Slashdot Mirror


Hackers' Website Breached by Hacker (bbc.com)

The Nulled, one of the most popular hacker forums with more than 470,000 members has suffered a data breach. As a result of which, email addresses and private messages of all these members have leaked. According to a report on BBC, the leaked data contained more than 5,000 purchase records relating to the exchange of stolen information. From the BBC report: Researchers at Risk Based Security said the data dump contained the "complete forum's database" including 12,600 invoices, usernames, members' PayPal addresses and IP addresses. It also contained millions of forum posts and private messages detailing illegal activities. And some of the data could be used to work out members' identities, if they did not take steps to conceal it. Risk Based Security added the website had used message board software with known vulnerabilities, and the site also used a weak hashing algorithm to protect members' passwords.

3 of 48 comments (clear)

  1. Bad reporting by Nidi62 · · Score: 5, Funny

    They didn't answer the obvious question: did the hackers then turn around and list the stolen data for sale on Nulled?

    --
    The only thing necessary for evil to triumph is for it to be pitted against a slightly greater evil
    1. Re:Bad reporting by WarJolt · · Score: 3, Insightful

      The obvious question is what kind of hacker posts incriminating evidence on a forum without protecting his/her anonymity. I wonder how many blackhats skipped lesson one?

  2. Re:What forum software were they using? by JustAnotherOldGuy · · Score: 2

    Ahhh, a little digging revealed it was the IP.board forum software by invisionpower.com, which is a steaming pile of shit under the best of conditions.

    Also, I love how Nulled.io used the tagline. "Expect The Unexpected"....they should have taken their own advice, lol.

    --
    Just cruising through this digital world at 33 1/3 rpm...