Freenode Network Hijacked, Passwords Compromised?
tmandry writes "The world's largest FOSS IRC network, FreeNode, was hijacked (for lack of a better term) by someone who somehow got a hold of the privileges of Robert Levin, AKA lilo, the head honcho of FreeNode and its parent organization, PDPC. To make matters worse, the passwords of many users may have been compromised by someone posing as NickServ, the service that most clients are configured to send a password to upon connecting, while they reconnected to the servers that hadn't been killed. Of course, if someone was able to nab lilo's password, every user password may have been ripe for the taking. The details are still unknown, but these events raise scary questions about the actual security of FreeNode and other organizations like it."
Even if someone hijacked it, who could ever tell the difference?
FOSS = Free and Open Source Software, in case anyone was wondering...
your password is garcia123 isnt it?
o noes, If someone got a hold of lilo's password, they could start spamming the users with useless server-wide notices nobody cares about!!1!
--
Stay tuned for some shock and awe coming right up after this messages!
But some "peers" are more "peer" than others, like Mr. Levin.
Welcome to Animal Farm.
Seastead this.
D00d...?
I say we strip the DRM from all passwords! Down With Evil Password IP!!
Who's with me?
OK, compromise: Everytime we use your password, we promise to give you credit and link to your blog. Deal?
Face it, until people start making passwords available for a fair price in all nations everywhere, this kind of piracy will be rampant...
Nah, man. That's FLOSS*. * Free Libre Open Source Software
The much more stoid moment that will be used to summarize the gravity of the matter came when our beloved lilo was taken down:
* lilo has quit (Killed by ratbert (die ))
Let's all have a moments silence.
Woah! If someone did manage to gather people's NickServ passwords, it could mean major trouble, for the victims themselves and possibly for FreeNode as well.
Woah! I fear a deluge of angst-ridden blogs are about to swamp cyberspace.
"The details are still unknown, but these events raise scary questions about the actual security of FreeNode and other organizations like it."
I don't think that there have been any questions about the security of anything involving IRC for a long time. Everyone with half a brain knows that IRC is a cesspool of hackers, phreakers, crackers, and script-kiddies just looking to stir up shit.
That's what you get with open source software - anyone can easily exploit it. Come on kids! Use software that wasn't done by a pimple-faced basement dweller.
Oh no! Someone stole my Freenode password! Now they can login and have no control over anything!
Amazing! I have the exact same password on my online storage account!
I can't think of what else that fat fuck is spending his cash on...certainly not a network security apprenticeship...
Do you 69 while on rollerskates?
Or are you an 69-year-old granny on rollerskates...69ing?
Picture please!
I am the nightmare of nightmares.
http://uncyclopedia.org/wiki/Peer
Unfortunately he's still at large.
Not anymore :)