Over 7 Million Accounts for Minecraft Community Hacked (vice.com)
Joseph Cox, reporting for Motherboard: Over seven million user accounts belonging to members of Minecraft community "Lifeboat" have been hacked, according to security researcher Troy Hunt. Hunt said he will upload the data to his breach notification website "Have I Been Pwned?", which allows people to check if their account is compromised, on Tuesday, and that it includes email addresses and weakly hashed passwords -- meaning that hackers could likely obtain full passwords from some of the data. "The data was provided to me by someone actively involved in trading who's sent me other data in the past," Hunt, who has verified the data and sent Motherboard a redacted screenshot of some of it, said in an email.
Because anything wrong on teh intarwebz attributable to yourself is better attributed to that cyber bogeyman, teh haxx0r.
Security? Not a chance.
As per TFA, Lifeboat used MD5 hashes for passwords. Dumbasses. Who does that in 2016 anymore?
This never would have happened if Micro$oft hadn't bought Minecraft.
The sperg rage will kill us all.
I sure as hell don't.
You always say that people who use Facebook deserve security breaches. It seems the tables have been turned. You pretentious nerd bastards deserve this. Any security breaches that affect you are poetic justice.
No, but if you ask and draw attention to yourself, you probably will be... or an arrest warrant may pop up... It's almost quantum. Asking questions about something or someone will have an effect on it/them
“He’s not deformed, he’s just drunk!”
I know, right? ROT13 is much better and ROT26 is twice as good.
One of the common themes in all of the security breaches and software security bugs that we've encountered lately is that the Rust programming language isn't being used.
Rust is a programming language that, according to its web site, "prevents segfaults" and "guarantees thread safety". Those are just the kinds of things that are needed when writing secure software.
As these breaches continue to happen, the more I realize that we need to start rewriting all of our software to use Rust. It won't be an easy process, of course. Nothing worth doing ever is easy! But once we do rewrite all of our software using a language that's as safe as Rust then we'll all be a lot better off.
If we eliminate software flaws as the main source of security problems, then we can focus more energy on tackling other non-software security problems, like social engineering and faulty hardware.
When software security is the problem, then I think that the Rust programming language is the answer.
As always, make sure you check haveibeenpwned to see if you're affected. For those who are, please be absolutely sure to change your passwords as md5 isn't secure anymore. If that's a huge hassle, then you've been reusing the same password - a big no-no, take this opportunity to use multiple. Not only will it make your life much more secure, but it makes situations such as these much easier, and you'll be glad you did so next time.
"Set a man a fire, he'll be warm for the rest of the night. Set a man afire, he'll be warm for the rest of his life."
All those autism disability checks lost.
people already; I'm Our ability to and personal can be like coming a piss roots anD gets on networking test. triumphs would soon a productivity
Modern app appers know that ONLY apps can app apps, so Minecraft was hacked because it's LUDDITE software, not an appy app app!
Apps!
You've committed the Hipster Switcharoo Fallacy. This logical fallacy, typically committed by hipsters, involves taking a sound, sensible argument and using it as a template when creating a new argument that's supposed to contradict the original argument. A few words are switched, and the hipster thinks he has come up with a witty rebuttal to the argument, when in reality he has only made himself look like a blithering idiot. The new argument is typically flawed in most ways.
First of all, you forgot to switch the last line of the original comment, which ends up contradicting your pathetic rebuttal attempt! By forgetting to change that line it makes it look like you're supporting the original argument.
Ignoring that obvious mistake, your argument doesn't even make any sense. Rust, by its very nature of being a damn difficult and awkward language to use, inherently drives away "dumb" programmers. The only people who can manage to figure out and use Rust are highly intelligent. You need to be well above average to understand and to use its resource ownership techniques. I mean, if you don't understand them then your code probably won't even compile. So yet again you actually proved the original argument, while pathetically trying to prove it wrong.
Your comment serves as a superb example of why hipsters should always avoid the Hipster Switcheroo Fallacy. It always ends up blowing up in your faces, and always proves the original argument to be correct!
Per the article: "To join the community, players download the normal Pocket Edition app, connect to a Lifeboat server, and register a username with an email address and password." Its a big difference, granted some percentage of that user base was probably dumb enough to use the same password.
What gets me is that in 2016, most web management software requires you to use 3rd party solutions to properly protect passwords.We have know that encrypting, hashing and salting passwords in the DB should be done in all cases, for the past 10 years at least, but most software makes a web developer look elsewhere for the functionality.
There's a lots of Minecrafters bricking it right now..
That's what happens when a game is primarily played by children: The community websites are probably made by teenagers...
Is it just me or has anyone else noticed that it is practically impossible to download ANYTHING related to Minecraft without getting infected with malware, trojan, virus, etc etc. Whenever my kids want a new mod, I am forced to use a virtualized desktop to download the mod.