Heads up! PLEASE READ

Welcome to our community

Be a part of something great, join today!

Could you post who did it, if it was a regular member at S2?

It was nobody who's ever posted here, as near as I can tell.

They could have been using someone else's system.
 
It was nobody who's ever posted here, as near as I can tell.

They could have been using someone else's system.
Damn, well that ruins the fun. :(

We could have had a good 'ol fashioned virtual public beheading or virtual throwing of tomatoes or something.
 
thanks for the information about the other board. the fact that they played the reset off as a "annual password reset" or whatever they called it is a shame... not going back there.
 
To be technical about it...

I don't know the full extent of how BBF was hacked. Your passwords are stored in the system encrypted; there's no way I can actually look at the DB and see your passwords. There may be hacks to the vB3 software that DO allow passwords to be stored so admins can see them; I don't know if BBF uses such a thing, and I know we don't. However, if a hacker gets the encrypted password, it is possible to turn it back into your real password, given enough time and fast enough computers.

I'm giving you the head's up so you can control your own destinies. I'd never hide any information like this and put anyone at risk, nor share your email addresses or other personal info with anyone who shouldn't have it.

You're right. Usually database systems are setup that they salt and hash your password, and thus it cannot be easily reverse engineered. However, if someone knows how the hash algorithm works or has a powerful enough computer, they can figure out everyone's password. It would be hard for the hacker to figure out your paypal or credit card account number from your forum handle, but you never know.

Better safe than sorry. Time for me to switch up my passwords anyways.
 
You're right. Usually database systems are setup that they salt and hash your password, and thus it cannot be easily reverse engineered. However, if someone knows how the hash algorithm works or has a powerful enough computer, they can figure out everyone's password. It would be hard for the hacker to figure out your paypal or credit card account number from your forum handle, but you never know.

Better safe than sorry. Time for me to switch up my passwords anyways.

The hash algorithm for vB3 is published on thousands of WWW sites if you google for it, so that's not an issue. They can be reverse engineered, and hackers tend to have access to dozens of hacked systems they can employ for doing the reverse/decryption.

My concern for people is that if they have their password compromised here or at another site AND use that same password for Yahoo! bill pay service, the hacker could use that password to log into your bill pay account.
 

Users who are viewing this thread

Back
Top