Status
Not open for further replies.

Addressing the recent user account hack scare

Dear GBAtemp members and visitors,

It has come to our attention that over the past two days, a person has somehow been able to access a few user accounts on our forums. Shortly after, rumors started blossoming regarding a possible site/forum/database hack or a password leak. After an extensive search into server logs and lookup tools we have no reason to believe that any part of our site has been compromised.

At this point, as several people have suggested already, we believe that the reason this intrusion happened is because another site (an illegal ROM/ISO download site) was recently hacked and the password database was exposed to the public. Since a portion of our members was also registered on that site, possibly using the same password, this could explain the recent scare.

Even though we have no reason to believe our site has been compromised, we have taken a series of measures to reinforce account security on GBAtemp. Firstly, we have reviewed security on the server and all components of our site to make sure everything is up to date and secure. Some components of the forum software have been updated and following this update, one or two add-ons have ceased functioning. If you see anything that isn't working as expected, please use our Site discussions and suggestions forum to report the issue.

At this point, we recommend all our members to change their password and enable two-factor authentication. We are sending out e-mails to all our members to inform them of this situation and to recommend them to change their password. We strongly recommend using a unique and complex password, not just here but on every site you are registered to.

If you have any information that may help us get a better grasp on the situation, please get in touch with a member of the staff. Thank you for your understanding!

The staff
 

Seriel

Doing her best
Member
Joined
Aug 18, 2015
Messages
3,298
Trophies
3
Age
24
Location
UK
XP
6,015
Country
United Kingdom
Erm... I don't think I got an email. Perhaps they are still being sent out?
Sending the same email to 355,511 different registered members takes a while.
I haven't got mine either, it'll arrive in a bit, although I suspect it has the same info as this thread anyway.
 

Seriel

Doing her best
Member
Joined
Aug 18, 2015
Messages
3,298
Trophies
3
Age
24
Location
UK
XP
6,015
Country
United Kingdom
Linux Mint 18.1 latest firefox (it didnt happen till after the breach) im assuming the reloaded the site as alot of the layouts and such have turned like the old-er gbatemp
Strange I'm using latest Firefox on Windows atm without issues.
I also haven't seen any regresions, can you point some out?
 

MarioMasta64

hi. i make batch stuff and portable shiz
Member
Joined
Dec 21, 2016
Messages
2,297
Trophies
0
Age
26
Website
github.com
XP
2,106
Country
United States
Strange I'm using latest Firefox on Windows atm without issues.
I also haven't seen any regresions, can you point some out?
byebye bar
 

Attachments

  • Screenshot from 2017-01-12 04-32-17.png
    Screenshot from 2017-01-12 04-32-17.png
    54.3 KB · Views: 219
  • Like
Reactions: Seriel

Slattz

Easygoing Fairy
Member
Joined
Nov 21, 2015
Messages
1,259
Trophies
1
XP
1,787
Country
Ireland
Sending the same email to 355,511 different registered members takes a while.
I haven't got mine either, it'll arrive in a bit, although I suspect it has the same info as this thread anyway.
Yea, I thought that. Kinda shitty for AuroraWright though :/
 
  • Like
Reactions: Seriel

Seriel

Doing her best
Member
Joined
Aug 18, 2015
Messages
3,298
Trophies
3
Age
24
Location
UK
XP
6,015
Country
United Kingdom
@Seriel stop fearmongering we all want our moment of fame but this is not how you do it
Can you not.
I don't give two shits about "fame" or attention or any nonsense.
I'm just helping fellow tempers as one of them. If anything you're the one trying to get fame with your "cool" post about how I need to calm down.
Seriously just chill already, I'm not trying to scare anyone, everything is fine I'm just helping people debug issues.

But sure fine if you don't want anything to ever be resolved then so be it.
 
  • Like
Reactions: cheuble and Slattz

Bladexdsl

fanboys triggered 9k+
Member
Joined
Nov 17, 2008
Messages
21,199
Trophies
2
Location
Queensland
XP
12,397
Country
Australia
that 2 step verification was annoying me so i turned it off. my accounts fine i don't go to them illegal rom/iso sites (i use usenet :P)
 
D

Deleted User

Guest
Man, this is not what I wanted to wake up to this morning...

Then again, it's the internet so I'm not overly suprised; you're pretty much guaranteed to encounter low-lifes who spoil it for the many just for the fun of it.
 

AlucardjX

Well-Known Member
Member
Joined
Mar 6, 2016
Messages
215
Trophies
0
XP
89
Country
Italy
password changed and enabled two step method,i am sorry for Aurora :( tnx to the admin for the promptly contact!hope all returns normal...
 

WiiUBricker

News Police
Banned
Joined
Sep 19, 2009
Messages
7,827
Trophies
0
Location
Espresso
XP
7,520
Country
Argentina
Can anyone recommend a good safe password manager? By safe I mean one that's not going to steal the passwords.
Yes, yourself. Just randomly type on your keyboard until you have created a long password and then manually insert special characters to it to give it a bit more spice. Then save it to a document and encrypt it with another password generated the same way. This is your master password. Then you encrypt your encrypted password with another randomly generated password. This is your Grandmaster password. Print your grandmaster and master passwords and lock it in a save place. Alternatively, you can try to memorize them.
 
Last edited by WiiUBricker,

RedBlueGreen

Well-Known Member
Member
Joined
Aug 10, 2015
Messages
2,026
Trophies
1
XP
2,538
Country
Canada
Yes, yourself. Just randomly type on your keyboard until you have created a long password and then manually insert special characters to it to give it a bit more spice. Then save it to a document and encrypt it with another password generated the same way. This is your master password. Then you encrypt your encrypted password with another randomly generated password. This is your Grandmaster password. Print your grandmaster and master passwords and lock it in a save place. Alternatively, you can try to memorize them.
But what if I have an evil twin who shares all of my knowledge and they get the passwords?
 

mathieulh

Well-Known Member
Member
Joined
Feb 28, 2008
Messages
378
Trophies
0
Website
keybase.io
XP
897
Country
France
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

It's a shame that Gbatemp administrators have had to wait until this whole debacle showed up on their doorstep to implement two factor authentication, site administrators need to be proactive with their security and not wait for things to happen.

Why can we only use facebook as an external site? Google authentication (which supports U2F) is a whole lot more secure than facebook's (or gbatemp's for that matter) and would have been a better choice.

P.S. I am signing this message with my PGP key just so you can ensure my account is not compromised and I am actually the one writing this post.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2

iQEcBAEBCAAGBQJYd10HAAoJEKa4nBz3AlIIqeYH+QEOnxL5GMqye4/+zTwlDCp8
/i8HxSJVJaXM3c8Xmp602FgCjbEvcJWuoBMMBADtgyn9s/OKcyjZgL79LFkRVKD2
o3xqGSwIJB1BZAfsbLAL2KiMy81ibl/ihdM7yp0BicOUrKYo0MIzahdePu7JESzr
VkdgBp5Q+Pf4IUbiol5L8UoWLcdgxf281z4RRt5PFrw33KJMICo0LUea1jtchgZZ
DPGkgJaUXTS5p23ZUdz6uq5Wnow1u2SHw04YMfWIYx1DINSppofC6f/MTQFRmdd6
94OAA+WRfp4DtcRisS+wUzRCaAUYbnP/3JHB8kSjAowhXQlGGPBcZCwJeIB2FPA=
=qJ1d
-----END PGP SIGNATURE-----
 
  • Like
Reactions: Seriel
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • SylverReZ @ SylverReZ:
    @Xdqwerty, People who create revival services for the Wii end up in disaster, same goes for Pretendo lol.
    +1
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, atleast wiimmfii went fine although people only use it for Mario kart Wii
  • SylverReZ @ SylverReZ:
    At least if they ban you for cheating, get another Wii. They're cheap as chips.
    +1
  • SylverReZ @ SylverReZ:
    Remember when RiiShop was a thing?
  • BakerMan @ BakerMan:
    not really
  • SylverReZ @ SylverReZ:
    It got shutdown because somebody "accidentally" leaked the database for the amount of people using the beta.
  • SylverReZ @ SylverReZ:
    RiiShop is the laziest way of downloading Wii games. Did somebody not think of this through?
  • BakerMan @ BakerMan:
    although i ended up accidentally changing my nand with no way of going back bc i didn't know you needed a gamecube controller to restore it (i have a wii minus/1.1, which doesn't have gamecube controller support)
  • SylverReZ @ SylverReZ:
    @BakerMan, I think you're talking about the recovery mode that the SaveMii used, and also was to restore softbricked systems.
  • SylverReZ @ SylverReZ:
    If your NAND was hardbricked, then just buy another Wii. Or go with the dirty NAND flasher method.
  • BakerMan @ BakerMan:
    and if i find the sd card i have my NAND backed up on, i can not only restore the NAND if i solder the right part in, but i can also put my NAND on dolphin, then i can play dolphin online, like PMEX Remix or MKWii Riibalanced
  • Xdqwerty @ Xdqwerty:
    Brb
  • SylverReZ @ SylverReZ:
    @BakerMan, Oh yeah, that was a thing too. Dolphin does support Wiimmfi.
  • BakerMan @ BakerMan:
    yeah you just need to put your NAND backup with wiimmfi on it
  • BakerMan @ BakerMan:
    ngl i feel like if a bunch of my friends have wiis and know how to get wiimmfi and back up their NAND, then we could do a PMEX Remix tournament
  • BakerMan @ BakerMan:
    maybe even add UMVC3/DBFZ and make it a biathlon/triathlon
  • Psionic Roshambo @ Psionic Roshambo:
    Too bad Excite Truck wasn't multi player :(
  • Psionic Roshambo @ Psionic Roshambo:
    Loved that game lol
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, sorry for the stupid suggestion I had in that thread
  • SylverReZ @ SylverReZ:
    Its fine
  • BakerMan @ BakerMan:
    what thread?
    Psionic Roshambo @ Psionic Roshambo: https://www.youtube.com/watch?v=lxR2jow50Bs