• Register
  • TOS
  • Privacy
  • @NeoGAF

Enco
Member
(06-11-2011, 06:04 PM)
Enco's Avatar
No prizes for guessing who did this...

After high profile takedowns of PBS and Sony, the anarchic hacker group LulzSec now seems determined to maximize its exploits’ embarrassment factor.

On Friday afternoon the group announced that it had stolen and posted administrative emails and passwords for 55 porn sites, along with another 26,000 emails and passwords for users of the sex site Pron.com.

“Hi! We like porn (sometimes), so these are email/password combinations from pron.com which we plundered for the lulz,” reads a statement posted to the group’s website Lulzsecurity.com.

Those email addresses can’t be used to access users’ accounts on Pron.com without an additional username. But the posted data violates those users’ privacy on a more basic level, exposing them as visitors to the highly not-safe-for-work site. The group took special pleasure in pointing out that six of those users had signed up for the site using their government or military .gov and .mil email accounts.

LulzSec, a which has ties to the hacker collective Anonymous, has become one of the least predictable forces in the world of cybersecurity since it emerged just two weeks ago. After defacing the website of PBS and exposing many of its employees’ personal information in retaliation for a negative documentary program on WikiLeaks, it proceeded to target Sony, compromising one million passwords and leaking the source code for the Sony Computer Entertainment Developer Network.

In just the last 24 hours, LulzSec seemed to temporarily adopt more “whitehat” hacker practices, notifying the British National Health Service to password vulnerabilities on its network and taking down a Muslim extremist website. But the latest porn hack shows just how wildly the group is varying its targets. “We have no direct plans for targets today, but we’ll think of something,” LulzSec wrote on its Twitter feed just hours earlier. “Improvisation is a required Lulz Boat skill!”

Source

Saw some of the passwords by accident (being serious) and my god are they ridiculous. So simple. Not sure how this was done though.
Escape Goat
(06-11-2011, 06:05 PM)
Lulzec is going to have the world after them.


Commence War on Cyber Terror.
Hot Coldman
Member
(06-11-2011, 06:05 PM)
Hot Coldman's Avatar
Who the fuck registers for a porn site?
BoboBrazil
Member
(06-11-2011, 06:06 PM)
BoboBrazil's Avatar
nevermind, saw they did
bud
straight
(06-11-2011, 06:06 PM)
bud's Avatar

“We have no direct plans for targets today, but we’ll think of something,''

lulz
Enco
Member
(06-11-2011, 06:06 PM)
Enco's Avatar

Originally Posted by BoboBrazil

Did they release the porn pass list?

Yup.

Well some anyway.
Dega
Eeny Meenie Penis
(06-11-2011, 06:06 PM)
Dega's Avatar
Today is gonna be a good day.

You guys feeling it?
Zwei
Member
(06-11-2011, 06:07 PM)
Zwei's Avatar

Originally Posted by BoboBrazil

Did they release the porn pass list?

I would like to see this as well. :D
Ripclawe
Banned
(06-11-2011, 06:10 PM)
Ripclawe's Avatar
who registers with their real email addy for a porn site?
Enco
Member
(06-11-2011, 06:11 PM)
Enco's Avatar

Originally Posted by Zwei

I would like to see this as well. :D

You can find them by searching. Not gonna post a link since the combos will probably work with FB and other stuff (and I don't want to help them).

However, here is something pretty harmless:

password -> frequency
-------------------------
123456 -> 669 (0.03 %)
123456789 -> 211 (0.01 %)
12345 -> 110 (0 %)
1234 -> 74 (0 %)
12345678 -> 71 (0 %)
1234567 -> 64 (0 %)
| -> 63 (0 %)
password -> 62 (0 %)

The top ten used passwords. Not surprising.
BoboBrazil
Member
(06-11-2011, 06:12 PM)
BoboBrazil's Avatar

Originally Posted by Enco

You can find them by searching. Not gonna post a link since the combos will probably work with FB and other stuff (and I don't want to help them).


Nope, from their twitter

"LulzSec The Lulz Boat
Props to Facebook security for locking all emails located on our list so fast. That's the kind of security that earns a tip of our hat.
17 hours ago"
Tntnnbltn
Member
(06-11-2011, 06:13 PM)
Tntnnbltn's Avatar

Originally Posted by Enco

The top ten used passwords. Not surprising.

"|" kind of is.
Big Baybee
Member
(06-11-2011, 06:14 PM)
Big Baybee's Avatar
What happened to their noble cause? People defending them?
Enco
Member
(06-11-2011, 06:15 PM)
Enco's Avatar

Originally Posted by BoboBrazil

Nope, from their twitter

"LulzSec The Lulz Boat
Props to Facebook security for locking all emails located on our list so fast. That's the kind of security that earns a tip of our hat.
17 hours ago"

Ah that's cool of facebook to do!

I doubt gmail and/or other services have reacted that quickly though. I hope they have.

Originally Posted by Tntnnbltn

"|" kind of is.

Yea I suppose. Not sure if that's just a formatting error though. Another popular one is bigdick :lol
FOOTE
Member
(06-11-2011, 06:49 PM)
FOOTE's Avatar

Originally Posted by Green Scar

Who the fuck registers for a porn site?

this, wow
Machado
Member
(06-11-2011, 06:50 PM)
Machado's Avatar
I fear for GAF getting hacked
Chamber
love on your sleeve
(06-11-2011, 06:52 PM)
Chamber's Avatar
LMAO @ people using their government email.

Shameful.
-BLITZ-
Member
(06-11-2011, 06:54 PM)
-BLITZ-'s Avatar

Originally Posted by Machado

I fear for GAF getting hacked

You give ideas to the hackers :(. The last thing I need to see is this to happend.
vilmer_
Member
(06-11-2011, 06:55 PM)
vilmer_'s Avatar
Saw this last night. People are re-tweeting about getting into people's facebook/email based on these usernames and passwords and defacing them :/
Seraphinianus
Banned
(06-11-2011, 06:55 PM)

Originally Posted by Machado

I fear for GAF getting hacked


the idea is that they're hacking places with shitty security and exposing idiots who use bad passwords.
Momo
Banned
(06-11-2011, 06:55 PM)
Momo's Avatar

Originally Posted by Machado

I fear for GAF getting hacked

It's not far off now, I'm sure they are filling their lulboat as we speak.

*actually this is probably a good time to change all my passwords to potato$ack or something dumb till all the hacking has quiet down*
Enco
Member
(06-11-2011, 06:56 PM)
Enco's Avatar

Originally Posted by Machado

I fear for GAF getting hacked

That would be.. interesting.. and terrifying, funny, crazy, infuriating, sadness inducing and a pain.

We will stand united. Put behind us all disagreements and fight back or we all get destroyed.
Chamber
love on your sleeve
(06-11-2011, 06:57 PM)
Chamber's Avatar

Originally Posted by Smision

the idea is that they're hacking places with shitty security and exposing idiots who use bad passwords.

I'm fucked.
Enco
Member
(06-11-2011, 06:58 PM)
Enco's Avatar

Originally Posted by Chamber

I'm fucked.

1234567?
Seraphinianus
Banned
(06-11-2011, 06:59 PM)

Originally Posted by Enco

That would be.. interesting.. and terrifying, funny, crazy, infuriating, sadness inducing and a pain.

We will stand united. Put behind us all disagreements and fight back or we all get destroyed.



send out a strong frontline of bronies to absorb the first volleys of bullets
Enco
Member
(06-11-2011, 07:02 PM)
Enco's Avatar

Originally Posted by Smision

send out a strong frontline of bronies to absorb the first volleys of bullets

Haha.

I vote juniors. Take one for the team.
WAWAZA
Member
(06-11-2011, 07:02 PM)
WAWAZA's Avatar
what do hackers got against porn?
subrock
Member
(06-11-2011, 07:04 PM)
subrock's Avatar
If people used shitty passwords to register for a porn site, does that not indicate that the password was a throw-away one and is most likely useless on any other site
boundedseven
Banned
(06-11-2011, 07:36 PM)
The US govt/Military password are hilarious: Mywife01, karlmarx........
WedgeX
Livin' Like A King
(06-11-2011, 07:38 PM)
WedgeX's Avatar

Originally Posted by Green Scar

Who the fuck registers for a porn site?

Seriously.
RustyNails
with arms wide open / under the sunlight / welcome to this place / i'll show you everythaaaang
(06-11-2011, 07:38 PM)
RustyNails's Avatar

Originally Posted by Ripclawe

who registers with their real email addy for a porn site?

Originally Posted by Green Scar

Who the fuck registers for a porn site?

Golf dads, people over 55 and people in places of power such as politicians or company executives.
skybaby
Member
(06-11-2011, 07:52 PM)
nm
Parallax Scroll
best in Shadow of the Beast
(06-11-2011, 08:11 PM)
Parallax Scroll's Avatar
Jamesfrom818
Banned
(06-11-2011, 08:14 PM)
Jamesfrom818's Avatar
Video games and porn? They're not making many friends.
SystemShock2
Member
(06-11-2011, 08:27 PM)
SystemShock2's Avatar

password -> frequency
-------------------------
123456 -> 669 (0.03 %)
123456789 -> 211 (0.01 %)
12345 -> 110 (0 %)
1234 -> 74 (0 %)
12345678 -> 71 (0 %)
1234567 -> 64 (0 %)
| -> 63 (0 %)
password -> 62 (0 %)

That's amazing. I've got the same combination on my luggage!
Diablos
(06-11-2011, 08:47 PM)
Diablos's Avatar
Porn password hacks? YOU DON'T SAY.

There used to be entire message boards dedicated to people hacking passwords from porn sites before streaming took off. They might still be around for all I know.

Lulzsec is dumb.
ArjanN
Member
(06-11-2011, 09:06 PM)
ArjanN's Avatar

Originally Posted by Diablos

Porn password hacks? YOU DON'T SAY.

There used to be entire message boards dedicated to people hacking passwords from porn sites before streaming took off. They might still be around for all I know.

Lulzsec is dumb.

They're still around, and yeah it's nothing new.
dschalter
Member
(06-11-2011, 09:07 PM)
dschalter's Avatar

Originally Posted by SystemShock2

That's amazing. I've got the same combination on my luggage!

you were beaten!
jamesinclair
smells clean, brushes teeth. Also combs hair regularly.
(06-11-2011, 09:09 PM)
jamesinclair's Avatar
All this hacking has convinced me to change some passwords.

I used to have three tiers.

Throwaway websites
Emails/facebook
Banks

Looks like I need more tiers.
Mdeezy
Member
(06-11-2011, 09:14 PM)
Mdeezy's Avatar

Originally Posted by Green Scar

Who the fuck registers for a porn site?

davepoobond
you can't put a price on sparks
(06-11-2011, 09:19 PM)
davepoobond's Avatar

Originally Posted by jamesinclair

All this hacking has convinced me to change some passwords.

I used to have three tiers.

Throwaway websites
Emails/facebook
Banks

Looks like I need more tiers.

what would be the point of doing it now if you're going on the basis that the new ones would be exposed later?
speculawyer
clairvoyancy is no excuse for trollin'
(06-11-2011, 09:28 PM)
speculawyer's Avatar
Did they scan for politician names? ;-)
Verano
Reads Ace as Lace. May God have mercy on their soul
(06-11-2011, 09:32 PM)
Verano's Avatar

Originally Posted by Enco

Haha.

I vote juniors. Take one for the team.

Same here. Juniors from this years E3 were so goddamn annoying...
wenis
Registered for GAF on September 11, 2001.
(06-11-2011, 09:41 PM)
wenis's Avatar
my god...who signs up for a site named pron.com?

that's the tragedy of this story...


also Hoarding>Streaming
demosthenes
Member
(06-11-2011, 09:45 PM)
demosthenes's Avatar

Originally Posted by Verano

Same here. Juniors from this years E3 were so goddamn annoying...

It was painful reading a lot of what I read, especially in the Zelda/Nintendo threads.

That said, again...who the hell is registering here ESPECIALLY with their work e-mails, good god.
Proelite
Member
(06-11-2011, 09:48 PM)
Proelite's Avatar
Another site without encrypted passwords? Salting should be legally enforced. Hopefully this will lead to some law passed that enforces the basics of securities.
Rentahamster
Rodent Whores
(06-11-2011, 10:00 PM)
Rentahamster's Avatar
That's the stupidest combination I've ever heard in my LIFE! That's the kind of thing and IDIOT would have on his luggage!
Plasmid
Member
(06-11-2011, 10:08 PM)
Plasmid's Avatar
Why don't they just hack EVERYTHING NOT GOOD.
Tworak
Member
(06-11-2011, 10:11 PM)
Tworak's Avatar

Originally Posted by Proelite

Another site without encrypted passwords? Salting should be legally enforced. Hopefully this will lead to some law passed that enforces the basics of securities.

but gaming side told me we won't need basic security so long as we kill all hackers.

I'm torn. who to believe?
j.rob
Member
(06-11-2011, 10:20 PM)
j.rob's Avatar
God daaaaammm. These hackers are killing it!

Thread Tools