I did not know what they do. never been there.
But from the sounds of it, if I can get your email/phone or ip address and what you were seeking in health query, I could sell that to pharma marketing for a high rate per unit for targeting.

They might start with that and who knows what else. But the same data might be sold to multiple buyers at different pricing. Depending on what it is and the quality/quantity,
you might be able to extract $2 per unit or more in all. Some buyers might be geo targeting for specific things and other in bulk.

The larger issue comes down to folks that collect everything to give intense info to those that will pay very high dollar for it.

Welcome to big bad data farm analytics... completely free to obtain... a little harder to sell quietly but not that hard. Everyone is willing to pay a little more for a edge.
VRPdommy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-05-2018, 01:58 AM   #20
AdultKing
Raise Your Weapon
 
AdultKing's Avatar
 
Industry Role:
Join Date: Jun 2003
Location: Outback Australia
Posts: 15,605
Quote:
Originally Posted by sleazyashell View Post
does it really matter... what personal information do we really have on quora...
A compromised account is a treasure trove of information that can be leveraged.

If you logged into Quora via Facebook the hackers will presumably have your email address, photo, posting history, IP addresses, Date of Birth, Location and so on.

If you logged into Quora via an email/password pair then the hackers will have all of the above plus security questions and answers.

This data can be leveraged to gain access to other services, online accounts and so forth. This information is also probably enough to get the ball rolling on Identity Theft.

Don't underestimate the many uses to which cybercriminals will use data, they trade it as a commodity, the use it for further attacks, identity theft, fraud the number of uses of personal data is only limited by imagination.
AdultKing is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks

Tags
quora, million, hacked, led, exposure, data, third-party, unauthorized, users, approximately, happen, compromised, accounts, week, tonight, announced, systems
Thread Tools



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.