450 Nintendo Network Accounts Have Had Their Passwords Leaked

155px-Nintendo_Network_Logo.png

It might be time to update your passwords for Nintendo's online service, as nearly 450 accounts have been hacked, and their passwords leaked. You can view the Pastebin full of usernames linked below to check and see if your account was compromised. Even if you're not listed, it still might be a wise idea to change your password, just to be on the safe side.

:arrow: SOURCE
 

Sonic Angel Knight

Well-Known Member
Member
Joined
May 27, 2016
Messages
14,402
Trophies
1
Location
New York
XP
12,945
Country
United States
Really? Just 450? I'm not impressed, now if it was maybe 450 that got hijacked and banned on mii verse for some Adult imagry or just breaking rules and spam on miiverse, I might be a bit more impressed. I might even be impressed if it was just 200 and the same thing happened. But 450? ODDLY SPECIFIC EVEN NUMBER. :P

Consipricy theroy instinct kicking in 5....4... 3...2 .. 1. O_O

Now i may be a bit worried if it was a more random number like 437 of 246 or even over 500 But That is oddly specific, as if only that many was planned. I checked and none of them had mine, so i'm good. I don't share my passwords and i don't keep the same password for long. :)
 

migles

All my gbatemp friends are now mods, except for me
Member
Joined
Sep 19, 2013
Messages
8,033
Trophies
0
Location
Earth-chan
XP
5,299
Country
China
Forgot about 2FA (although even that can be hacked like with boogie2988), but the reason why I say to use a password manager is to avoid repeating passwords, otherwise there wouldnt be much point and I doubt people would use unique password otherwise unless you have only a handful of accounts.
I use a passwords level system.
Anything that I put a credit card on it has a level 5 password, email has another level 5 password
And stuff like forum websites I register like that 3ds iso site has a level 1 password, meaning a shitty one that can be easily remembered and brute force, if people steal this password, they only see shity posts asking for ROMS and not so secret stuff like dynamic ip address and email registered..
 

Patxinco

Riding a Shooting Star
Member
Joined
Apr 18, 2011
Messages
847
Trophies
1
XP
2,235
Country
Spain
My name is not there, but even if the list were bigger, and was mine there, hope they enjoy my 0.02 € left from the Seasons/Ages pack...
Pro tip: don't left your credit cards in any website, even if you think they are safe, it may seem you waste time, but you're actually saving.

Saving your ASSES off!!!
 

tech3475

Well-Known Member
Member
Joined
Jun 12, 2009
Messages
3,663
Trophies
2
XP
6,050
Country
I use a passwords level system.
Anything that I put a credit card on it has a level 5 password, email has another level 5 password
And stuff like forum websites I register like that 3ds iso site has a level 1 password, meaning a shitty one that can be easily remembered and brute force, if people steal this password, they only see shity posts asking for ROMS and not so secret stuff like dynamic ip address and email registered..

I used to take the 'level' approach, but I found too many sites of the same level were being hacked (even higher up ones).
 

migles

All my gbatemp friends are now mods, except for me
Member
Joined
Sep 19, 2013
Messages
8,033
Trophies
0
Location
Earth-chan
XP
5,299
Country
China
I used to take the 'level' approach, but I found too many sites of the same level were being hacked (even higher up ones).
Yeah but for example, the 3sa iso site was hacked, I could care less about that password, I think it can access my old neopets account, the hundreds of forums I registered to download 1 file and abandoned the account wich I didn't even put my age or gender correctly (those that prevent signing up with temp mail sites or bug me not acounts)

However if one of those accounts like the eBay or Amazon get hacked, they have my address and cc on it, they both have the same data, harm is done,
If I use different passwords for those 2 the only thing that does is preventing the Amazon or eBay boss to login and check what I purchased at the other site..
Because both sites have the critical data like cc numbers, address, real name, real age etc..
 

tech3475

Well-Known Member
Member
Joined
Jun 12, 2009
Messages
3,663
Trophies
2
XP
6,050
Country
Yeah but for example, the 3sa iso site was hacked, I could care less about that password, I think it can access my old neopets account, the hundreds of forums I registered to download 1 file and abandoned the account wich I didn't even put my age or gender correctly (those that prevent signing up with temp mail sites or bug me not acounts)

However if one of those accounts like the eBay or Amazon get hacked, they have my address and cc on it, they both have the same data, harm is done,
If I use different passwords for those 2 the only thing that does is preventing the Amazon or eBay boss to login and check what I purchased at the other site..
Because both sites have the critical data like cc numbers, address, real name, real age etc..

Depends on the nature of the hack, for example, if they only manage to get my login information for 'site A' but if I shared my password with 'site B' and the former got hacked then the hackers could go on to make purchases from 'site B'.

BTW, this has happened before where e.g. ebay were hacked but the financial information was supposedly not accessed.
 

Starfighter-Suicune

Active Member
Newcomer
Joined
Dec 19, 2016
Messages
30
Trophies
0
Website
www.twitch.tv
XP
90
Country
Germany
Someone on /r/3dshacks claimed that he brute forced known passwords and that's how he got the 440 names. Then his friend leaked what he found.

This would mean that every forums that has a NNID entry option would have an even bigger problem when getting hacked. And there are a lot...
Good that I don't put mine in there because there is no reason for that.
 

Mikemk

Well-Known Member
Member
Joined
Mar 26, 2015
Messages
2,090
Trophies
1
Age
28
XP
3,115
Country
United States
I use a passwords level system.
Anything that I put a credit card on it has a level 5 password, email has another level 5 password
And stuff like forum websites I register like that 3ds iso site has a level 1 password, meaning a shitty one that can be easily remembered and brute force, if people steal this password, they only see shity posts asking for ROMS and not so secret stuff like dynamic ip address and email registered..
I used to do that, now (as of about a week ago) I encrypt some secret data with info about the site and use the encrypted output as a password.
 

migles

All my gbatemp friends are now mods, except for me
Member
Joined
Sep 19, 2013
Messages
8,033
Trophies
0
Location
Earth-chan
XP
5,299
Country
China
I used to do that, now (as of about a week ago) I encrypt some secret data with info about the site and use the encrypted output as a password.
that's a really nice IDEA!
so, you use a password, mix it up with let's say, the site name, and the generated output will be that site password?

is it secure? they can't use the site name and the outputted password to generate the main passowrd?
 

Mikemk

Well-Known Member
Member
Joined
Mar 26, 2015
Messages
2,090
Trophies
1
Age
28
XP
3,115
Country
United States
that's a really nice IDEA!
so, you use a password, mix it up with let's say, the site name, and the generated output will be that site password?

is it secure? they can't use the site name and the outputted password to generate the main passowrd?
It's secure as long P =/= NP. And of course the secret remains secret.
 

Arecaidian Fox

fox-ott
Member
Joined
Sep 5, 2013
Messages
1,289
Trophies
2
Age
36
Location
Washington State
XP
3,023
Country
United States
Name's not on there, so I can rest easy. Doesn't seem like it was on Ninty's end anyway. As far as password security goes, I tend to use random alphanumeric strings (with a few symbols thrown in) that I memorize. But I'm having to change them so much it's hard to keep up on all of them. Maybe I should just generate a few random unique files and use the SHA or MD5 hashes from them as passwords from now on =/ ...
 
S

Saiyan Lusitano

Guest
My username's not there but gonna change the password anyway. It's been a while since I updated it.
 

Sketchy1

gbatemp's shadiest warez dealer
Member
Joined
Aug 9, 2016
Messages
1,553
Trophies
0
Age
25
XP
651
Country
United States
Good thing i have no legit purchases and/or credit cards on these eshop accounts :creep:

Edit:
Lol mine wasn't there anyway

--------------------- MERGED ---------------------------

That moment you realize first that iso site as hacked and now Nintendo.

Security these days, SMH
 
Last edited by Sketchy1,

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    SylverReZ @ SylverReZ: @OctoAori20, Thank you. Hope you're in good spirits today like I am. :)