• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

WoWs Site Compromised?

Why are you connecting to that IP address? Of course the cert is going to be invalid.

-edit-
Looks like a dummy site meant to gather usernames/passwords.
 
Originally posted by: spidey07
Why are you connecting to that IP address? Of course the cert is going to be invalid.

It's a classic hack. You insert a meta forward to your own webserver that just *cough*happens to be*cough* set up to look just like the legitimate site. Folks don't necessarily notice the change from letters to numbers (or don't know the difference) and just log in anyway.

Boom.

In a matter of minutes you have thousands and thousands of usernames and passwords saved to your webserver, setting you up to steal accounts later.

It's not a bad little setup.
 
Originally posted by: GuideBot
Originally posted by: spidey07
Why are you connecting to that IP address? Of course the cert is going to be invalid.

It's a classic hack. You insert a meta forward to your own webserver that just *cough*happens to be*cough* set up to look just like the legitimate site. Folks don't necessarily notice the change from letters to numbers (or don't know the difference) and just log in anyway.

Boom.

In a matter of minutes you have thousands and thousands of usernames and passwords saved to your webserver, setting you up to steal accounts later.

It's not a bad little setup.

I know, but how did he get to that URL? Clicking a link in an e-mail?

If somebody actually put a redirect on their main website, then that's a hack.
 
actually this happened last week too, not the same scam... but their sites were hacked.

Blizzard sites hacked: Warcraft.net and Battle.net

Off-topic news, but we though its worthy of notice.

Yesterday around 10pm, two Blizzard sites were hacked (Warcraft.net and Battle.net) by an algerian hacker called "LeHackeur", he added an html file on the server of warcraft.net and battle.net which displayed a skull pic and a message versus USA and Israel.

The hacker also displayed a "Sorry Admin" message and said he didnt delete anything.

Source (french site): Zataz

Text
 
Originally posted by: spidey07
Originally posted by: GuideBot
Originally posted by: spidey07
Why are you connecting to that IP address? Of course the cert is going to be invalid.

It's a classic hack. You insert a meta forward to your own webserver that just *cough*happens to be*cough* set up to look just like the legitimate site. Folks don't necessarily notice the change from letters to numbers (or don't know the difference) and just log in anyway.

Boom.

In a matter of minutes you have thousands and thousands of usernames and passwords saved to your webserver, setting you up to steal accounts later.

It's not a bad little setup.

I know, but how did he get to that URL? Clicking a link in an e-mail?

If somebody actually put a redirect on their main website, then that's a hack.

I clicked Log in to make a post,and then FF told me about that thank god for FF!!
 
my friend who plays WoW had the same prob just a few weeks ago and got all his stuff stolen. Fortunently though, Blizzard issued all of his stuff back to him that he had on last save. Surprising.
 
Unless someone has pulled off a sneak DNS cache poisoning attack, I don't think the WoW forums were hacked. The DNS record for their forums is returning 12.129.242.24 as one of their IP addresses.
 
Originally posted by: eits
Originally posted by: Rastus
Originally posted by: JujuFish
Maby?
Maby not.

maby go fuck yourself?

(just so no one gets bent out of shape, it's a line from 'the departed'.. just a joke)

I like the joke from Catch Me If You Can.

"Knock knock..."

"Who's there?"

"...go fuck ya-selves."

:laugh:
 
Back
Top