So.. Has Anandtech Been Hacked?

Page 2 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.

Genx87

Lifer
Apr 8, 2002
41,095
513
126
Sounds like they were hacked. But on a side note so far this upgrade has been unimpressive. Long maintenance downtimes and sometimes very slow posting.
 

TallBill

Lifer
Apr 29, 2001
46,044
62
91
Sounds like they were hacked. But on a side note so far this upgrade has been unimpressive. Long maintenance downtimes and sometimes very slow posting.

yeah, but the secret porn website password forum is a nice perk.
 

minendo

Elite Member
Aug 31, 2001
35,558
16
81
As I was saying in a previous post the thing they have fucked up the most isn't necessarily the vB upgrade so much as COMUNICATION!!! Tell us WTF is going on! Let us know what each maintenance period is for, what mistakes have been made. If they don't know WTF is going on the TELL US THAT TOO!! Otherwise this is just one big free for all!

Hell, I wish they would tell us what the fuck was going on.
 

FoBoT

No Lifer
Apr 30, 2001
63,089
12
76
fobot.com
COMUNICATION!!! Tell us WTF is going on!

If they don't know WTF is going on the TELL US THAT TOO!!

all i know is the ForumsAdmin account was taken over by an unauthorized person about 10:30 pm central time last night
Perknose has disabled or otherwise neutered that account as of a couple hours ago

'they' (senior moderators/forum directors) are still figuring it all out and haven't told us lesser moderators much about what is going on
 

moshquerade

No Lifer
Nov 1, 2001
61,713
12
56
all i know is the ForumsAdmin account was taken over by an unauthorized person about 10:30 pm central time last night
Perknose has disabled or otherwise neutered that account as of a couple hours ago

'they' (senior moderators/forum directors) are still figuring it all out and haven't told us lesser moderators much about what is going on
Loke's back?
 

Schadenfroh

Elite Member
Mar 8, 2003
38,416
4
0
I suggest that any of you that use the same password for the email account listed in your profile change it now. Just to be safe.

Loke's back
This breach was not his style.



We are still investigating.
 

moshquerade

No Lifer
Nov 1, 2001
61,713
12
56
I suggest that any of you that use the same password for the email account listed in your profile change it now. Just to be safe.


This breach was not his style.



We are still investigating.

crap. : /

you should sticky that suggestion.
 

zeruty

Platinum Member
Jan 17, 2000
2,276
2
81
Theoretically the passwords should be stored encrypted by vbulletin. If AT chose not to use that standard option, they are doing a great disservice to all users.

Even the administrators and DerekWilson should not be able to get our passwords, only reset them.
 

moshquerade

No Lifer
Nov 1, 2001
61,713
12
56
Theoretically the passwords should be stored encrypted by vbulletin. If AT chose not to use that standard option, they are doing a great disservice to all users.

Even the administrators and DerekWilson should not be able to get our passwords, only reset them.
I am quoting this for posterity.

Sometimes I wonder who is running this ship. No offense guys, because you all know tons more than I do about the inner workings of this place, but are there actual experts on board?
 

Platypus

Lifer
Apr 26, 2001
31,053
321
136
I'll once again offer my help if anyone is interested.

I realize that the migration was intense but it shouldn't have been as difficult as it was, it shouldn't have taken as long as it did and it's apparent due to some of the recent events that fresh perspective and eyes are needed. I don't know if it's pride that is affecting this but don't be afraid to reach out, there are some smart people here.
 

Gillbot

Lifer
Jan 11, 2001
28,830
17
81
Theoretically the passwords should be stored encrypted by vbulletin. If AT chose not to use that standard option, they are doing a great disservice to all users.

Even the administrators and DerekWilson should not be able to get our passwords, only reset them.

even encrypted, they can be pulled from the DB with the right knowledge.
 

Pepsei

Lifer
Dec 14, 2001
12,895
1
0
at any rate, people should've know better than to use the same password twice for anything. (remember when 4chan "hacked" facebook by just using a password list from another site?)

if you want something easy to remember, try this. for example, my favorite food is ..let's say corndog, add a number, say... my favorite year... 76

at www.gmail.com my password would be gcorndog76l
at anandtech my password would be acorndog76h
at amazon my passowrd would be acorndog76n
etc easy
 

zeruty

Platinum Member
Jan 17, 2000
2,276
2
81
Did the attacker have access to pull the entire DB files? Like are the DB files in a location where they can be grabbed via HTTP? Stored in public_html or something? Or did the attacker have access to login to the server? If they were able to grab the DB file, we might be in trouble.

Or did they just have access to one admin account? If so I don't think there is much risk.

Here's a page with discussion on how vB encrypts passwords with an md5 hash + salt hash
http://www.vbulletin.com/forum/archive/index.php/t-166062.html


I don't disagree that it's a good idea to change your password on this site and your email if its the same, but it's a good idea to assess the risk involved for the 256,000 inactive users who probably won't change their password.
 

SunnyD

Belgian Waffler
Jan 2, 2001
32,674
145
106
www.neftastic.com
Theoretically the passwords should be stored encrypted by vbulletin. If AT chose not to use that standard option, they are doing a great disservice to all users.

Even the administrators and DerekWilson should not be able to get our passwords, only reset them.

Most websites don't store your password. They store a hash of your password. It's not quite encryption, but your password itself never should be sent in the clear over the web. The javascript on the client-side usually generates a hash based on the text you type in, then the website checks the hash against the database. Ironically, if you get the hashes in the database, it's just about as good as having the password in plain text. It takes a little knowhow on what to do with it at this point, but it's really not rocket science by any means.

Please, don't blame the admins. Don't blame Anand. Don't blame Derek. It's not their fault that vBulletin is an enormously popular forum engine which makes it a prime target for hacking into (think Internet Explorer for example, or Windows as opposed to *nix).

These guys are doing what they can. In the mean time, you have to treat this as any other security breach on any other site you may use. Frankly, it's no different than your bank getting hacked. The only difference here is that Anand doesn't have the payroll employ a security team to safeguard each and every one of your trivial PMs and posts. And to be honest, this is a social technical forum. If you're worried that your password is hacked and going to steal your bank account information or emails, well then you've got bigger problems than the forums being hacked.
 

narzy

Elite Member
Feb 26, 2000
7,007
1
81
what I want to know is, whats up with the 'funny' notices? AT used to be rather professional...Not that I mind, just wondering about the 'change'
 

Q

Lifer
Jul 21, 2005
12,060
4
81
what I want to know is, whats up with the 'funny' notices? AT used to be rather professional...Not that I mind, just wondering about the 'change'

It's probably Perk, I never understand anything he says and
Our field hospitals are littered with the wounded and the merely annoyed, their blood curdling complaints chilling us all.
We will fight on the beaches, and in the hills and sub-forums, so that our valor or at least our sheer stubbornness will be cherished and remembered.
For as long as the English language is misused men will say, "This was their finest hour, sort of."
make me go
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |