Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 01-19-2009, 08:24 PM   #1
Si
Such Fun!
 
Industry Role:
Join Date: Feb 2008
Posts: 13,900
when did this NATs Hack happen?

Was just reading this:

http://www.affiliatecheaters.com/miscellaneous/nats

When did it happen?

Probably very old news but i was just browsing through it was quite an interesting read.
Si is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 08:48 PM   #2
Ethersync
Confirmed User
 
Ethersync's Avatar
 
Join Date: Mar 2008
Location: London, Saint-Tropez, Bermuda, Moscow
Posts: 5,289
Here are a few threads I found....

http://www.gfy.com/it/794219-statement-regarding-nats-security-issue.html
http://www.gfy.com/fucking-around-and-business-discussion/794328-lot-epassporte-account-hacks-result-nats-security-holes.html
Ethersync is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 08:50 PM   #3
fris
Too lazy to set a custom title
 
fris's Avatar
 
Industry Role:
Join Date: Aug 2002
Posts: 55,236
pussy lips
__________________
Since 1999: 69 Adult Industry awards for Best Hosting Company and professional excellence.


WP Stuff
fris is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 08:51 PM   #4
dial
Confirmed User
 
Join Date: May 2006
Location: wherever you aren't
Posts: 1,225
there was never actually a "hack"

just a hundred chickens with their heads cut off running around acting like they knew what they were talking about

in reality it was a totally small deal that wasn't even all that newsworthy
__________________
boom chicka wah wah
dial is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 08:51 PM   #5
crockett
in a van by the river
 
crockett's Avatar
 
Industry Role:
Join Date: May 2003
Posts: 76,806
Just search "NATs Hack" and I'm sure you will come across the thread.. Might wanna do a search for "pornograph" as well, because the owner of NATs also owned pornograph before it was also used by a "rogue" mystry someone to do mass installs on many sites.. including my own..

But hey it's all top notch bro's so it's all cool.
__________________
In November, you can vote for America's next president or its first dictator.
crockett is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 08:52 PM   #6
hypedough
Confirmed User
 
hypedough's Avatar
 
Join Date: Sep 2007
Location: ** Now running NATS4: HypeDough.com! **
Posts: 3,743
Quote:
Originally Posted by crockett View Post
Just search "NATs Hack" and I'm sure you will come across the thread.. Might wanna do a search for "pornograph" as well, because the owner of NATs also owned pornograph before it was also used by a "rogue" mystry someone to do mass installs on many sites.. including my own..

But hey it's all top notch bro's so it's all cool.
Whoa f'ed up story there
__________________

Ricky D :: Hype Dough President | XBIZ.net | ICQ 172-939-826 AIM+Skype HypeDough | [NATS4]
Kayden420: ['09 '10 '11 XBIZ Nominee | Exclusive & HD] | ThePornScout: [Exclusive + Reality | Amateurs Want to Become Pornstars]
hypedough is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 08:54 PM   #7
dial
Confirmed User
 
Join Date: May 2006
Location: wherever you aren't
Posts: 1,225
Quote:
Originally Posted by hypedough View Post
Whoa f'ed up story there
not all that fucked up really

someone owned a site
they didn't want it anymore
they sold it
the new owners got malicious with it
the old owners are blamed
gfy is full of idiots
__________________
boom chicka wah wah
dial is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 09:07 PM   #8
crockett
in a van by the river
 
crockett's Avatar
 
Industry Role:
Join Date: May 2003
Posts: 76,806
Quote:
Originally Posted by dial View Post
not all that fucked up really

someone owned a site
they didn't want it anymore
they sold it
the new owners got malicious with it
the old owners are blamed
gfy is full of idiots

Maybe you should look into what the owner of the company whom took the installs said.. He claimed there was no "mysterious buyer" of that site and that it was JA himself whom did it. I'd assume the guy whom took the installs would know whom sent them and has publicly stated on another forum is was JA whom did it..

Think for 2 seconds.. you really think if he sold that counter and the buyer used it to fuck us all like he did, that he would have any reason to keep quiet about who bought it.
__________________
In November, you can vote for America's next president or its first dictator.

Last edited by crockett; 01-19-2009 at 09:10 PM..
crockett is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 09:07 PM   #9
dav3
Confirmed User
 
dav3's Avatar
 
Industry Role:
Join Date: May 2007
Posts: 7,348
I got a weird email this morning from change AT toomuchmedia.com

Hello,

Since we have been very bad with the girls lately we are going to stop the activity for a few months to rethink the strategy .
We have a plan but this might involve lower payouts.You will be notified though.

Thanks for understanding


I was like, uhh what?

Perhaps this would be a decent place to see if it makes sense to anyone.
__________________
Webmasters :: Juicy Ads :: ACWM :: Crak Revenue :: Money Tree
dav3 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 09:10 PM   #10
munki
Do Fun Shit.
 
munki's Avatar
 
Industry Role:
Join Date: Dec 2004
Location: OC
Posts: 13,393
Quote:
Originally Posted by dav3 View Post
I got a weird email this morning from change AT toomuchmedia.com

Hello,

Since we have been very bad with the girls lately we are going to stop the activity for a few months to rethink the strategy .
We have a plan but this might involve lower payouts.You will be notified though.

Thanks for understanding


I was like, uhh what?

Perhaps this would be a decent place to see if it makes sense to anyone.
__________________

I have the simplest tastes. I am always satisfied with the best.” -Oscar Wilde
munki is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 09:30 PM   #11
Manowar
jellyfish  
 
Join Date: Dec 2003
Posts: 71,528
Quote:
Originally Posted by dav3 View Post
I got a weird email this morning from change AT toomuchmedia.com

Hello,

Since we have been very bad with the girls lately we are going to stop the activity for a few months to rethink the strategy .
We have a plan but this might involve lower payouts.You will be notified though.

Thanks for understanding


I was like, uhh what?

Perhaps this would be a decent place to see if it makes sense to anyone.
Teen dolls?
Manowar is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 09:54 PM   #12
dav3
Confirmed User
 
dav3's Avatar
 
Industry Role:
Join Date: May 2007
Posts: 7,348
Quote:
Originally Posted by Manowar View Post
Teen dolls?
No, I'm not signed up with that one. I'm only signed up with a few that are not cams or dating. STFU Cash, Traffic Cash Gold, Incredible Dollars, HD Pays, Evil Angel, Score Cash, Perfect Gonzo, and Sex and Cash. Not sure which ones use NATS and which do not. I'm also not sure why I would get an email from toomuchmedia.com either.

I don't know, no biggie. Just seemed like an odd email and I figured some one else probably received the same one and had no clue about it either.
__________________
Webmasters :: Juicy Ads :: ACWM :: Crak Revenue :: Money Tree
dav3 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 10:30 PM   #13
Ethersync
Confirmed User
 
Ethersync's Avatar
 
Join Date: Mar 2008
Location: London, Saint-Tropez, Bermuda, Moscow
Posts: 5,289
Quote:
Originally Posted by dav3 View Post
I got a weird email this morning from change AT toomuchmedia.com

Hello,

Since we have been very bad with the girls lately we are going to stop the activity for a few months to rethink the strategy .
We have a plan but this might involve lower payouts.You will be notified though.

Thanks for understanding


I was like, uhh what?

Perhaps this would be a decent place to see if it makes sense to anyone.
I wonder what site they are talking about.
Ethersync is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 10:34 PM   #14
SmokeyTheBear
►SouthOfHeaven
 
SmokeyTheBear's Avatar
 
Join Date: Jun 2004
Location: PlanetEarth MyBoardRank: GerbilMaster My-Penis-Size: extralarge MyWeapon: Computer
Posts: 28,609
Quote:
Originally Posted by dial View Post
there was never actually a "hack"

just a hundred chickens with their heads cut off running around acting like they knew what they were talking about

in reality it was a totally small deal that wasn't even all that newsworthy
huh , their main admin password was exposed and used to steal data from thousands of users, across many nats sponsors i would call that a hack
__________________
hatisblack at yahoo.com
SmokeyTheBear is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 10:41 PM   #15
dav3
Confirmed User
 
dav3's Avatar
 
Industry Role:
Join Date: May 2007
Posts: 7,348
Quote:
Originally Posted by Ethersync View Post
I wonder what site they are talking about.
idk

The subject line said "activity stopped till further notice".

__________________
Webmasters :: Juicy Ads :: ACWM :: Crak Revenue :: Money Tree
dav3 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-19-2009, 10:45 PM   #16
Ethersync
Confirmed User
 
Ethersync's Avatar
 
Join Date: Mar 2008
Location: London, Saint-Tropez, Bermuda, Moscow
Posts: 5,289
Quote:
Originally Posted by dav3 View Post
idk

The subject line said "activity stopped till further notice".

weird...
Ethersync is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 12:19 AM   #17
TMM_John
Confirmed User
 
TMM_John's Avatar
 
Industry Role:
Join Date: May 2004
Posts: 6,658
Quote:
Originally Posted by SmokeyTheBear View Post
huh , their main admin password was exposed and used to steal data from thousands of users, across many nats sponsors i would call that a hack
Please don't spread misinformation.
TMM_John is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 12:25 AM   #18
Iron Fist
Too lazy to set a custom title
 
Join Date: Dec 2006
Posts: 23,400
Oh man, not this shit again.
__________________
i like waffles
Iron Fist is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 03:58 AM   #19
TeenCat
Too lazy to set a koala
 
TeenCat's Avatar
 
Industry Role:
Join Date: Jan 2007
Location: CZ/EU forever!
Posts: 16,139
Quote:
Originally Posted by PBucksJohn View Post
Please don't spread misinformation.
please tell the truth ... smokey is absolutelly right ... russians hackers wanted to hack one of thousands porn sites ... they got passfile, and ooops, there was nats admins pass ... it was working almost everywhere, but i cannot tell you more as i only read about it also ... doesnt matter what ttm says, this was the "hack"
__________________

6bot
/ Coming again very soon!
Svit Zlin Radio 24/7!
TeenCat is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 06:08 AM   #20
borked
Totally Borked
 
borked's Avatar
 
Industry Role:
Join Date: Feb 2005
Posts: 6,284
Quote:
Originally Posted by PBucksJohn View Post
Please don't spread misinformation.
Some point prior to November 2007, somebody got a hold of the nats admin passwords for a large number of sites. This was used to harvest member email addresses on a daily basis. TMm were told about this, but did not wish to discuss the matter. Annoyed that tmm were seemingly doing nothing about it, certainlynot informing their clients, OC3 went public on this board with their findings.

Is that more correct?

You mentioned during that thread that an investigationwas underway. Did anything result from that?
__________________

For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)



All models are wrong, but some are useful. George E.P. Box. p202
borked is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 09:46 AM   #21
tranza
ICQ: 197-556-237
 
Join Date: Jun 2003
Location: BRASIL !!!
Posts: 57,559
The link drop me in blogger.com, is it normal?
__________________
I'm just a newbie.
tranza is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 09:49 AM   #22
TeenCat
Too lazy to set a koala
 
TeenCat's Avatar
 
Industry Role:
Join Date: Jan 2007
Location: CZ/EU forever!
Posts: 16,139
Quote:
Originally Posted by tranza View Post
The link drop me in blogger.com, is it normal?
http://209.85.129.132/search?q=cache...ellaneous/nats
__________________

6bot
/ Coming again very soon!
Svit Zlin Radio 24/7!
TeenCat is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 11:21 AM   #23
SmokeyTheBear
►SouthOfHeaven
 
SmokeyTheBear's Avatar
 
Join Date: Jun 2004
Location: PlanetEarth MyBoardRank: GerbilMaster My-Penis-Size: extralarge MyWeapon: Computer
Posts: 28,609
Quote:
Originally Posted by PBucksJohn View Post
Please don't spread misinformation.
please tell me what part of what i said was misinformation ?

Was your admin username and pass exposed ?

Was it used to login to several nats sponsors and steal info from users ?

Didn't you come on gfy to verify your admin pass was compromised ?

Didnt several of your clients come on gfy and verify the compromised u/p was being used to skim info from their database ?

Isn't it true nats was aware of this compromise well before it was reported on gfy by your own admission ?

Isnt it true that even though you were aware of the compromise it wasnt until your clients reported this information on gfy that the usernames and passwords were changed ?

feel free to correct me if i am wrong , but thats how i remembered it ?
__________________
hatisblack at yahoo.com
SmokeyTheBear is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 11:41 AM   #24
natas
Confirmed User
 
Join Date: Mar 2002
Location: : unknown
Posts: 3,375
ooooooooh damn
natas is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 11:44 AM   #25
HorseShit
Too lazy to set a custom title
 
Join Date: Dec 2004
Posts: 17,513
a friendly bump for this thread
HorseShit is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 11:50 AM   #26
crockett
in a van by the river
 
crockett's Avatar
 
Industry Role:
Join Date: May 2003
Posts: 76,806
Quote:
Originally Posted by borked View Post
Some point prior to November 2007, somebody got a hold of the nats admin passwords for a large number of sites. This was used to harvest member email addresses on a daily basis. TMm were told about this, but did not wish to discuss the matter. Annoyed that tmm were seemingly doing nothing about it, certainlynot informing their clients, OC3 went public on this board with their findings.

Is that more correct?

You mentioned during that thread that an investigationwas underway. Did anything result from that?
It was the guy on the grassy null.. It's just like the "mystery" guy that "supposedly" bought pornogragh.com and fucked over many of us here on GFY by using it to infect our websites with BS installs.

__________________
In November, you can vote for America's next president or its first dictator.
crockett is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 11:57 AM   #27
borked
Totally Borked
 
borked's Avatar
 
Industry Role:
Join Date: Feb 2005
Posts: 6,284
Quote:
Originally Posted by crockett View Post
It was the guy on the grassy null.. It's just like the "mystery" guy that "supposedly" bought pornogragh.com and fucked over many of us here on GFY by using it to infect our websites with BS installs.
Funny youtube clip

What I don't understand, though you may have a better understanding of the situation is why the programme that alerted TMM to this security breach, so that TMM could investigate it, was subsequently treated as second class customers, with ticket response times taking a nose dive.

Or it mayjust have been my imagination...
__________________

For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)



All models are wrong, but some are useful. George E.P. Box. p202
borked is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 12:06 PM   #28
Si
Such Fun!
 
Industry Role:
Join Date: Feb 2008
Posts: 13,900
Very interesting sounds like a few people are still having problems or rants about the whole thing aswell.

So if I was to set up a program, what would be THE best way to do it, what system to use?

please don't say epoch or ccbill

Last edited by Si; 01-20-2009 at 12:10 PM..
Si is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 12:11 PM   #29
borked
Totally Borked
 
borked's Avatar
 
Industry Role:
Join Date: Feb 2005
Posts: 6,284
It depends how many sites and billers you have. If it's just 1, then CCBill (if you have CCBill that is)....

If you have multiple sites, and billers for cascades, then nats or mas is worth a look as they are easier to maintain/administer.
__________________

For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)



All models are wrong, but some are useful. George E.P. Box. p202
borked is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 12:31 PM   #30
KillerK
Confirmed User
 
Join Date: May 2008
Posts: 3,406
Bump for Porngraph! Can't believe we let him off that easy...
KillerK is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 12:42 PM   #31
V_RocKs
Damn Right I Kiss Ass!
 
Industry Role:
Join Date: Dec 2003
Location: Cowtown, USA
Posts: 32,391
Epoch or CCBILL...
V_RocKs is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 12:50 PM   #32
SmokeyTheBear
►SouthOfHeaven
 
SmokeyTheBear's Avatar
 
Join Date: Jun 2004
Location: PlanetEarth MyBoardRank: GerbilMaster My-Penis-Size: extralarge MyWeapon: Computer
Posts: 28,609
Quote:
Originally Posted by mobilefun1987 View Post
So if I was to set up a program, what would be THE best way to do it, what system to use?

please don't say epoch or ccbill
i would say NATS is your #1 choice. That may sound strange considering the previous comments but hey hacks do happen, i dont appreciate being accused of being a liar by john and i dont think nats handled the situation appropriately but with that being said, i can see somewhat why it was mishandled ( in my opinion ). What it boils down to is NATS makes business sense and while i dont think nats handled the situation properly i dont think any nefarious deeds were done with ill intent by anyone at nats and hopefully they learned a lesson besides just the security risk associated with this particular problem.
__________________
hatisblack at yahoo.com
SmokeyTheBear is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 01:53 PM   #33
ladida
Confirmed User
 
ladida's Avatar
 
Join Date: Nov 2005
Posts: 2,167
There's not a company mentioned in this thread that has not been hacked in one form or another in the past.
__________________
agentGFY *at* gmail.com
ladida is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 01:56 PM   #34
borked
Totally Borked
 
borked's Avatar
 
Industry Role:
Join Date: Feb 2005
Posts: 6,284
PBucksJohn:

Quote:
Originally Posted by borked View Post
You mentioned during that thread that an investigationwas underway. Did anything result from that?
Is your investigation complete? After more than 14 months, I would assume so. Was anyone indicted?

Who headed the investigation btw, because I find it odd that programmes that were involved in the member rape were not contacted as part of the investigation. If they were, I could have given you some very interesting logs, IP addresses from an independent internal investigation. Also from that, a whole bunch of emails from (non-adult) server owners that were hacked (and their logs) to hide the hackers trail revealed quite a trail of destruction, with some extremely interesting endpoints.

All to harvest emails (and god knows what else).

Very very unfortunately, I don't have the authority to release this information publicly, because I'm sure a few people here could take the trail to completion and help you find the person responsible for this. I no longer work for the company that holds this information, but if you don't know who that company is (think "first contact"), I can put you in touch with them if you wish to re-open your investigation.
__________________

For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)



All models are wrong, but some are useful. George E.P. Box. p202
borked is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 01-20-2009, 02:03 PM   #35
lazycash
Troll Patrol
 
Industry Role:
Join Date: Aug 2002
Location: Local Socal
Posts: 15,214
Lets get Minusonebit in here to clarify the matter.
lazycash is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.