Cryptography

Published on May 20th, 2019 📆 | 1858 Views ⚑

0

Hacking forum for trading stolen credentials hacked by other hackers


iSpeech.org

OGusers, a popular forum for trading stolen account credentials, has itself been hacked and details of members were published on another hacking forum.

The hackĀ started with an administrator telling users May 12 that a hard drive failure had erased a few months worth of private messages and forums posts, but a backup from January had brought the site back, minus more recent activity.

That ā€œhard drive failureā€ wasnā€™t all that it seemed, however. The administrator of rival hacking community RaidForumsĀ uploaded the entire OGusers database for free May 16.Ā The database holdsĀ usernames, email addresses, hashed passwords, private messages and IP address for nearly 113,000 users.

AlthoughĀ the passwords may have been hashed, the encryption method was MD5, an older form of encryption that can easily be hacked, putting the passwords of all users of the forum at risk.

ā€œI have uploaded the data from this database breach along with their website source files,ā€ an administrator wrote on RaidForums. ā€œTheir hashing algorithm was the default salted MD5 which surprised me, anyway the website owner has acknowledged data corruption but not a breach so I guess Iā€™m the first to tell you the truthā€¦. according to his statement he didnā€™t have any recent backups so I guess I will provide one on this thread lmfao.ā€

Suffice it to say, OGusers members are not impressed with the news, with some fearing that the hack may have been orchestrated by the U.S. Federal Bureau of Investigation since the forum also covers SIM swapping.

Ironically, after the hack had been disclosed, an OGusers administrator said that though he understands everyoneā€™s frustration, ā€œyou must realize other sites such as Twitter, Facebook, Dropbox, Forums you have used in the past, and many more have been breached at least once.ā€





Thereā€™s no evidence that the FBI or other law enforcement agencies were behind the hack, but now that the user database is online, itā€™s likely that they will be taking a deep interest in it.

The last word should go to Brian Krebs, who was one of the first to detail the hack Saturday. ā€œItā€™s difficult not to admit feeling a bit of schadenfreude in response to this event,ā€ Krebs wrote. ā€œItā€™s gratifying to see such a comeuppance for a community that has largely specialized in hacking others.ā€

Image: RaidForums

Since youā€™re here ā€¦

ā€¦ Weā€™d like to tell you about our mission and how you can help us fulfill it. SiliconANGLE Media Inc.ā€™s business model is based on the intrinsic value of the content, not advertising. Unlike many online publications, we donā€™t have a paywall or run banner advertising, because we want to keep our journalism open, without influence or the need to chase traffic.The journalism, reporting and commentary onĀ SiliconANGLEĀ ā€” along with live, unscripted video from our Silicon Valley studio and globe-trotting video teams atĀ theCUBEĀ ā€” take a lot of hard work, time and money. Keeping the quality high requires the support of sponsors who are aligned with our vision of ad-free journalism content.

If you like the reporting, video interviews and other ad-free content here,Ā please take a moment to check out a sample of the video content supported by our sponsors,Ā tweet your support, and keep coming back toĀ SiliconANGLE.



Source link

Tagged with: ā€¢ ā€¢ ā€¢ ā€¢ ā€¢ ā€¢



Comments are closed.