
Originally Posted by
predateur
i had almost the same experience with my waffles account so dont says something you dont know

the hacker logged into my account and i dunno how because i had a realy strong password (made by recover pass from waffles) , and he changed the password and then he tired to change the mail but for this he need to confirme it from the old mail (i used gmail) ; so in that time i got in my inbox gmail the mail from waffles...and i tired to log into my account but its too late the pass alredy chaned, so i decided to recover and surprise the email is not found on the date base

i have not confrimed the changement of the mail

and he is not enter to my gmail account (and the mail to confrime is still unread)...
just to tell you a good hacker can get easly your account , trackers security is a joke for him, actualy i got back my account, thx to waffles staff
That just means your security fails. Not the tracker's. No one, I guarantee you,
no one can "hack" your account. It just isn't worth the effort.
A hacker that has the wits to hack the database and find your password, would rather just simply add an entry about himself. That's that. What you're suggesting is insane, you're suggesting a hacker bypassed tracker email change security, which could have simply been a bug, or the wrong way that waffles' code handles such outgoing emails by sending an email and disabling it from the database straight off.
I've been in the passwords/trackers business for quite a while, and I've only heard of one friend's account hacked, and that's simply because he gave the password out to people. Simply as that, no questions asked. He might have as well gotten keylogged (which could have happened in your case), but then again that's his fault, not the tracker's.
Bookmarks