![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#101 |
Totally Borked
Industry Role:
Join Date: Feb 2005
Posts: 6,284
|
How is making people aware of an exploit that's been going on for some time a security issue? Nobody has posted how the exploit is achieved - just forewarning others that the issue is a real issue, which has made you sit up and take action. Isn't that a Good Thing??
__________________
![]() For coding work - hit me up on andy // borkedcoder // com (consider figuring out the email as test #1) All models are wrong, but some are useful. George E.P. Box. p202 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#102 | |
Confirmed User
Industry Role:
Join Date: May 2004
Posts: 6,659
|
Quote:
__________________
![]() Skype: JohnA1078 Too Much Media - Makers of the Industry's Leading Payite Management Platform, NATS! |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#103 | |
Confirmed User
Join Date: Aug 2004
Location: My dog is blacker than Tupac
Posts: 5,471
|
Quote:
It takes all of 1 min to back up your nats templates. I would suggest you do that now |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#105 | |
Totally Borked
Industry Role:
Join Date: Feb 2005
Posts: 6,284
|
Quote:
Through this very thread, started by someone wanting to know what was happening, other people have stepped forward with information that has helped others realise what has gone on. Followed on by your email, now all NATS clients realise there is a problem. Nothing untoward or compromising to others has been discussed.
__________________
![]() For coding work - hit me up on andy // borkedcoder // com (consider figuring out the email as test #1) All models are wrong, but some are useful. George E.P. Box. p202 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#106 | |
Totally Borked
Industry Role:
Join Date: Feb 2005
Posts: 6,284
|
Quote:
![]()
__________________
![]() For coding work - hit me up on andy // borkedcoder // com (consider figuring out the email as test #1) All models are wrong, but some are useful. George E.P. Box. p202 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#107 | |
Confirmed User
Industry Role:
Join Date: May 2004
Posts: 6,659
|
Quote:
I am not saying things people have said are horrendous. People have asked me to go into details about what we know and what we have done in the past here. I'm simply saying I think this is not the place for that.
__________________
![]() Skype: JohnA1078 Too Much Media - Makers of the Industry's Leading Payite Management Platform, NATS! |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#108 |
Registered User
Join Date: Nov 2006
Posts: 65
|
Im still in a state of utter disbelief that they knew or so long and didnt think to tell us.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#109 | |
Confirmed User
Industry Role:
Join Date: Aug 2001
Posts: 7,817
|
Quote:
I'm wondering if you have or are going to contact the authorities?
__________________
What name is pr0 / Untouched Markets using these days? Untouched Markets - pr0 - Refund My Money Now Someone owes me $2,000 because they didn't do any work that was paid for *pointing at pr0 / William / UntouchedMarkets* See http://www.gfy.com/fucking-around-and-business-discussion/948258-untouchedmarkets-pr0-refund-money-post16744521.html and for more detailed see http://www.gfy.com/fucking-around-and-business-discussion/948645-re-recent-bullshit-drama-explained-detail-pr0-untouched-markets.html |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#110 | |
Confirmed User
Industry Role:
Join Date: May 2004
Posts: 6,659
|
Quote:
I still do not believe it is a completely widespread issue but we are taking strong action anyway.
__________________
![]() Skype: JohnA1078 Too Much Media - Makers of the Industry's Leading Payite Management Platform, NATS! |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#111 | |
Confirmed User
Industry Role:
Join Date: May 2004
Posts: 6,659
|
Quote:
__________________
![]() Skype: JohnA1078 Too Much Media - Makers of the Industry's Leading Payite Management Platform, NATS! |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#112 |
Registered User
Join Date: Nov 2006
Posts: 65
|
Strong action doesnt mean shit now its happened, you have totally lost my confidence in your software, there has been a lot of talk everywhere about whats best NATS or CCbill, I think this turn of events has just answered that common thread topic!
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#113 |
Confirmed User
Industry Role:
Join Date: May 2004
Posts: 6,659
|
I'm sorry to hear that.
__________________
![]() Skype: JohnA1078 Too Much Media - Makers of the Industry's Leading Payite Management Platform, NATS! |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#114 | |
Totally Borked
Industry Role:
Join Date: Feb 2005
Posts: 6,284
|
Quote:
It looks like NATS has a security hole which is/is being/has been closed, I dunno. But you all need to be taking your customer's data security seriously and checking login logs periodically. You, the user are ultimately responsible for that. We are proactive on these matters, which is why we've been breach-free for some time now
__________________
![]() For coding work - hit me up on andy // borkedcoder // com (consider figuring out the email as test #1) All models are wrong, but some are useful. George E.P. Box. p202 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#115 |
Confirmed User
Industry Role:
Join Date: May 2004
Posts: 6,659
|
I am out of town and getting on a plane shortly. This will be my last post in this thread for at least hours. Please submit tickets if you have any further questions.
__________________
![]() Skype: JohnA1078 Too Much Media - Makers of the Industry's Leading Payite Management Platform, NATS! |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#116 |
Registered User
Join Date: Nov 2006
Posts: 65
|
It seems clear to me until TMM sorts its issues out sponsors can either wait and see or move now, theres plenty of options that john seriously needs to address namely MPA3 and Epoch are looking like a better option right now.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#117 | |
xxx
Industry Role:
Join Date: Jun 2003
Location: UK
Posts: 31,544
|
Quote:
I know firms in the UK facing BIG fines. I presume that websites based in the UK could also be subject to BIG fines.
__________________
The Affiliate Program |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#118 |
Confirmed User
Join Date: May 2002
Location: Paying Webmasters Millions Since 1999
Posts: 4,044
|
Looks pretty widespread to me...
__________________
![]() Dirty D - ICQ #1326843 - $1 Million Dollars of Bonus Money - 8,000+ FHG! Glory Hole Girlz - Crack Whore Confessions - Tampa Bukkake - Slut Wife Training - Fuck a Fan Electricity Play - Porn Video Drive - Theater Sluts - Skunk Riley - Ukraine Amateurs - Strapon Sessions |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#119 |
Registered User
Join Date: Nov 2007
Posts: 14
|
The scary thing is how easy MPA and Nats are to hack. The even scarier thing is both of those companies think their program can not be hacked. If they'd get off their high horse for a second they'd realize how many exploits each of them has they may be able to actually secure their script. Instead they are too busy getting drunk on their own kool aid.
Anybody thinking of buying Nats should read John's posts in this thread. Is that the type of guy you want to do business with?
__________________
I use the best sponsors so fucking lock and load: Quickbuck.com | WegCash.com | SicCash.com | |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#120 | |
Confirmed User
Join Date: Nov 2005
Posts: 2,167
|
Quote:
People in this thread are funny. Noone cares about their security untill it's either a) posted on a public board b) starts receiving complaints from members
__________________
agentGFY *at* gmail.com |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#121 | |
Registered User
Join Date: Nov 2006
Posts: 65
|
Quote:
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#122 | |
Totally Borked
Industry Role:
Join Date: Feb 2005
Posts: 6,284
|
Quote:
damn, I'm getting a bad throat *cough*
__________________
![]() For coding work - hit me up on andy // borkedcoder // com (consider figuring out the email as test #1) All models are wrong, but some are useful. George E.P. Box. p202 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#123 | |
Too lazy to set a custom title
Join Date: Jan 2003
Location: Los Angeles
Posts: 10,533
|
Quote:
__________________
![]() ![]() ![]() ![]() ![]() Blue Blood's SpookyCash.com Babe photography portfolio |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#124 | |
xxx
Industry Role:
Join Date: Jun 2003
Location: UK
Posts: 31,544
|
Quote:
have a drink of water.
__________________
The Affiliate Program |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#125 | |
Confirmed User
Join Date: Nov 2005
Posts: 2,167
|
Care about your own security, or hire someone if you want to be secure. No other way. And even then, you are NOT going to be unhackable, you'll just patch things faster, close holes faster, and minimise the damage. Live with it, internet is like that.
Quote:
__________________
agentGFY *at* gmail.com |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#126 |
Confirmed User
Join Date: Nov 2005
Posts: 2,167
|
By hiring someone that's worth alot more then what people in the industry think they are. Other then that, living in ignorance is possibly the best bet. What you don't know doesn't hurt you.
__________________
agentGFY *at* gmail.com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#127 |
Confirmed User
Join Date: May 2005
Location: Dee Dee Dee LAND!
Posts: 800
|
Please see thread
http://www.gfy.com/fucking-around-and-business-discussion/779742-oc3-networks-customers-urgent.html issue was knows to them LONG ago but rather then notifying customer they preferred the scare tactics... called Caz and threaten to sue. great way to conduct business. ![]()
__________________
QuadraNET - ICQ:2222 15312 - milan [nosp@m] QuadraNET.com 24/7 "REALLY ON-SITE" Support - Completely Premium Network Public & Private Network, Remote Reboot, Private VLANs 99.99% Guaranteed Network Uptime / BGP4 Multihomed 24/7 LIVE CHAT, Phone and Ticket Support 1-888-5-QUADRA |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#128 | |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Scotland
Posts: 2,238
|
Quote:
John's many posts have me feeling like a mug especially considering that he feels the problems was not widespread and he only informed certain clients who he thought it might have affected. Why not email all clients and request that they submit a ticket for an upgrade and have the TMM techs check it across the board? This could have been prevented if they had informed all clients from the get go. Your mightier than thou attitude about how little and how much people know or don't know is what is funny about this thread. ...
__________________
Programming today is a race between software engineers striving to build bigger and better idiot-proof programs, and the Universe trying to produce bigger and better idiots. So far, the Universe is winning. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#129 | |
Confirmed User
Join Date: Feb 2002
Location: Porn Central - California
Posts: 3,221
|
Quote:
As the day goes on and more people keep coming to me saying "Thank You" it just keeps getting better and better. I'm at a loss for words right now. ![]()
__________________
Sean Holland Vice President OrbitalPay / Global Electronic Technology (GET) SKYPE: iam.sean ::: sholland at orbitalpay.com 888-775-1500 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#130 | |
Totally Borked
Industry Role:
Join Date: Feb 2005
Posts: 6,284
|
Quote:
![]() Have your system admin monitor all admin accounts. By doing that you will have no more problems from this.
__________________
![]() For coding work - hit me up on andy // borkedcoder // com (consider figuring out the email as test #1) All models are wrong, but some are useful. George E.P. Box. p202 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#131 | |
Confirmed User
Join Date: Nov 2005
Posts: 2,167
|
Quote:
Fact 1. Several webmasters in this very thread knew about these issues. They ignored them knowingly (not the nats issue, the issues that their data is leaking) Fact 2. Several webmasters in this thread have been notified of harvesting emails from their databases in the past and have chose to ignore it (unrelated to the problem in the thread, but they have the hollier then thou attitude) Fact 3. There's alot more webmasters on this board that know their databases are compromised and still chose to ignore it. Now crawl back to where you came from since you have no idea what im talking about. Nats was once a good product while Nathan was around. I don't like John from TMM, nor do i like Garry from MPA, nor do i like any other software producer more then the other. I'm just stating facts. Facts you have no idea about.
__________________
agentGFY *at* gmail.com |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#132 |
Confirmed User
Join Date: May 2002
Location: Paying Webmasters Millions Since 1999
Posts: 4,044
|
Thank you for this thread.
A real eye opener... and answers a few questions about security that have recently come up!
__________________
![]() Dirty D - ICQ #1326843 - $1 Million Dollars of Bonus Money - 8,000+ FHG! Glory Hole Girlz - Crack Whore Confessions - Tampa Bukkake - Slut Wife Training - Fuck a Fan Electricity Play - Porn Video Drive - Theater Sluts - Skunk Riley - Ukraine Amateurs - Strapon Sessions |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#133 |
Yes that IS me. Bitch.
Industry Role:
Join Date: Nov 2001
Posts: 14,149
|
Hmm??
Here's something about your Fred Schank. Scroll down to the 3rd post under service providers http://www.getafreelancer.com/projec...rogrammer.html "I am the lead programmer for a software company based in NJ. We design backend software for webmasters. I have done the majority of the programming on a CMS geared towards the adult industry. I am interested in finding a few projects to work on, during my free time" |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#134 |
Yes that IS me. Bitch.
Industry Role:
Join Date: Nov 2001
Posts: 14,149
|
Can't post other forums, so here's screen cap.
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#135 | |
Too lazy to set a custom title
Industry Role:
Join Date: Feb 2003
Location: NJ
Posts: 13,332
|
Quote:
lets see how far this rabbit hole goes...
__________________
ISeekGirls.com since 2005 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#136 | |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Scotland
Posts: 2,238
|
Quote:
...
__________________
Programming today is a race between software engineers striving to build bigger and better idiot-proof programs, and the Universe trying to produce bigger and better idiots. So far, the Universe is winning. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#137 |
xxx
Industry Role:
Join Date: Jun 2003
Location: UK
Posts: 31,544
|
This is going to be a loooooooooooooooong thread.
best get your sig spots in and pretend you have somthing important to say on the subject. Looks like xmass will suck this year for Nats.
__________________
The Affiliate Program |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#138 | |
Totally Borked
Industry Role:
Join Date: Feb 2005
Posts: 6,284
|
Quote:
There are A LOT of responsible programme owners in this industry, some are more conscious and aware about certain matters than others, and nobody has ignored anything.
__________________
![]() For coding work - hit me up on andy // borkedcoder // com (consider figuring out the email as test #1) All models are wrong, but some are useful. George E.P. Box. p202 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#139 |
Confirmed User
Join Date: Feb 2002
Posts: 680
|
We did not plan to post in this thread since it had nothing to do about
us. But ShotGun and ladida changed that and their posts needs a reply from us. Now I don't want to go in to a discussion about whether this was a hack or an inside job. But ShotGun and ladida are correct when he say that any program is hackable. However, they are not correct when they say that we think that our program cannot be hacked. We are very aware of this, and have taken all available precautions possible and we continue to strive to keep up to date on what possible hackers try to achieve. We even hired two known hackers to try to hack in to our program, and on top of that when a prominent program moved over to MPA3 we had to have a 3rd party audit company go over the whole source code. All of this and still I am not saying we are totally un-touchable. No one is. However, the last two years we have not had one report about any hacks, we have gotten plenty of hack attempts reported, but no actual breach. But maybe the most important thing is that when and if we do get any breach we stop everything else we are doing to fix and update all programs. I can also guarantee you all that we do not have any one password working as master access to all MPA3 installs.
__________________
The Creator Of THE STANDARD* ![]() Choose between our impressive lineup of software's: MPA3® PRO - MPA3® ENTERPRISE - MPA3® Standard -MAS® CMS - and topping it off with amazing DESIGN, Consulting and Webmaster Services! ![]() Around since 1997 and the company that introduced "Cascading Billing" to the industry. MPA3® V5 - The most intuitive Affiliate Program Software ever made - MPA3® V5 – Anything Else Is A Replica |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#140 |
Confirmed User
Join Date: Sep 2003
Location: Los Angeles
Posts: 3,343
|
yeah seems it's overdue imo..
__________________
HomemadeCash.com - Homemade & GF sites powered by NScash.com HomemadeVideoPass.com - The only all homemade mega site OurHomemadePorno.com - Real couples fucking on camera Contact ICQ: 400-786-531 Email: fade AT nscash.com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#141 |
Ik ben een aap
Industry Role:
Join Date: Sep 2002
Location: Traffic Force Towers, Canada!
Posts: 18,874
|
We were affected by this as well.... thanks to Razorsharpe for calling me today to bring this to my attention. We'll be talking to the NATS guys tomorrow and hoping to have this resolved. Nats isn't exactly cheap, I really shouldn't have to deal with problems like this.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#142 | |
Confirmed User
Join Date: Feb 2002
Location: Porn Central - California
Posts: 3,221
|
Quote:
Have a good Holiday people - It's family time ![]()
__________________
Sean Holland Vice President OrbitalPay / Global Electronic Technology (GET) SKYPE: iam.sean ::: sholland at orbitalpay.com 888-775-1500 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#143 |
Confirmed User
Industry Role:
Join Date: Aug 2004
Location: Montreal, Canada
Posts: 5,600
|
I sure hope all the techs at NATS got their Xmas shopping done early - doesn't look like they'll have time this weekend.
I truly hope that Swiftwill being diligent with security, covered our ass with this. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#144 | ||
Confirmed User
Join Date: Nov 2005
Posts: 2,167
|
Quote:
Quote:
Furthermore, there's alot of backstabbing in this thread from people that supposedly "want to help". So nats got hacked. WOOO HOOO... What do you (or other in the thread) know exactly of the time that Mansion got hacked? Strongbox? Sitedepth? AdultWebware? Or any other shit that people use? So some are furious that they have not been notified? LOL. Get a grip. Ofcourse John is not gona make a public statement their server is compromised (if it is), or that they have a problem in the code. It'd be a suicide. Same as when any other porn company gets hacked, you don't see a public apology here that people's emails/personal info got harvested do you? No, they fix the shit and move on (or don't even fix it and blame someone else). Or when software companies fix faults in their software on your server without you even knowing that it was a live exploit through which your server got hacked?
__________________
agentGFY *at* gmail.com |
||
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#145 | |
Yes that IS me. Bitch.
Industry Role:
Join Date: Nov 2001
Posts: 14,149
|
Quote:
Re-read through the thread, as some users posted instructions on how to deny Fred from gaining access to the admin |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#146 |
Confirmed User
Join Date: Jan 2005
Location: Chicago, IL
Posts: 8,452
|
I would hope all of you who have been affected will contact the authorities about this. Whoever did this has to be somewhat knowledgeable with the industry. A run-of-the-mill hacker would have harvested the CC data as well as the e-mail data. The hacker knew what they could and couldn't get away with.
I'd suggest looking at the spam e-mails you received following the member signups. See if there is a common sponsor or theme to those spams. See if you can get the affiliate data from that particular sponsor. It shouldn't be too difficult to see who profited off this data. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#147 |
Confirmed User
Industry Role:
Join Date: Mar 2005
Location: ICQ: 211-417-740
Posts: 5,223
|
ccbill is coming out with their new cascading system right on time..
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#148 |
Confirmed User
Join Date: Jan 2005
Location: Chicago, IL
Posts: 8,452
|
Question for NATS sponsors. Would this have given them access to affiliate data? We promote a lot of NATS sponsors and store not only our business information but bank information and our password. I just want to know if they can see that and if so, we will change the payment method until the issue is resolved.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#149 |
Confirmed User
Join Date: May 2002
Location: Living on an Island
Posts: 310
|
So he works for TMM?
__________________
Promote exclusive British sites with Suburban Cash Suburban Amateurs - Danica Collins |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#150 |
Confirmed User
Join Date: May 2002
Location: Living on an Island
Posts: 310
|
Glad I dont use Nats
__________________
Promote exclusive British sites with Suburban Cash Suburban Amateurs - Danica Collins |
![]() |
![]() ![]() ![]() ![]() ![]() |