Southperry.net
I'm getting hacked - Printable Version

+- Southperry.net (https://www.southperry.net)
+-- Forum: Maplers Helping Maplers (https://www.southperry.net/forumdisplay.php?fid=9)
+--- Forum: Technical Help (https://www.southperry.net/forumdisplay.php?fid=84)
+--- Thread: I'm getting hacked (/showthread.php?tid=13948)



I'm getting hacked - crewe127 - 2009-07-23

I go to login to the Nexon site to pitch them an idea. When I go to login, with the 100% correct info, and they tell me my account is blocked for 10 minutes for failing to login with the correct info too many times. I tried to login once!

Am I the only one, or is somebody out to get me?

Also, I just logged in on my alt acct, and got in perfectly fine!


I'm getting hacked - KajitiSouls - 2009-07-23

Either someone's out to get you or your internet browser is on the fritz.


I'm getting hacked - Blaine - 2009-07-23

It may be someone who's spited you has your ID and is just spamming incorrect passwords.


I'm getting hacked - XgrantwallX - 2009-07-23

It's not just you. It happens for quite a few people. It's strange when it does. I had it happen on both the Nexon forums and the main website about 30 minutes ago. I can log in just fine now though.


I'm getting hacked - Derimed - 2009-07-24

If you're really worried, use my thread in the General forum to create a new, strong password for your account. If someone indeed is trying to hack you, this will stop them unless they keylog you and you dl the thing.


I'm getting hacked - Kortestanov - 2009-07-24

Quantact Wrote:If you're really worried, use my thread in the General forum to create a new, strong password for your account. If someone indeed is trying to hack you, this will stop them unless they keylog you and you dl the thing.
The passwords there are over-complicated. Such a strong password is not helping in any way, not to mention that no one can remember a password such as S4!7(oZ#v!3%. You'll either forget it or write it down somewhere.
Having a 6 characters long password with 3 different character types (e.g. letters, captial letters and numbers) that doesnt resemble a dictionary word is already an overkill.


I'm getting hacked - Anton - 2009-07-24

Kortestanov Wrote:The passwords there are over-complicated. Such a strong password is not helping in any way, not to mention that no one can remember a password such as S4!7(oZ#v!3%. You'll either forget it or write it down somewhere.
Having a 6 characters long password with 3 different character types (e.g. letters, captial letters and numbers) that doesnt resemble a dictionary word is already an overkill.

You won't forget it if you take 30 mins to learn your password... Even with 1 special character the chances you're getting hacked are much smaller.


I'm getting hacked - Kortestanov - 2009-07-24

Anton Wrote:You won't forget it if you take 30 mins to learn your password... Even with 1 special character the chances you're getting hacked are much smaller.
Why would I waste 30 mins of my life to learn something that doesn't help me at all? Theres no "smaller" chance, because even with a not very complicated password that doesnt resemble any word your chances to get hacked are zero, considering you don't have a keylogger, didn't give your password away and nexon didn't get hacked. It's practically impossible to brute force a password over the internet... Eos took over 10 hours to brute force something with 65,000 possibilities. Even an extraordinary weak 6 characters password with only non captial letters has over 244,140,625 possibilities, which is equal to about 35,000 hours of brute-forcing. See where I'm getting? It's not possible to crack passwords over the internet. Period. Even if your password IS a dictionary word (which is the weakest type of passwords), dictionary attack lists are usually 1.5m words long. thats equal to almost a week of attacking. And all of these calculations are not even including the 10 minutes ban you get every 5 tries.


I'm getting hacked - KajitiSouls - 2009-07-24

Kortestanov Wrote:Why would I waste 30 mins of my life to learn something that doesn't help me at all? Theres no "smaller" chance, because even with a not very complicated password that doesnt resemble any word your chances to get hacked are zero, considering you don't have a keylogger, didn't give your password away and nexon didn't get hacked. It's practically impossible to brute force a password over the internet... Eos took over 10 hours to brute force something with 65,000 possibilities. Even an extraordinary weak 6 characters password with only non captial letters has over 244,140,625 possibilities, which is equal to about 35,000 hours of brute-forcing. See where I'm getting? It's not possible to crack passwords over the internet. Period. Even if your password IS a dictionary word (which is the weakest type of passwords), dictionary attack lists are usually 1.5m words long. thats equal to almost a week of attacking. And all of these calculations are not even including the 10 minutes ban you get every 5 tries.

Dictionary attacks are most effective against the whole database of logins and passwords, NOT against a single person. (the person that coined this term had a success rate of 40%) To use a dictionary attack against a single user is just plain stupid and everyone would laugh at you.

It's definitely possible to crack passwords over t3h intarwebs. Check out Twitter: some hacker managed to guess an admin's email account password (I dunno how, but he did) and managed to wreak havoc. All things considered, if someone's really desperate, they'll even try to guess "zbstuv24". Yes, that was seriously someone's password.


I'm getting hacked - Acim - 2009-07-24

Kortestanov Wrote:The passwords there are over-complicated. Such a strong password is not helping in any way, not to mention that no one can remember a password such as S4!7(oZ#v!3%. You'll either forget it or write it down somewhere.
Having a 6 characters long password with 3 different character types (e.g. letters, captial letters and numbers) that doesnt resemble a dictionary word is already an overkill.

I can remember my 11-digit password consisting of random numbers and letters and capitalization perfectly. I just did the recover password thing and they send you a random password of numbers and letters and I never felt like changing it.

It might be someone just spamming passwords to get you banned for 10 minutes like someone else said. I did that to one of my friends when I was really pissed at him.

EDIT: What Quantact said.


I'm getting hacked - Derimed - 2009-07-24

Kortestanov Wrote:The passwords there are over-complicated. Such a strong password is not helping in any way, not to mention that no one can remember a password such as S4!7(oZ#v!3%. You'll either forget it or write it down somewhere.
Having a 6 characters long password with 3 different character types (e.g. letters, captial letters and numbers) that doesnt resemble a dictionary word is already an overkill.

I never use a password that DOESN'T look like S4!7(oZ#v!3%, it's quite easy to memorize them. At first you look at the place you saved your pass, eventually your fingers run through the pass without you thinking about it. S4!7(oZ#v!3% takes 2 seconds to type once you've used it long enough, and it offers maximum protection, more so than less complex passes.


I'm getting hacked - SuGaRnSp1C3 - 2009-07-24

Quantact Wrote:I never use a password that DOESN'T look like S4!7(oZ#v!3%, it's quite easy to memorize them. At first you look at the place you saved your pass, eventually your fingers run through the pass without you thinking about it. S4!7(oZ#v!3% takes 2 seconds to type once you've used it long enough, and it offers maximum protection, more so than less complex passes.

So true Poast I always have my passwords(for games) on a snicky note on my desk just in case I had a brain fart so I don't have to go through password recovery or anything.


I'm getting hacked - Sarah - 2009-07-24

SuGaRnSp1C3 Wrote:So true Poast I always have my passwords(for games) on a snicky note on my desk just in case I had a brain fart so I don't have to go through password recovery or anything.

Hacker proof but... there's a bigger predator here... a greater threat... the parent and/or sibling.


I'm getting hacked - Blaine - 2009-07-24

Acim Wrote:I can remember my 11-digit password consisting of random numbers and letters and capitalization perfectly. I just did the recover password thing and they send you a random password of numbers and letters and I never felt like changing it.

It might be someone just spamming passwords to get you banned for 10 minutes like someone else said. I did that to one of my friends when I was really pissed at him.

EDIT: What Quantact said.

Pft. That's what I said. :[ The odds of guessing one person's password are almost non-existant. However, if you have something like coconut and you try like a thousand IDs, you'd probably get one or two.


I'm getting hacked - SuGaRnSp1C3 - 2009-07-24

BombsAway Wrote:Hacker proof but... there's a bigger predator here... a greater threat... the parent and/or sibling.

My siblings don't live w/ me anymore & my parents very rarely go in my room to use my PC especially since they have their own.


I'm getting hacked - Kortestanov - 2009-07-24

KajitiSouls Wrote:It's definitely possible to crack passwords over t3h intarwebs. Check out Twitter: some hacker managed to guess an admin's email account password (I dunno how, but he did) and managed to wreak havoc. All things considered, if someone's really desperate, they'll even try to guess "zbstuv24". Yes, that was seriously someone's password.
I don't believe in rumors. How do you know he cracked the password? maybe he got it through a keylogger\phishing site? Cracking a password over the internet is not even logically possible. I can't even think about a way to do it in less than a million years.


I'm getting hacked - rassilon - 2009-07-24

Kortestanov Wrote:I don't believe in rumors. How do you know he cracked the password? maybe he got it through a keylogger\phishing site? Cracking a password over the internet is not even logically possible. I can't even think about a way to do it in less than a million years.

Well, at least I don't have to worry about you cracking my password. Wink

I hadn't considered that they'd use a dictionary attack against thousands at once. Yeah, that probably would get a bunch of people.


I'm getting hacked - Derimed - 2009-07-25

Kortestanov Wrote:I don't believe in rumors. How do you know he cracked the password? maybe he got it through a keylogger\phishing site? Cracking a password over the internet is not even logically possible. I can't even think about a way to do it in less than a million years.

Some hacker managed to get into the Pentagon a few years ago. He was taken to federal court, where even the prosecutor said that he "just wanted to see the recipe for the secret sauce." Clearly, the internet is not as benign as you're making it out to be. Most hackers of that level will try to steal money, identities, or something similar. Cracking someone's PayPal account, for example.


I'm getting hacked - Kortestanov - 2009-07-27

Quantact Wrote:Some hacker managed to get into the Pentagon a few years ago. He was taken to federal court, where even the prosecutor said that he "just wanted to see the recipe for the secret sauce." Clearly, the internet is not as benign as you're making it out to be. Most hackers of that level will try to steal money, identities, or something similar. Cracking someone's PayPal account, for example.
With all due respect to the internet, it has yet to beat science and mathematics. And if you do a simple calculation of the amount of options for a 6 characters password, you will understand that its impossible to brute force it considering the current data-transfer speed over the internet. Pay attention to what I said, it's not possible to brute force one. I'm not saying that there's no way to hack a password, I'm saying its impossible to brute force it.


I'm getting hacked - SuGaRnSp1C3 - 2009-07-27

Kortestanov Wrote:With all due respect to the internet, it has yet to beat science and mathematics. And if you do a simple calculation of the amount of options for a 6 characters password, you will understand that its impossible to brute force it considering the current data-transfer speed over the internet. Pay attention to what I said, it's not possible to brute force one. I'm not saying that there's no way to hack a password, I'm saying its impossible to brute force it.

And here is your proof of the twitter incident. He made the TOOL (a password guesser) himself. So it is POSSIBLE to brute force over the internet using what he used. Case Closed..

http://www.wired.com/threatlevel/2009/01/professed-twitt/

same story, but more common site:

http://www.computerworld.com/s/article/332133/Password_Fail