NationStates Jolt Archive


Problem... urgent help needed, someone is trying to hack my account...

Kahta
27-12-2004, 02:41
There have been 1651 bad login attempt(s) since your last successful login.

Someone is trying to hack my nation
Tuesday Heights
27-12-2004, 02:54
I've reported this thread to the mods in IRC... I wonder who's trying to get you into trouble. ;)
Neo England
27-12-2004, 03:01
Such a shame that people resort to hacking, kinda pathetic really...
Tuesday Heights
27-12-2004, 03:22
Such a shame that people resort to hacking, kinda pathetic really...

Agreed... but they'll get what's coming to them considering it's illegal.
Neo England
27-12-2004, 03:28
Agreed... but they'll get what's coming to them considering it's illegal.

Aye.
DemonLordEnigma
27-12-2004, 03:31
And I bet I know who. Same people as have admitted to being out to get you. Now this has gone too far.
Sdaeriji
27-12-2004, 03:33
Just a side note, it's more likely that no one is "hacking" your nation. They're probably intentionally making bad log ins to mess with your head. Just as illegal, but you probably don't have to worry about anyone actually getting in.
Neo England
27-12-2004, 03:35
Just a side note, it's more likely that no one is "hacking" your nation. They're probably intentionally making bad log ins to mess with your head. Just as illegal, but you probably don't have to worry about anyone actually getting in.

If someone was just trying to mess around, it would be 4 or 5 or so. Just to get someone thinking, it's obvious a hacker.
Tuesday Heights
27-12-2004, 03:37
If someone was just trying to mess around, it would be 4 or 5 or so. Just to get someone thinking, it's obvious a hacker.

I don't think any of us can categorically say it's a hacker.
Neo England
27-12-2004, 03:39
I don't think any of us can categorically say it's a hacker.

Perhaps, anyway it doesn't matter, both are illegal, leave the Mod's to it.
Kleptonis
27-12-2004, 03:41
I don't think anybody would have the time or patience to try to hack you over 1,500 times simply because they don't like you.
Grassylvania
27-12-2004, 03:45
And I bet I know who. Same people as have admitted to being out to get you. Now this has gone too far.
Oh, come now, you honestly think we'd waste our time like that? Even if we did care enough about NS to try and hack someone's account, it wouldn't be Kahta's, and we certainly wouldn't go about it by entering random passwords. Douche.
DemonLordEnigma
27-12-2004, 03:48
Oh, come now, you honestly think we'd waste our time like that? Even if we did care enough about NS to try and hack someone's account, it wouldn't be Kahta's, and we certainly wouldn't go about it by entering random passwords. Douche.

I have no evidence to the contrary. All that I have at hand points directly at you. Oh, and posting flames in the Moderation forum is, at best, suicidal.
Witzgall
27-12-2004, 03:53
That is in no way, shape, or form "hacking."

Does any of you even know what the word hacker means? Your giving...*them*...a bad name.
Majesto
27-12-2004, 03:53
Hey hey now, come on everyone... Why don't we stop the speculation and finger pointing and wait for the mods to look into it and take care of the problem. If Tuesday brought this up on IRC I'm sure the mods are handling it right now as we piss about in here wasting our time.
Grassylvania
27-12-2004, 03:54
I have no evidence to the contrary. All that I have at hand points directly at you. Oh, and posting flames in the Moderation forum is, at best, suicidal.
No, putting a loaded gun in my mouth and pulling the trigger would be suicidal. Flaming in the moddy forum is only liable to get me deated. Now, I realize that may seem like death to those of you who have no life outside of NS, but I do, so it really wouldn't be a very big deal.
Tuesday Heights
27-12-2004, 03:56
Actually, Grass, continued harassment can lead to a lot more trouble than just in the virtual world of NS. ;)
Grassylvania
27-12-2004, 03:58
Actually, Grass, continued harassment can lead to a lot more trouble than just in the virtual world of NS. ;)
Oh, yeah, for sure. I was just visiting Japaica in the joint the other day. Apparently he's married to some dude named Bubba now...
Kleptonis
27-12-2004, 04:00
Well, he's not dead.
DemonLordEnigma
27-12-2004, 04:01
No, putting a loaded gun in my mouth and pulling the trigger would be suicidal. Flaming in the moddy forum is only liable to get me deated. Now, I realize that may seem like death to those of you who have no life outside of NS, but I do, so it really wouldn't be a very big deal.

I was talking about your chances of continuing. You can't get your revenged if you get DOS.

As for life off of here: I come here to escape it. Check even the other threads on here to get an idea of the life I lead.
Grassylvania
27-12-2004, 04:07
Check even the other threads on here to get an idea of the life I lead.
I'll pass, thanks...
Unfree People
27-12-2004, 04:13
Everyone, kindly stop posting until a GM looks into this.

Unfree People
Forum Moderator
Grassylvania
27-12-2004, 04:15
Everyone, kindly stop posting until a GM looks into this.

Unfree People
Forum Moderator
Yessah massah!
Reploid Productions
27-12-2004, 04:41
Using a puppet to continue flaming and to duck a forum ban isn't beneficial to a nation's continued existance on Nationstates.

Kahta- I'll make sure to point the game admins to this thread when they're next online. In the meantime, make sure your password is suitably complex. From the sounds of it, somebody is trying to run a script or something to brute-force guess your password. The thread at the top of this forum about the nation hacks should provide more information.

http://rpstudios.ian-justman.com/junk/CGgoods/RepProdtheModsig2.JPG
~Evil Empress Rep Prod the Ninja Mod
~Master of the mighty moderation no-dachi Kiritateru Teikoku
Kahta
27-12-2004, 04:47
Using a puppet to continue flaming and to duck a forum ban isn't beneficial to a nation's continued existance on Nationstates.

Kahta- I'll make sure to point the game admins to this thread when they're next online. In the meantime, make sure your password is suitably complex. From the sounds of it, somebody is trying to run a script or something to brute-force guess your password. The thread at the top of this forum about the nation hacks should provide more information.

http://rpstudios.ian-justman.com/junk/CGgoods/RepProdtheModsig2.JPG
~Evil Empress Rep Prod the Ninja Mod
~Master of the mighty moderation no-dachi Kiritateru Teikoku


Ok, thanks.
The Most Glorious Hack
27-12-2004, 09:52
Branching from what Reppy said, and considering the temp IP ban to stop brute force, I'm thinking it's a group of people attempting to either A) crack the account or B) completely and utterly freak you out by giving you those bad attempt warnings. I seem to recall someone wanting to do this to a $pacific Delegate a month or so ago.

However, like Reppy said, this is something where an Admin is needed.
Czecho-Slavakia
27-12-2004, 10:16
Branching from what Reppy said, and considering the temp IP ban to stop brute force, I'm thinking it's a group of people attempting to either A) crack the account or B) completely and utterly freak you out by giving you those bad attempt warnings. I seem to recall someone wanting to do this to a $pacific Delegate a month or so ago.

However, like Reppy said, this is something where an Admin is needed.

yhey! mods!
The Burnsian Desert
27-12-2004, 17:20
Kahta, by any chance, did you click a certain link in a certain someone's sig and find this?

And does everyone here know about the "NationMessage=" script?
Kahta
27-12-2004, 17:26
Branching from what Reppy said, and considering the temp IP ban to stop brute force, I'm thinking it's a group of people attempting to either A) crack the account or B) completely and utterly freak you out by giving you those bad attempt warnings. I seem to recall someone wanting to do this to a $pacific Delegate a month or so ago.

However, like Reppy said, this is something where an Admin is needed.


Ok, thanks. If you need any information from me, do not hesitiate to msg me.
Kahta
27-12-2004, 17:27
Kahta, by any chance, did you click a certain link in a certain someone's sig and find this?

And does everyone here know about the "NationMessage=" script?


No, I opened the NS page in a new tab and logged in, and got this message, I was still logged in on the forums.
Neo England
27-12-2004, 17:33
Kahta, by any chance, did you click a certain link in a certain someone's sig and find this?

And does everyone here know about the "NationMessage=" script?

If you know or suspect of any website or source where any malicious script can be found, then by all means, please share.
The Burnsian Desert
27-12-2004, 17:33
No, I opened the NS page in a new tab and logged in, and got this message, I was still logged in on the forums.

Okay, just making sure. This happened to me a few times, but someone had a NationMessage= thing in the URL.
SalusaSecondus
27-12-2004, 17:42
This is very curious, because our records show only 4 total bad login attempts. Perhaps the theory with NationMessage is correct.

P.S. I really should figure out a way of restricting this to system messages.
Majesto
27-12-2004, 17:44
What is NationMessage? I've never heard of that before. Can someone tell me what it is please?
Unfree People
27-12-2004, 18:00
What is NationMessage? I've never heard of that before. Can someone tell me what it is please?
Basically, you can fashion links that, when someone clicks on them, will show them their nation with any message listed in red underneath the CR/Econ/PF boxes. So you can make someone think there have been a thousand bad log ins without that actually being the case.
Myrth
27-12-2004, 18:13
Example. (http://www.nationstates.net/cgi-bin/index.cgi/page=display_nation/NationMessage=You%20have%20been%20pwned%20by%20Myrth.)
Kahta
27-12-2004, 18:29
This is very curious, because our records show only 4 total bad login attempts. Perhaps the theory with NationMessage is correct.

P.S. I really should figure out a way of restricting this to system messages.


I have my password saved to my computer though, so it wasn't my computer..
SalusaSecondus
27-12-2004, 18:29
This is very curious, because our records show only 4 total bad login attempts. Perhaps the theory with NationMessage is correct.

P.S. I really should figure out a way of restricting this to system messages.

Well, this has been added to the massive update (SP2?) that I'm working on, so it should be fixed in roughly a month.
The Burnsian Desert
27-12-2004, 19:32
Hey, one of my crazy half-baked theories actually worked out for once.

W00t.
DemonLordEnigma
27-12-2004, 19:47
Hmm.

Give me eight hours and the trick will become common knowledge. Then, the only people who it will be effective to use on are people new to the game. The best way to fight code exploits like this is to make it commonly known as such until it is fixed.
Tuesday Heights
27-12-2004, 20:22
While it's not common knowledge, it has been known that you can send messages to people with this exploit.
DemonLordEnigma
27-12-2004, 20:43
Make it common knowledge and it won't be used as such of an effective weapon.
SalusaSecondus
27-12-2004, 21:23
Hmm.

Give me eight hours and the trick will become common knowledge. Then, the only people who it will be effective to use on are people new to the game. The best way to fight code exploits like this is to make it commonly known as such until it is fixed.

It was already on my list to fix, it just hadn't moved up to the top. However, as long as I'm rebuilding large parts of code (including code in the same area) I may as well patch this as well.
Tuesday Heights
27-12-2004, 22:12
Sal = God.
The Burnsian Desert
27-12-2004, 22:24
Sal = God.

I always wondered... what do mods do when no one's looking?

So that's where my kitty went...
SalusaSecondus
27-12-2004, 23:55
Sal = God.

Nope!

Max = God.
Sal = Jesus?
DemonLordEnigma
28-12-2004, 00:01
Sal = Paul.
Majesto
28-12-2004, 00:12
Max = God (the creator)
Sal = Jesus (sent by Max to mingle among us)
Mods = Holy Spirit (sent by Max to be with us all the time)

I think that could work...
DemonLordEnigma
28-12-2004, 00:18
We could go polytheistic and make them all gods, ranking them according to importance and power.
Goobergunchia
28-12-2004, 00:32
Max Barry, in the guise of [violet], is our God. The Moderators are His Prophets, and have been endowed by Max with powers to carry out His will. SalusaSecondus has been lifted from the domain of us mortals by Max and has been elevated to a seat at His right hand.

I think that makes Sal the Deputy God.
Jonothana
28-12-2004, 01:03
Deputy God?

Does that mean he has like, secretaries or something?
The Burnsian Desert
28-12-2004, 01:32
Deputy God?

Does that mean he has like, secretaries or something?

ROFL. "Yes, Penny, send Satan in would you?"
DemonLordEnigma
28-12-2004, 01:39
But, who plays the role of Satan? We need someone who would openly oppose the mods, while at the same time doing nothing to get banned and being an expert at trolling.
The Burnsian Desert
28-12-2004, 01:45
Oh, I call it. I am now the ANTIMOD.
Goobergunchia
28-12-2004, 01:46
Hmmmm. I'd say Marathon or Sheol, but those are both long gone now....
Tuesday Heights
28-12-2004, 06:06
If someone is actively using this loophole in a signature or otherwise, do we need to report it?
SalusaSecondus
28-12-2004, 06:23
If someone is actively using this loophole in a signature or otherwise, do we need to report it?

That would be appreciated.
Tuesday Heights
28-12-2004, 06:44
That would be appreciated.

Okie dokie, well, The Phoenix Milita is using it in his/her signature.
Shovel
28-12-2004, 06:45
But, who plays the role of Satan?

Me.
Procco
28-12-2004, 16:21
Hmmmm. I'd say Marathon or Sheol, but those are both long gone now....

Sythia would certainly be a contender.
The Phoenix Milita
04-01-2005, 17:18
Lapse is also using it in his/her signature
Myrth
04-01-2005, 17:29
Lapse is also using it in his/her signature

Fixed.
Galliam
05-01-2005, 00:34
And I bet I know who. Same people as have admitted to being out to get you. Now this has gone too far.

I know what you're thinking, but this actually wasn't me.

~Official Stance~ While I don't like Kahta, I would not go so far as to ahck his account or even attempt to do so because it seems like trying to figure out his password is a complete waste of time.
Kahta
05-01-2005, 00:59
I know what you're thinking, but this actually wasn't me.

~Official Stance~ While I don't like Kahta, I would not go so far as to ahck his account or even attempt to do so because it seems like trying to figure out his password is a complete waste of time.

If it wasn't you, it was someone on PB.
Galliam
05-01-2005, 01:05
If it wasn't you, it was someone on PB.

And you get mad at me for accusing you.

Seems rather Hypocritical to me. We aren't trying to hack you, because we don't like to waste our time on boring things. :rolleyes:
Tuesday Heights
05-01-2005, 01:06
If it wasn't you, it was someone on PB.

I wouldn't throw accusations around like that. Only the mods would know for sure.
Kahta
05-01-2005, 01:07
And you get mad at me for accusing you.

Seems rather Hypocritical to me. We aren't trying to hack you, because we don't like to waste our time on boring things. :rolleyes:


No, spamming is not interesting.
Galliam
05-01-2005, 01:11
No, spamming is not interesting.

Yes it is, you just don't understand it. :D