!!ATTENTION!! - Please Secure Your Passwords!

We sure do have a lot of rules and guidelines threads - find them all here, and please make sure you've read them! Also, community-wide announcements (that aren't major ZDoom News) go here as well.

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby enderkevin13 » Tue May 31, 2016 12:14 pm

Havoc wrote:Just changed my password. I even had to use the "I forgot my password" option, as I couldn't remember what password I used for this account :mrgreen:

I've got my eye on you. My one and only abbadon eye...
User avatar
enderkevin13
Official abbadon of ZDoom
Banned User
 
Joined: 07 Jul 2015
Location: :noiƚɒɔo⅃

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby wildweasel » Tue May 31, 2016 12:20 pm

enderkevin13 wrote:
Havoc wrote:Just changed my password. I even had to use the "I forgot my password" option, as I couldn't remember what password I used for this account :mrgreen:

I've got my eye on you. My one and only abbadon eye...

He's legit, dude. I'd really appreciate if you'd stop making posts like this.
User avatar
wildweasel
「お前はもうトースト」[you are already toast.]
Moderator Team Lead
 
Joined: 15 Jul 2003

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby enderkevin13 » Tue May 31, 2016 1:09 pm

wildweasel wrote:
enderkevin13 wrote:
Havoc wrote:Just changed my password. I even had to use the "I forgot my password" option, as I couldn't remember what password I used for this account :mrgreen:

I've got my eye on you. My one and only abbadon eye...

He's legit, dude. I'd really appreciate if you'd stop making posts like this.

Okay, just making sure. Can't be too sure at this point.
User avatar
enderkevin13
Official abbadon of ZDoom
Banned User
 
Joined: 07 Jul 2015
Location: :noiƚɒɔo⅃

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Graf Zahl » Tue May 31, 2016 1:11 pm

It's still not your business. And in doubt, check the person's posting history.
User avatar
Graf Zahl
Lead GZDoom Developer
 
Joined: 19 Jul 2003
Location: Germany

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Zhs2 » Tue May 31, 2016 1:20 pm

randi wrote:
Zhs2 wrote: convincing randi we need a better plugin, better blacklists, etc.

There's a difference between blocking random spammers and blocking somebody specifically targetting your board "for fun".
This is a fair difference, sure, and it's good to assume the worst in both cases when it comes to security. In that regard, although the damage has already been done and the best that can be done now is damage control, perhaps what the board needs is a slightly less or maybe even completely unautomatable captcha for the next time anyone begins to think the same way this guy does.
User avatar
Zhs2
Power of three.
 
Joined: 07 Nov 2008
Location: Maryland, USA, but probably also in someone's mod somewhere

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Hellsmith1 » Tue May 31, 2016 2:25 pm

I thank the best way to do is to stay offline for awhile if this guy is trying his best to guess our passwords then it's best to stay away from here a day or two so we can
let the professional here to do there jobs.
User avatar
Hellsmith1
It's party time? P.A.R.T.Y?
 
Joined: 17 Jan 2015
Location: Jasper county Indiana

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Kinsie » Tue May 31, 2016 2:30 pm

Hellsmith1 wrote:It's not just your password that there trying to hack and I am not going to say anymore but be careful about what you post because once this hijacker or hacker sees what you post here it could be over with in a heart beat.
If there's one thing this situation was sorely lacking, it was vague melodrama.
User avatar
Kinsie
A Concept Utterly Obsolete
 
Joined: 22 Oct 2004
Location: MAP33
Discord: Find Me...
Twitch ID: thekinsie

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Shadelight » Tue May 31, 2016 4:09 pm

Yeah, seriously. Hellsmith1, cut that out. It's not helping this thread any and it's just you trying to add to your post count.
User avatar
Shadelight
You must construct additional lumber.
 
Joined: 20 May 2005
Location: Labrynna
Discord: Shadelight#4920

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Rachael » Tue May 31, 2016 4:21 pm

Zhs2 wrote:This is a fair difference, sure, and it's good to assume the worst in both cases when it comes to security. In that regard, although the damage has already been done and the best that can be done now is damage control, perhaps what the board needs is a slightly less or maybe even completely unautomatable captcha for the next time anyone begins to think the same way this guy does.

Have any good ones?

Most are easily beaten these days. Anything that phpBB implements are extremely popular targets for CAPTCHA robot programmers, and the most popular plugins become high value targets as well.
User avatar
Rachael
Webmaster
 
Joined: 13 Jan 2004
Discord: Rachael#3767
Twitch ID: madamerachelle
Github ID: madame-rachelle

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Zhs2 » Tue May 31, 2016 4:54 pm

I admit to not, and sarcastically exaggerating/not spending effort on research. I suppose though that, even for as simple as the current captcha is, it does the job it was set in place for. :shrug:

Edit: Well, someone did mention this. But still.
User avatar
Zhs2
Power of three.
 
Joined: 07 Nov 2008
Location: Maryland, USA, but probably also in someone's mod somewhere

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Matt » Tue May 31, 2016 10:18 pm

For password tips, how about long, descriptive sentences with cliché phrases that are slightly mangled as to be cringeworthily stupid (and thus memorable) and mixed metaphors so awkwardly placed they make your skin crawl when you type them?
User avatar
Matt
Putting the XD into *xdeath since 2007
 
 
 
Joined: 04 Jan 2004
Location: Gotham City SAR, Wyld-Lands of the Lotus People, Dominionist PetroConfederacy of Saudi Canadia

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Kinsie » Wed Jun 01, 2016 3:14 am

Vaecrius wrote:For password tips, how about long, descriptive sentences with cliché phrases that are slightly mangled as to be cringeworthily stupid (and thus memorable) and mixed metaphors so awkwardly placed they make your skin crawl when you type them?
Just use KeePass to create a password-protected database for all your logins (you ARE using different passwords on different sites, right). That way, if you need to change a password for some reason, it's just one click to generate 32+ characters of un-bruteforcable gibberish which you can cheerfully copy to the clipboard with a double-click.

If you store your database in a (unshared, non-public!) Dropbox folder, you can also use it on various smartphone things through a number of apps. Very simple, very easy to get started, and Just Plain Good Practice.

There are other password database things and services out there, but Keepass is free and open-source, so it works for me.
User avatar
Kinsie
A Concept Utterly Obsolete
 
Joined: 22 Oct 2004
Location: MAP33
Discord: Find Me...
Twitch ID: thekinsie

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Marrub » Wed Jun 01, 2016 3:16 am

Kinsie wrote:words

I think KeepAss is a better capitalization, it helps you Keep your Ass [safe].
User avatar
Marrub
Xevv Va Rkvyr
 
 
 
Joined: 26 Feb 2013
Discord: Marrub#5455
Twitch ID: marrubdaskuleion
Github ID: marrub--

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby GFD » Wed Jun 01, 2016 6:43 pm

KeePass actually might not be the best option? I personally recommend KeePassX.
User avatar
GFD
My brain's probably worth a lot of money!
 
Joined: 31 May 2010
Location: Canada

Re: !!ATTENTION!! - Please Secure Your Passwords!

Postby Graf Zahl » Thu Jun 02, 2016 3:39 am

I tried KeePassX but in my opinion that's nearly as useless. Just looking at the password store file makes it plainly obvious that this is a KeePassX password file - so anyone with bad intentions can find the file itself by looking for a simple pattern. In my opinion the only secure way to store stuff is not only to encrypt the data but also encrypt the file itself so that any pattern matching algorithm can't even find that.

I wouldn't store anything security related in the cloud when everybody can immediately see that it's security related.
User avatar
Graf Zahl
Lead GZDoom Developer
 
Joined: 19 Jul 2003
Location: Germany

PreviousNext

Return to Rules and Forum Announcements

Who is online

Users browsing this forum: No registered users and 3 guests