PDA

View Full Version : Torrentleech hacked?



polorsport
03-04-2008, 12:52 AM
Well I've been on the site daily lately. And was actually on earlier today. Well about 20 minutes ago I went to log in and noticed the login process changed. Recaptcha.net, whats with that? So I entered my info and clicked that I am a human. Then I noticed my email address was changed. So I changed it back. Got the confirmation email. Now when I go back to log in I'm banned. What gives I was upping over 100gigs with a 1.014 ratio. I have :D face and everything. My username is WhiteVision. Anyone else have this problem?

Any info advice or help would be greatly appreciated. I miss my favorite tracker already.

Annoyed
03-04-2008, 12:58 AM
I don't know, my acc is performing normally. I would jump on their irc and see what happened.

sovaz
03-04-2008, 12:58 AM
Hi polorsport, me too i noticed this very strange Recaptcha.net confirmation stuff. As a cautious measure i didn't log in until i am really sure what this is about...Looks fishy though...mayb TL was hacked or something. Can any1 confirm plz?

polorsport
03-04-2008, 01:06 AM
I'm on the irc chat now. Thanks for the tip. I'll update as soon as I find out whats going on.

seppypom
03-04-2008, 01:13 AM
i didn't try to loging, becuase it already was, but it doe not looked hacked from the inside

slimdogp
03-04-2008, 01:16 AM
A while back, there was an announcement or a mass pm suggesting password changes. So anyone who hasn't changed on TL in a while.. its probably a good idea.

gl man

Zaxx
03-04-2008, 01:22 AM
Alls well for me...cookied in though, not brave enuff to logoff..:mellow:

kooftspc11
03-04-2008, 01:23 AM
lol that is great!!

polorsport
03-04-2008, 01:26 AM
Doesn't see to be any mods on the irc channel. But looks like two other users have had the same problem. I thought I met the required password needs by adding a unique symbol to my password. But maybe not.

S!X
03-04-2008, 01:26 AM
I've had no problems.

VIZFX
03-04-2008, 01:26 AM
Yikes, thanks for the head ups. Definitely let us know if you find out more.

mrnobody
03-04-2008, 01:35 AM
i got the confirmation thingy as well

<img removed>

haven't logged in though (tks to opener for the info)

P.S. it says me to stop spamming and read book "stop spam. read book" :sad:

Zaxx
03-04-2008, 01:44 AM
From TL help thread...


Originally Posted by ****
http://www.torrentleech.org/forums/images/torrentleech/buttons/viewpost.gif (http://www.torrentleech.org/forums/showthread.php?p=211816#post211816)
Mods, please get rid of the captcha thing at the login screen or find a way to enable autologin for the dynamic ip users - i have my ip renewed every time i connect to the web (i have to reconnect at least once a day) and its now ridiculously annoying to write down that damn captcha words in order to see new torrents.



Thanks in advance

Admin response:

This will NEVER be disabled... so get used to it

We didn't put it to make your life miserable, we put it to save your account from being hacked by brute force bots. Use your head ... When we ask people to use random strong passwords, and they don't listen, and then we have to hear them complaining that they cant login because their account was hacked (and their password was 123456)... i prefer to "annoy" a few of them once a while with a captcha verification system.


Glad I beefed up my pw when they asked!!

Annoyed
03-04-2008, 01:44 AM
I'm always logged in too. But I always use a long, funky pass. For example the type of passes I use are like this --> &78Nmy1{]_/|gg(and no, this isn't my real pass on any of my sites, these are just random keys that I hit). I use that type of pass for all my sites. And I even changed my pass when they announced it on the homepage. So I'm confident if I do log out I won't have a problem.

So if you're using a simple pass, then it's possible that you got hacked.

polorsport
03-04-2008, 01:45 AM
still no replies. Although my account is disabled I was able to reset my password. Just as a precaution. No admins answering questions in the room. Which leads me to think perhaps there working on the problem.

mrnobody
03-04-2008, 01:53 AM
so it's safe to login?

Zaxx
03-04-2008, 01:56 AM
I believe so from what I read in the forums...when you get in beef your pw but DON'T change you're email..I'm thinkin that's what triggered the OPs auto ban. Just a hunch..

Polarbear
03-04-2008, 01:57 AM
make sure you don't leave a space between the two captcha words.

sleepyy
03-04-2008, 01:58 AM
I don't understand how a password can be brute forced after so many failed log in atempts your banned i thought these password brute things have a dictionary of passwords and it uses those as an atempt to gain access to the victims account.

GRB23
03-04-2008, 02:05 AM
i've had no problems with TL


The password MUST:
-Be random and at least 8 digits long
-Have BOTH uppercase AND lowercase letters
-Have AT LEAST one number
-Have AT LEAST one special character (#$%^&*,. etc)

maybe the users that don't have that kind of password have problems...just a guess

VIZFX
03-04-2008, 02:11 AM
Wasn't FST using the captcha words system here, not too long ago?

mrnobody
03-04-2008, 02:15 AM
k, works tks!

grimms
03-04-2008, 05:25 AM
I changed my pass as soon as they announced all members to do so. Too many scammers trying to brute force accounts. Their the reason why TL had to be brought to using Captcha (Which can be annoying). But if it is going to protect accounts, I'm willing to deal.

Annoyed
03-04-2008, 06:17 AM
I've never been to a site that's uses captcha. It looks like something to verify you're not a bot(making you manually type in words), judging from the screenshot that was posted.

saqib
03-04-2008, 06:28 AM
i also had no problem , my email was'nt changed and my ratio is same as before site went down , infect m still seeding 2 torrents there... :)

The Wanderer
03-04-2008, 08:06 AM
I did login few hours ago, but now I get this message.

"Servers are rebooting, please try again in a few minutes."

Tracker seem to be okay because I'm still seeding my torrents. :)

Peanut
03-04-2008, 08:25 AM
it works fine for me:noes::noes:

Diiyad
03-04-2008, 08:35 AM
I've never been to a site that's uses captcha. It looks like something to verify you're not a bot(making you manually type in words), judging from the screenshot that was posted.

Don't sites like TDC, BitMe(TV) use image verification on their logins?

S!X
03-04-2008, 08:56 AM
edit/

sam45
03-04-2008, 09:30 AM
Don't sites like TDC, BitMe(TV) use image verification on their logins?

Yes, they both do.

But they're captcha is pretty straight forward.

TL has 2 words, and based on what someone said earlier, I guess you're NOT
supposed to type it in with spaces.

I'm already auto-logged in, and don't want to test it out just in case. ;)

singing_sol
03-04-2008, 09:35 AM
heehee :D might be a bug in the SYStem

Bionic
03-04-2008, 12:16 PM
TL got it server bruted which made it cause a slow-server. The Admin added the captcha so their victim will be hardly hacked.

kingrob
03-04-2008, 12:37 PM
hehe it is simple the other day about 300 accounts got taken off i will not say hacked as the peoples accounts had dumb pass's like password 123456 and so on

the new img is there to stop bots logging in on site this will cut down on this alot also when users try to change there password now they will be forced to make a good one

we are still talking over what to do with the accounts that got taken over atm they are banned
but we asked all users 2 weeks ago to make harder pass's so we might not enable the accounts due to it is the users own fault

AugustoP
03-04-2008, 01:29 PM
we might not enable the accounts due to it is the users own fault

That's the right thing to do. I just don't understand admins giving accounts back to alleged original owners. If someone is stupid enough to lose the account he should use mininova not private trackers.

fOrUmAs
03-04-2008, 01:32 PM
its the same as here with log in now

all working fine :)

Swordfish
03-04-2008, 01:41 PM
Autologged in here, as others have said, I'm also too scared to logout and log back in :P

B3hAnch00d
03-04-2008, 02:09 PM
logged in fine, no probs here. not till now atleast.

Zeus1
03-04-2008, 03:20 PM
same here
logged in with typing the two words without space and everything is fine

usersec
03-04-2008, 03:33 PM
great...
my ip changes every 24 hrs, so now I have to type 2 words every fucking day when I log in :shutup:


same here
logged in with typing the two words without space and everything is fine

without space?

Tokeman
03-04-2008, 04:21 PM
hehe it is simple the other day about 300 accounts got taken off i will not say hacked as the peoples accounts had dumb pass's like password 123456 and so on

the new img is there to stop bots logging in on site this will cut down on this alot also when users try to change there password now they will be forced to make a good one

we are still talking over what to do with the accounts that got taken over atm they are banned
but we asked all users 2 weeks ago to make harder pass's so we might not enable the accounts due to it is the users own fault

Although I agree that it is the users fault for having a weak PW, perhaps a less subtle approch would have been warrented, such as PMing users, instead of just posting a quick blurb on the main page about a password change. I never even saw that bit of news, it was so far down on the page...
Not everyone reads news, a lot of people are just there to do their thing. I do read the news occasionaly, and I didn't even see that...

Just my 2 bits.

SliDer5
03-04-2008, 04:54 PM
working just fine

REDATTACK
03-04-2008, 05:11 PM
logged in fine with no problems at all

samahzzzzzzz
03-04-2008, 05:50 PM
Torrent is my Life

wtf are you serious ?

retention
03-04-2008, 05:57 PM
Looks fine here too.

Alien5
03-04-2008, 05:57 PM
Torrent is my Life



..

retention
03-05-2008, 03:26 PM
Seems down now?

kingrob
03-05-2008, 03:31 PM
the site is down while we add some updates to catch account traders/sellers

athenaesword
03-05-2008, 03:44 PM
hi kingrob i just got banned man. i dont' think i did anything wrong so could i clarify this with you?

Lee1
03-05-2008, 03:45 PM
hi kingrob i just got banned man. i dont' think i did anything wrong so could i clarify this with you?You traded your account:rolleyes:

kingrob
03-05-2008, 03:50 PM
hi kingrob i just got banned man. i dont' think i did anything wrong so could i clarify this with you?


email [email protected]

give your username and email add an admin will reply to you when they get time

athenaesword
03-05-2008, 04:28 PM
hi kingrob i just got banned man. i dont' think i did anything wrong so could i clarify this with you?You traded your account:rolleyes:

what?



hi kingrob i just got banned man. i dont' think i did anything wrong so could i clarify this with you?


email [email protected]

give your username and email add an admin will reply to you when they get time

will do thanks

the-big-gamer
08-28-2008, 02:15 AM
workin fine with me

slymester
08-28-2008, 02:20 AM
lol this thread is 5 months old

users
08-28-2008, 02:20 AM
nice bump.....idiot.

yakz091
08-28-2008, 03:05 AM
why did u do this bump.....
oh **** i too bumping this one.

OTO
08-28-2008, 01:36 PM
workin fine with me
http://caqtus.caucasus.net/lol/50.gif (http://www.Caqtus.caucasus.net) http://caqtus.caucasus.net/lol/50.gif (http://www.Caqtus.caucasus.net) :w00t: