Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 12-23-2007, 05:16 AM   #1
Jet - BANNED FOR LIFE
So Fucking Banned
 
Join Date: Sep 2002
Posts: 7,515
I think a lot of Epassporte account hacks have been the result of NATS security holes

Think about how many people reported money stolen from their Epass accounts, saying they had no spyware/trojans on their PC.

I think it could be because of the NATS security holes.

If people used same login/password for their affiliate program accounts and their Epassporte account, i can see how easily money could have been be stolen.

Epassporte didn't have anything to do with it, but a lot of people blamed them.
Jet - BANNED FOR LIFE is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 05:53 AM   #2
Oracle Porn
Affiliate
 
Oracle Porn's Avatar
 
Industry Role:
Join Date: Oct 2002
Location: Icq: 94-399-723
Posts: 24,432
epass is to blame for the nats hack!
__________________


Oracle Porn is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 05:57 AM   #3
slavdogg
Confirmed User
 
Join Date: Jan 2001
Posts: 3,570
if you use epass
you're a scammer
simple as that.

and u'r one dumb motherfucker for trusting epass with your money.
__________________
Adult Traffic for Sale
slavdogg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:08 AM   #4
v4 media
Confirmed User
 
v4 media's Avatar
 
Industry Role:
Join Date: Feb 2005
Location: Spain
Posts: 2,934
Blame Canada
v4 media is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:09 AM   #5
Emil
Confirmed User
 
Emil's Avatar
 
Join Date: Feb 2007
Location: Sweden
Posts: 5,623
If people used same login/password for their affiliate program accounts and their Epassporte account, they're fucking retarded and should have their money stolen.

__________________
Free 🅑🅘🅣🅒🅞🅘🅝🅢 Every Hour (Yes, really. Free ₿itCoins.)
(Signup with ONLY your Email and Password. You can also refer people and get even more.)
Emil is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:11 AM   #6
polish_aristocrat
Too lazy to set a custom title
 
Join Date: Jul 2002
Posts: 40,377
Quote:
Originally Posted by slavdogg View Post
if you use epass
you're a scammer
simple as that.
so 90% of the adult industry are scammers...
__________________
I don't use ICQ anymore.
polish_aristocrat is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:15 AM   #7
slavdogg
Confirmed User
 
Join Date: Jan 2001
Posts: 3,570
Quote:
Originally Posted by polish_aristocrat View Post
so 90% of the adult industry are scammers...
the same 90% that controls 10% of all joins ??

yes if u use epass as your payout method, you're a scammer and should not be trusted.
__________________
Adult Traffic for Sale
slavdogg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:16 AM   #8
slavdogg
Confirmed User
 
Join Date: Jan 2001
Posts: 3,570
Quote:
Originally Posted by Emil View Post
If people used same login/password for their affiliate program accounts and their Epassporte account, they're fucking retarded and should have their money stolen.

agreed

hope more money gets stolen out of people's epass accnts
__________________
Adult Traffic for Sale
slavdogg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:17 AM   #9
Jet - BANNED FOR LIFE
So Fucking Banned
 
Join Date: Sep 2002
Posts: 7,515
Quote:
Originally Posted by slavdogg View Post
if you use epass
you're a scammer
you're an idiot.
Jet - BANNED FOR LIFE is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:19 AM   #10
slavdogg
Confirmed User
 
Join Date: Jan 2001
Posts: 3,570
Quote:
Originally Posted by Jet View Post
you're an idiot.
voice of an epass scammer ?
__________________
Adult Traffic for Sale
slavdogg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:23 AM   #11
minusonebit
So Fucking Banned
 
Join Date: Feb 2006
Posts: 7,391
Man this is scary, you might be right. Maybe it was NATS.
minusonebit is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:23 AM   #12
marketsmart
HOMICIDAL TROLL KILLER
 
Industry Role:
Join Date: Dec 2004
Location: Sunnybrook Institution for the Criminally Insane
Posts: 20,419
Quote:
Originally Posted by slavdogg View Post
if you use epass
you're a scammer
simple as that.

and u'r one dumb motherfucker for trusting epass with your money.
and you are a fucking noob.... shall i list all the companies that pay me by epass? i guarantee they are bigger that 90% of all the programs out there...
marketsmart is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:26 AM   #13
Ray@TastyDollars
 
Ray@TastyDollars's Avatar
 
Join Date: May 2002
Location: Montreal
Posts: 6,797
Webmaster, Epass, Biller, Admin, ect. Passwords are not available within the NATS admin area, all they/we see is ********.

The ONLY passwords they would be able to get a hold of with Admin access are member passwords.

The only place the passwords are stored are in the DB and it is encrypted. So the chances that your pass has been decrypted is very slim.

I can't speak for all programs but I can speak for mine, our DB was NOT compromised. Heck neither was our admin area, thanks to my host!

Ray
Ray@TastyDollars is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:29 AM   #14
Jet - BANNED FOR LIFE
So Fucking Banned
 
Join Date: Sep 2002
Posts: 7,515
Quote:
Originally Posted by Ray@TastyDollars View Post
The only place the passwords are stored are in the DB and it is encrypted. So the chances that your pass has been decrypted is very slim.
Why are you so sure of that?
Jet - BANNED FOR LIFE is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:29 AM   #15
slavdogg
Confirmed User
 
Join Date: Jan 2001
Posts: 3,570
Quote:
Originally Posted by marketsmart View Post
and you are a fucking noob.... shall i list all the companies that pay me by epass? i guarantee they are bigger that 90% of all the programs out there...
come suck my balls epass scammer

slavdogg
Registered User
Join Date: Jan 2001
Posts: 2,350
__________________
Adult Traffic for Sale
slavdogg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:34 AM   #16
Jet - BANNED FOR LIFE
So Fucking Banned
 
Join Date: Sep 2002
Posts: 7,515
slavdog this is uncalled for.

I use epassporte for my sponsor payouts. And I am honest person.
Jet - BANNED FOR LIFE is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:34 AM   #17
Ray@TastyDollars
 
Ray@TastyDollars's Avatar
 
Join Date: May 2002
Location: Montreal
Posts: 6,797
Quote:
Originally Posted by Jet View Post
Why are you so sure of that?
Because when you log into nats admin you dont see them and the only place you can get them is in the DB. This hack targeted the admin area only. Again, i speak for my program when I say our DB's have deff. NOT been hacked and im pretty sure this is the case for most other programs as well.

Admin area does not mean DB, simple.

Ray
Ray@TastyDollars is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:37 AM   #18
Jet - BANNED FOR LIFE
So Fucking Banned
 
Join Date: Sep 2002
Posts: 7,515
Quote:
Originally Posted by Ray@TastyDollars View Post
Because when you log into nats admin you dont see them and the only place you can get them is in the DB. This hack targeted the admin area only. Again, i speak for my program when I say our DB's have deff. NOT been hacked and im pretty sure this is the case for most other programs as well.

Admin area does not mean DB, simple.

Ray
I meant why you were so sure that the DB can't be hacked.

Iven John has admitted it was very possible.
Jet - BANNED FOR LIFE is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:43 AM   #19
Ray@TastyDollars
 
Ray@TastyDollars's Avatar
 
Join Date: May 2002
Location: Montreal
Posts: 6,797
Quote:
Originally Posted by Jet View Post
I meant why you were so sure that the DB can't be hacked.

Iven John has admitted it was very possible.
Even the Pentagon is hackable right? In this particular case the admin area was compromised. I spoke to many program owners last night and they all confired with their hosts that their DB's had not been hacked.

In THIS particular case.
Ray@TastyDollars is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:48 AM   #20
Jet - BANNED FOR LIFE
So Fucking Banned
 
Join Date: Sep 2002
Posts: 7,515
Quote:
Originally Posted by Ray@TastyDollars View Post
I spoke to many program owners last night and they all confired with their hosts that their DB's had not been hacked.

In THIS particular case.
How do they know if their DBs were hacked or not?

There are sponsors who say that full DB dumps were made by the intruder.

There is no way for the sponsors to know what happened to the stolen DBs.
Jet - BANNED FOR LIFE is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 06:51 AM   #21
Ray@TastyDollars
 
Ray@TastyDollars's Avatar
 
Join Date: May 2002
Location: Montreal
Posts: 6,797
Quote:
Originally Posted by Jet View Post
Ho

There are sponsors who say that full DB dumps were made by the intruder.

wow im really sorry to hear that! If they indeed were able to get a db dump just by having admin access I really hope these sponsors get their hosts to secure there db's a little better. Its bad enough that they had admin access, but db access to, fuck!
Ray@TastyDollars is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 07:15 AM   #22
Trixxxia
Confirmed User
 
Industry Role:
Join Date: Aug 2004
Location: Montreal, Canada
Posts: 5,600
Jet - not every program was hacked or compromised.
Some hosts are very diligent with their security and what access they allow on their servers. We are amongst some mighty happy clients of Swiftwill today and very very very thankful of their diligence.
Trixxxia is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 07:24 AM   #23
borked
Totally Borked
 
borked's Avatar
 
Industry Role:
Join Date: Feb 2005
Posts: 6,284
Quote:
Originally Posted by Jet View Post
How do they know if their DBs were hacked or not?

There are sponsors who say that full DB dumps were made by the intruder.

There is no way for the sponsors to know what happened to the stolen DBs.
Wow that sucks. The sponsors that had their databases wripped also had some serious security issues, unrelated to the current NATS security problem. They really do need to get their hosts to lock things down better
__________________

For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)



All models are wrong, but some are useful. George E.P. Box. p202
borked is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 09:57 AM   #24
Iron Fist
Too lazy to set a custom title
 
Join Date: Dec 2006
Posts: 23,400
Quote:
Originally Posted by v4 media View Post
Blame Canada
__________________
i like waffles
Iron Fist is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 10:12 AM   #25
HouseHead
Confirmed User
 
HouseHead's Avatar
 
Join Date: Aug 2003
Location: Aim - Hydromorphone
Posts: 5,539
lawsl you kids silly kids
__________________
The Sexiest place to Buy & Sell Adult Ads - JuicyAds is where YOUR profits matter!

---> SPOTS AVAILABLE
:|: SIGN UP RIGHT NOW <---
HouseHead is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 10:15 AM   #26
notoldschool
Confirmed User
 
notoldschool's Avatar
 
Join Date: Aug 2007
Posts: 5,687
Quote:
Originally Posted by slavdogg View Post
if you use epass
you're a scammer
simple as that.

and u'r one dumb motherfucker for trusting epass with your money.
DING DING DING......Surfer alert.
__________________
No doubt one may quote history to support any cause, as the devil quotes scripture.
-- Learned Hand

http://www.bjpenn.com
notoldschool is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 10:19 AM   #27
fuckingfuck
Confirmed User
 
Join Date: May 2007
Posts: 521
Epass works perfectly for me. I guess it's a few dimwits who have their money stolen (by giving their epass passwords to "epass reps" on msn!)
__________________
AA
fuckingfuck is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 10:58 AM   #28
patmccrotch
Confirmed User
 
Join Date: Oct 2002
Location: edinburgh
Posts: 655
Quote:
Originally Posted by Jet View Post
you're an idiot.
Funny coming from someone who started such an ignorant thread. Passwords are encrypted in nats as well as database information. The "hacker" who was snagging access via the nats admin couldn't even retrieve the encrpyted password string of an affiliate account to try and decrypt it.

Never the less, epassporte passwords are not even stored in nats.

dipshit.
patmccrotch is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 11:14 AM   #29
MrVids
i am a meat popsicle
 
MrVids's Avatar
 
Industry Role:
Join Date: Jan 2005
Location: Seattle, WA
Posts: 1,070
Quote:
Originally Posted by Jet View Post
How do they know if their DBs were hacked or not?

There are sponsors who say that full DB dumps were made by the intruder.

There is no way for the sponsors to know what happened to the stolen DBs.
Because the database password is not configurable via the admin and the encrypted string for the database password isn't even available via the admin for the "hacker" to try and decrypt it. Plus 95% of the time mysql databases are either IP restricted for access _or_ restricted solely to localhost for access.
MrVids is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 01:12 PM   #30
woj
<&(©¿©)&>
 
woj's Avatar
 
Industry Role:
Join Date: Jul 2002
Location: Chicago
Posts: 47,882
Quote:
Originally Posted by patmccrotch View Post
Funny coming from someone who started such an ignorant thread. Passwords are encrypted in nats as well as database information. The "hacker" who was snagging access via the nats admin couldn't even retrieve the encrpyted password string of an affiliate account to try and decrypt it.

Never the less, epassporte passwords are not even stored in nats.

dipshit.
A clever hacker could find at least a few ways to extract the passwords from the admin area.

The problem is, that some people may have used same password for nats as they used for epassporte. It's not very smart, but it's very possible that some users would actually do that.
__________________
Custom Software Development, email: woj#at#wojfun#.#com to discuss details or skype: wojl2000 or gchat: wojfun or telegram: wojl2000
Affiliate program tools: Hosted Galleries Manager Banner Manager Video Manager
Wordpress Affiliate Plugin Pic/Movie of the Day Fansign Generator Zip Manager
woj is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 05:07 PM   #31
slavdogg
Confirmed User
 
Join Date: Jan 2001
Posts: 3,570
Quote:
Originally Posted by woj View Post
A clever hacker could find at least a few ways to extract the passwords from the admin area.

The problem is, that some people may have used same password for nats as they used for epassporte. It's not very smart, but it's very possible that some users would actually do that.
if that was the case i hope their epass accnts got cleaned out.
__________________
Adult Traffic for Sale
slavdogg is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 05:10 PM   #32
DamageX
Marketing & Strategy
 
DamageX's Avatar
 
Industry Role:
Join Date: Jun 2001
Location: Former nomad
Posts: 14,293
Quote:
Originally Posted by Trixxxia View Post
Jet - not every program was hacked or compromised.
Some hosts are very diligent with their security and what access they allow on their servers. We are amongst some mighty happy clients of Swiftwill today and very very very thankful of their diligence.
Stop hackers dead - use SwiftWill.
__________________
Whitehat is for chumps

If you don't do it, somebody else will - true story!
DamageX is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 05:21 PM   #33
papill0n
Unregistered Abuser
 
Industry Role:
Join Date: Oct 2007
Posts: 15,547
Quote:
Originally Posted by slavdogg View Post
yes if u use epass as your payout method, you're a scammer and should not be trusted.
yeah, everyone who uses epassporte is a scammer
papill0n is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 05:32 PM   #34
xentech
Confirmed User
 
xentech's Avatar
 
Join Date: Jan 2006
Location: England
Posts: 1,405
Very good point Jet
xentech is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 12-23-2007, 09:09 PM   #35
Pleasurepays
BANNED - SUPPORTING TUBES
 
Join Date: Aug 2002
Location: I live in a pile of boogers
Posts: 11,913
Quote:
Originally Posted by notoldschool View Post
DING DING DING......Surfer alert.

hahah..

GFY is always entertaining. Now we have surfers calling out industry legends that they think are surfers


Pleasurepays is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.