Conversation
Notices
-
One !identica user is reporting that he has some notices in his timeline he didn't post. Has anyone else seen something similar?
- andre bni likes this.
-
is their password set to “password” or “password1”?
-
Their password is set to a 20-character random string.
-
@evan I haven't seen in my timeline or heard anything, and I admittedly reused a password (a good one, but reused non-the-less). /me changes
-
OK, so, now it sounds like people come to a browser and it's already logged in as someone else. I feel like my leg is being pulled.
-
@evan you should warn those people that if they continue with this they will be banned.
-
Oh dear. Are you implying that passwords aren't hashed?
-
Passwords are, indeed, hashed. Salted and hashed.
-
If it's not the user's password (and you've reset the user's password), maybe you could share it with us. Might be interesting too look at.
-
One I saw recently was B1o2R3a4T5r1O2c3K4s5
-
What? Are you joking?
-
What? Seriously? What are you talking about?
-
Seriously. What are you talking about?
-
Yes. Some people like looking for patterns. The example I gave was "borat rocks" interleaved with 12345
-
This http://ur1.ca/9952y But never mind it isn't important.
-
Sorry, but I'm COMPLETELY paranoid right now. I thought the password you posted was supposed to be a hashed password.
-
I've had a couple more people say they had this problem -- all Spanish-speakers, seem to be in a friend cluster. Very suspicious.
-
They just recently registered from the looks of it. Could be an attempt to gain access to accounts through you.
-
@edwingod apparently was having a similar problem, deleted his account, and opened a new one today.
-
@evan never saw that here & hope I won't see it ever :)
-
Nope, haven't noticed anything like that.
-
really? @ploum I could use some help with this.
andre bni likes this. -
Can you send me the URL of the notices you had this problem with?
-
@evan Here is the conversation. The first notice is from @ploum http://ur1.ca/99asz
Cédric Schmitz and andre bni like this.