Quote:
Originally Posted by CaptainYooh
A message popped up on my phone today that my username was among other usernames identified in the data leak from this forum.
1) Did anyone else receive this message?
2) Was there a data leak?
3) If yes, what information has been leaked/breached?
Can the administrators comment, please?
|
Where was this message from? Was it the browser? If so what browser?
1) I've never seen it, though I have seen the Google message fundmark19 mentions before.
2) Not to my knowledge. Many years ago we did have an issue with site files being updated to introduce code onto the webpage of the site, but that never touched the database server or software to my knowledge
Krovikan's post sums it up if some had gotten access to the database.
They would have a list of email addresses and password hashes and with enough effort they could reverse engineer the passwords one by one. The big risk there is if people don't practice good password hygiene and use the same password from the forum and on their email, which would give someone access to a lot of stuff (since most sites use email to do password resets). Always have different passwords on different sites, but at the very least always make sure your email is different than everything else and use a very strong password and 2 factor authentication if your email provider offers it (and switch to one that does if they don't).
They'd also have a list of IPs a person has posted from which as mentioned isn't overly accurate in terms of determining location and likely not overly useful for what such hackers would be looking for.
And any other information that was provided during the registration process.
If you have any other questions or want to let me know more details you can post here or PM me.