Hackers Expose 26,000 Sex Website Passwords
An anonymous reader writes "Passwords and email addresses of almost 26,000 members of adult website Pron.com have been released on the internet by the notorious hacking group LulzSec. To add to the victims' humiliation, LulzSec called on its followers to try the email/password combinations against Facebook, and tell friends and family of the users that they were subscribers to a pornographic website. In addition LulzSec released passwords belonging to the administrators of dozens of other adult websites, and highlighted military and government email addresses that had signed up for the xxx-rated services."
i only read it for the articles.
Where can I find the passwords?
Dropbox drops it like it's hot.
Who signs up with a government issued email or even real info to a sex site? Who even pays for that? Amazing. So much free stuff to watch who would bother?
so we can see some pron for free...
You're new to this whole 'internet' thing aren't you?
Who the fuck still pays for porn?
On one hand, I couldn't agree more with one of the posters who said something along the lines the how people make a bog deal out of sex between consenting adults, including the watching of it. The Victorian-esque morality that most aspects of sex are something that people should be ashamed of, including porn, is not something I can relate to.
That said, I have to wonder about the kind of people who would be paying for porn. Even if you are particularly desperate, there's so much free porn on the Internet that it's almost pointless to pay for porn. Plus, if you're that desperate, just how hard is it to pick girls up at a bar (or if you're a geek Don Juan, Craigslist)? Paying for sex in any shape or form has to be one of the silliest things, given how easy it is to find women who are more than willing if you just looked around.
The reason why you never hear about porn sites getting cracked is because it is fucking easy. Most porn sites are vulnerable as hell and almost anyone with some technical proficiency can exploit them. They are run by low budget companies who often just cant afford to secure their sites. Cracking porn sites are for pathetic script kiddies with little to no skill what so ever. Also what's up with trying to shame owners of porn site memberships? Fucking puritans.
Football Odds
I think it'd be nice to relate this to the latest "scandal" in the US:
azmeal@cmc.gov.my | ilovedyna
flag@whitehouse.gov | karlmarx
kamarudinalias@mmea.gov.my | 814550
james.ben.hopkins@us.army.mil | j347576
wade.quigley@ang.af.mil | mywife01
aaron.c.sewell@us.army.mil | 3689817
Upward mobility is a slippery slope - the higher you climb the more you show your ass.
"LulzSec called on its followers to try the email/password combinations against Facebook, and tell friends and family of the users that they were subscribers to a pornographic website"
I cant believe those hackers are so influenced by american puritanism...
We all like sex. Its the way nature designed us to be able to spread.
My friends dont care if i'm subscribed to a porn site... well i guess bc im not in the US.
After they exposed loads of username/password combinations off some Sony service, I thought to myself; who are they actually hurting? It seemed to me they just made it loads easier for criminals without the skills to do this sort of thing themselves.
Yes, it is possible that some more sinister hackers already had this data without telling anyone, just secretly exploiting them, but actually publishing the combinations makes it many times more likely that someone will exploit your personal data.
I consider this hacking group no more than simple vandals and criminals at this stage. There is no "honour" in it, and exposing porn clients are extremely likely to be hypocritical. I don't believe for a second that all members of this hacker group has a "clean conscience" about porn.
People watch porn... so what?
Depends. Are they legislators who are campaigning against obscenity on the Internet?
Do we live in the Dark Ages and masturbation is a sin?
A lot of elected representatives in the US would like us to...
I am TheRaven on Soylent News
What are you on about? This could help people who like to masturbate. I'm told that a significant part of the population engages in that activity.
Jesus was all right but his disciples were thick and ordinary. -John Lennon
Surprise surprise:
123456
123456789
12345
1234
12345678
1234567
password
1234567890
123
123123
Now they've gone too far.
Help! I'm a slashdot refugee.
Why are they going after everything and anything?
Maybe they should blow up some unmarked yellow vans to further obscure whatever their "message" is.
Why are they going after everything and anything?
For the lulz, obviously.
"To any truly impartial person, it would be obvious that I am right."
anybody going to that site will get a mandatory free "upgrade" for his system, offered by LulzSec.
Privacy is terrorism.
Looks like a lot of those people use their phone number as their password.
http://michaelsmith.id.au
Do we live in the Dark Ages and masturbation is a sin?
Depends whether you have a religion, and on which religion if you do.
For many branches of the Judeo-Christian-Islamic cluster, masturbation is definitely considered sinful, and you should resist attempts to leave the Dark Ages. Not sure about the Jain-Buddhist cluster or Shinto, but it was not generally impugned in the Indo-European cluster, of which Hinduism is the major survivor.
Atheists don't have sin, but do classify actions on an ethical scale, and mostly consider masturbation to be harmless or healthy.
Those who can make you believe absurdities can make you commit atrocities. - Voltaire
To be honest. This does not help anyone and certainly will create a strong wrong perception of hackers.
Like, that hackers are nasty folks who break into other people's computer systems and engage in illegal and/or offensive behavior?
I fear that damage is done already, thanks to the word "hacker" having been used in that meaning for quite some time in mainstream media.
And with a name like "LulzSec", did you really imagine this group would do something good for the world, rather than stroke their own egos and grab attention in, shall we say, typical 4chan fashion?
marvelcash@gmail.com | Slashdot69
Anybody owning up to this one?
http://michaelsmith.id.au
What is the purpose of the threat to tell peoples families about the porn they look at?
This is looking like a blackmail mechanism. Similar to "we got ur noods, don't worry we won't show mom and dad"
Not sure I'd really care if people found out I was subscribing to a porn site....it's not as if my Wife doesn't go there too :-)
As a result, I feel sorry for those who apparently think it's something to be shocked at.
In fact, I'd be more embarrassed at people knowing I *paid* for it when there's so much free stuff about.
Since none of us know just how many porn passwords they have cracked, along with Facebook accounts. We do not know whether or not for example some Anon somewhere cracked our most sick perverted teen porn password, and also has our Facebook to tell our family.
Seriously, this sort of stuff can cause suicides. Remember that gay kid who committed suicide over something similar?
Do we live in the Dark Ages and masturbation is a sin?
A lot of elected representatives in the US would like us to...
It's Americas biggest version of "don't ask, don't tell". A classic is the Utah store owner who proved they were watching tons of PPV porn at the local hotel to get past the Miller test. Politicians simply play the game to win votes, I hardly think they're better than the rest of us. Most of the world - and even the US - have gotten over the whole "sin" to spill the seed, but you still don't talk about it. That's the way it's been from the very beginning, where's little Suzy? Oh, she's furiously frigging her clit. A lot of them go "LALALALALALA", don't want to see it, hear about it, think about it, go to your room and this is on DADT basis. Never figured out why it was such a big deal, if I didn't I'd have such a serious case of blue balls I'd sleep with almost anything - which would be grounds for concern.
Live today, because you never know what tomorrow brings
They are telling people to go and destroy peoples lives.
Telling them to log into their Facebook accounts and tell their families about their porn habit?
So if a guy or girl is secretly going to gay porn sites, and his or her parents are religious, what kind of damage could that do?
Really is it that hard to build some basic security into one's site? I mean like storing the passwords as hash, instead of plaintext? It is just a few bits of code... so simple... but yet again a web site failing on such a basic matter. No wonder they got hacked to boot, and now have all their member's e-mails and passwords out on the street.
I would expect a porn site to care a bit more about their user's privacy, considering the business they're in. Though considering how much some of their users care (using a .mil or .gov address to sign up) maybe indeed it's just as well that they didn't care too much. Oh well, let's hope it's a lesson learnt for porn site subscribers, even though considering they are paying for on-line porn they're not the smartest cookies of the pack.
They must have a phemonenal amount of personal info on people based on web search alone, never mind everything else they do.
Some Google engineers must have the ability (if not necessarily permission) to track the porn surfing habits of the vast majority of the world's internet surfers. Think how many powerful people that they could blackmail with this information.
Don't fuck with Google ...
If Anon hacked Google they'd have the dirt to blackmail the entire internet. They'd know who was researching how to kill their husband. They'd know who thinks what and who watches what porn.
This is why your Google password should be at least 100 characters long, random, and impossible to remember.
How many signups were done by someone else "ordering a pizza" for a little revenge.
Passionately Indifferent
Are we talking about George Michael?
Confucius say, "Find worm in apple - bad. Find half a worm - worse."
root@host:~# strings pronz.txt |grep -o "[^ ]*$" | sort | uniq -c | sort -nr | head
671 123456
212 123456789
111 12345
75 1234
72 12345678
65 1234567
62 password
52 1234567890
49 123
41 123123
Now that is just mean!
None of the logins work now unless i'm missing something :(
I just posted to my own facebook wall that I watch porn! Beat em to it!
"why don't you just slip into something more comfortable...like a coma!"
If it weren't for the stigma surrounding porn this would just be another hacked website. I still don't understand societies taboos about sexually related things. Especially when we are so accepting of of violence and death. The number of crime scene centric shows on public TV is staggering. The number of sex centric shows? Almost non-existent. People are perfectly fine looking a images of death and dismemberment, but put naked people on TV and it's a travesty. Personally I think the world would better off if people spent more time watching pornography than watching people get killed. Remember, you can have safe sex, you cannot have safe war!
Sounds like lulzsec is a bunch of religious moral crusaders with this act.
We already have the "don't re-use passwords" security best practices, but it seems e-mail addresses themselves are just as dangerous, as they can be linked to identities, which could have social implications way beyond simple security compromise.
Always register accounts on porn sites (or other embarrasing websites) using a different e-mail address, an e-mail address not known to friends, employers, coworkers, churchgoers, neighborhood busybodies, etc; one that cannot easily be linked to your identity, social network accounts.
Security will also be improved, if you use separate e-mail accounts for private business. For example: use one e-mail address for Facebook, use a separate e-mail address for your bank account.
The hacker may attempt to login with the same e-mail address and password at many sites; but if the e-mail address is different, they won't even have an account ID to attempt to attack (even if the password did happen to be similar)
This wouldn't be such an issue if every website didn't demand to know your e-mail address and store it in their database; but the reality, is your e-mail address has become kind of like your internet driver's license or SSN, that every website demands before they can establish an account for you.
Thankfully, unlike a driver's license or SSN, you can have as many of them as you want, due to the event of..... free webmail-based email services such as Gmail, Hotmail, Yahoo Mail :)
others use the internets.
They only took this half-way to completion! If they would have only pulled the sites IP log to see who was looking at what particular video's then I'm sure we would have had a much more interesting reaction...
... that porn sites everywhere get Slashdotted?
Porn (as mentioned in other posts) is sex between consenting adults (generally speaking).
For those less "vanilla," and you know who you are, even depicted rape in porn is consenting.
Lets take the extreme route of one of these government addresses being registered on one of these rape oriented sites...
Just because you like all the SAW movies, doesn't mean you're going to go all Jigsaw on us...
Something witty.
Do we live in the Dark Ages...?/p>
Uhm, yes. We could make a very good argument that we're in or entering another dark age. Education is on the wane while the disparity between wealthy and poor rapidly accelerates toward complete serfdom. The middle class is fast disappearing. Science is riddled with political agenda and strangled by the patent and copyright system, while many "peer reviewed" studies are really just simple corporate propaganda. The public domain (water, minerals, parks, roads, etc.) is being sold off to wealthy private and corporate interests. Draconian laws proliferate, making almost everything a serf might do a potential offense. (Steal a loaf of bread and you may well serve hard time, but wipe out someone's retirement, or foreclose on a home without a mortgage and you'll probably laugh about it on the golf course.) The haunting specter of "terrorism", real or imagined, has allowed many hard won personal rights to be effectively repealed, while a virtual witch hunt is in process. Virtually anyone is subject to a home invasion by authorities at any time without notice or significant recourse. The courts are stacked with political cronies, and few can afford a decent lawyer anyway. Fraud is rampant, yet rarely punished at the highest (most significant) levels. Government regulatory agencies are all captured and worse than ineffective. Naked resource wars are initiated unilaterally, as oil and other important resources dwindle. Unemployment and homelessness are rapidly rising, with no relief or government fix in the works. Retirement programs are in the sights for drastic cuts, as the moneyed interests refuse to cut bloated military budgets. The media is not obligated to tell the truth, so the masses are less informed then if they consumed no news. Resistance groups interested in not being in a dark age are infiltrated and rendered impotent in various other ways. The international moneyed powers are rapidly changing the governance of the world into something more hideous than anything the world has ever seen, while all eyes are on the insignificant spectacle of something else.
Looks kinda dark to me!
Everything and its opposite is true. Get used to it.
...But seriously...
:-(
Could you possibly rewrite that in a copy/pasteable SQL Injection format? My ISP blocks port 25 outbound
Boot Windows, Linux, and ESX over the network for free.
If the password is a four to six digit number that is not 1234 then it's probably an ATM card number as well. Actually if it's 1234 then it's still probably an ATM card.
That said, I have to wonder about the kind of people who would be paying for porn.
Perhaps they pay to support the actresses?
Kinda like the same way people donate to Wikipedia or the Mozilla Foundation, or buy Red Hat?
Corporations need sex too, you know!
Disposable email
Let's see. The site I use:
- Does not come with spyware and stuff
- Has all the stuff sorted and searchable
- Uses pay per view, so I pay only for the time I watch
Of course there is no chance in hell I would use my businessaddress or the same password I use on other sites. But why should I bother using crappy sites that try everything to rip my money and my personal information, when I could use a normal business service that has an interest in me coming back and is until now proven to be secure?
Why should I care about free stuff when paying gives me better service?
I am single - again :) - and I am allowed to use pr0n. There is nothing bad about that. I don't use the site TFA mentions, but to me it is perfectly reasonable to pay for pr0n. I don't waste time with the free stuff to find the pr0n I like. I don't need to think about security. I don't need to think if the file is what it says it were.
Wait, wait, what? You need passwords to view porn on the internet now?
Oh great, again something important changed and no story on /.
We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
From the list:
test@test.com | test
So it seems like they dumped a list of registered, but not necessarily activated, accounts. Not that I want to defend the .gov/.mil people in there, but it seems like anyone could have created an account named president@whitehouse.gov and get some "lulz" out of it, but it does not mean that the POTUS is actively using that account.
Lemme see now; I pay good tax money for the benefit of militarists and government 9 to fivers. I have a share in being their employer. If it were me I'd fire the lot of their sorry asses. Not 'cos they're on Pron sites but because their against my company's IT policy. Oh, wait. I'm Canadian and only get to pay taxes without a vote. Here's Pron: Let me pull my pants down a little lower! Darn! will one of you Americans please fire them for me. Thanks.
May the lies we live by make us strong, healthy, happy and wise - Kurt Vonnegut.
Really. Just use Google Video search, with SafeSearch turned off. Porn has gone ad-supported, like all other forms of content.
(If only the music industry would figure that out.)
Pretty ironic that one of the addresses mentioned above belongs to a Malaysian government official given their stance on porn.
These people would never dare to subscribe to a porn-site themselves. Obviously conservatives with messed up morals and small brains. Despicable. Nothing is even the slightest bit funny about this blatant fundamentalist propaganda.
Most ACs are not even worth the keystrokes to insult them. Be generically insulted by this and ignored otherwise.
I don't think there is anything wrong with DADT between family members about that. In fact, it seems a bit disturbing for it not to be the case. And "little" makes that sentence disturbing, just FYI.
I would like to congratulate you on the very first technically correct use of the term "frigging" I have encountered on the Internet. Kudos, sir.
I've fallen off your lawn, and I can't get up.
Sadly, you've understated the problem. :(
I've fallen off your lawn, and I can't get up.
Yep, just because some hacktivist group posts a list of emails and passwords, supposedly taken from a pron website, all the text in it *must* be 100% true.
;)
Because nobody would ever put in a fake email address when subscribing to a porn site, even if we give lulzsecurity the benefit of the doubt and the list is 100% authentic.
I'd personally be more concerned that actually going to lulzsecurity's website to fetch the list would have them place an exploit to a vulnerability in my browser on that page.
Before I start this rant i should point out i havent been compromised by LulzSec so these arent the words of someone who has been burnt. /sarcasm off
Hacking to prove a point is one thing but releasing passwords for 100's of users is the act of juvenile twats that have never had a girlfriend. All they have suceeded in doing is causing grief for innocent people. Well done! Why dont you go round pissing in peoples letter boxes while your at it
They need to grow up, move out of their mothers basement and get laid.
They remind me of the teenage anarchists that go to protests, not to protest about anything but just to smash stuff up. To seek attention for their pathetic lives and score points and try to look cool with their retarded friends.
So basically, fuck you LulSec I hope you get whats commig to you.
I meant it to be disturbing but DADT is different than "I know, but we've had the talk about it and as long as she does it her room" as I hardly expect it to be the topic around the breakfast table. It means you really don't know at all, and you'd rather never find out. I mean it more like a state of denial, no my kids don't masturbate. And my teens don't have sex. And my husband doesn't look at porn. LALALALALA not happening. It's the only country I know still seriously trying to push abstinence and a single sex partner for life. The rest of the world has pretty much said as long as they don't get pregnant or catch STDs, oh well...
Live today, because you never know what tomorrow brings
My Password dictionary thanks you.
awk -F '|' '{print $2}' pronz.txt | sort -u >> passwords.txt
And people take you seriously, apk?
You have two topics that you post about: hosts files and drinkypoo. And, frankly, I'm sick of hearing you go on about them both.
That would be great then we would all point and laugh and tease them all like little school children for liking midget donkey porn; o how we love to point out other peoples' short coming.
It's the only country I know still seriously trying to push abstinence and a single sex partner for life. The rest of the world has pretty much said as long as they don't get pregnant or catch STDs, oh well...
I've never been to a more puritanical country myself, but I hear that Mexico and several Latin American countries are far more socially conservative and toe the old Catholic line more than the US. You can't tell me that politicians in Iran or Saudi Arabia are less obsessed with stopping sex than ours are. Large parts of Africa are pretty conservative when it comes to that too. Australia is engaged in censoring the net, games, and I seem to recall they were at least talking about banning porn involving women with small breasts, too childlike or something.
I'd agree that Europe, Japan, and maybe Russia and/or China are less generally scared of sex than we are, but again, not entirely. In Japan for example, groins are pixelated in porn, and there are plenty of people who act like sex doesn't happen. Approval of birth control pills for Japanese women took forever, in part because of concerns it would lead to more promiscuity. Compare Portland or San Francisco to a small town in Russia, and I suspect you'd conclude the US is far less concerned with abstinence.
Anyway, the not wanting to see other family members as sexual creatures is pretty universal and goes both ways pretty much everywhere and isn't exactly related to fear of sex. It usually doesn't jive very well with our image of them, we usually think of family members as being clothed (infants excepted.)
After actually looking at the list for a minute I came to the conclusion that the mail addresses were not verified (domain names spelt wrong :-) . The question really is - what percentage of these mail addresses are fake and which are real? Anybody can punch in your mail address in a webform. It doesn't proof anything. I would be very careful drawing any conclusions from this list, or trying to do anything with the data - it can land you in a lot of trouble.
Specific example of domain name problems. I searched for all e-mail addresses for South African companies (.co.za) and came across "0789746848@mtnloeded.co.za". The real domain name should be mtnloaded.co.za - mtnloeded.co.za does not exist. If the spelling mistake slipped through it means that the mail address is unverified. Now I would love to give "Cecil" a call on +27 78 974 6848, but I cannot be sure it is in fact him. The sheer number of wrong e-mails I receive on my e-mail is of further concern in this situation - somebody could by accident type in my mail address and I would suddenly appear on a list like this!
So all in good fun - chances are the more controversial mail addresses are fake.
Sarcasm noted, but I wonder what kind of market there would be for sexy stuff that's actually well-written and well-acted?
I listen to both RIAA and non-RIAA stuff if I like the music, tangential business/politics nonwithstanding.
So they are no better than the kids that paint graffiti.. no point or direction, just to cause mischief.
---- Booth was a patriot ----
The reason why you never hear about porn sites getting cracked is because it is fucking easy. Most porn sites are vulnerable as hell and almost anyone with some technical proficiency can exploit them. They are run by low budget companies who often just cant afford to secure their sites. Cracking porn sites are for pathetic script kiddies with little to no skill what so ever. Also what's up with trying to shame owners of porn site memberships? Fucking puritans.
My cat can hack into it.