Live data from Hacker News

Linode hacked, CCs and passwords leaked

slashdot.org

371–380 of 418 posts

Re: Linode hacked, CCs and passwords leaked

#371

I'm just curious, is this in any how, related to the recent RAM increase ?

Doesn't look like it. If you believe the IRC logs, the attacker broke in using a "0day" exploit of ColdFusion, which is being used on the site. Not because of a flaw in RAM upgrades. Although I believe that Linode beginning to offer free trial accounts is probably responsible for the increase in attacks lately...

Re: Linode hacked, CCs and passwords leaked

#372
post #363

How about you guys cool it and stop organizing a lynching mob devoid of any real data? It's embarrassing. HN is supposed to be populated with lots of very smart, data-driven analytical folks. Yet, every time something like this happens out of the woodwork come people who would ran you and your children down in the event of an emergency rather than turn around, carefully evaluate the situation, and help you. Don't be…

I am a customer too, and I wield no torch or pitchfork, but I grow increasingly frustrated at the lack of response from Linode. I understand your point about the idea that they may be unable to speak to the issue due to law enforcement efforts, but for the moment, acknowledgement would be satisfactory. I would be happy with, "We're aware of the rumors regarding the intrusion at Linode this past week. We are working w…

Here's the response I got from my support ticket:

>Thank you for your inquiry, and I certainly understand your concern. We are still conducting an active investigation and unable to disclose most information at this time. This being said, we do not yet have any evidence that any payment information of any customers have been compromised. We will be releasing further information regarding the incident soon, so please keep watch of our website and blog for said information. If you have any further questions, please feel free to ask.

That actually sounds pretty close to what you're asking for, although I have to say it didn't make me feel much better. It would be nice if they would make a public statement too.

Re: Linode hacked, CCs and passwords leaked

#373

My Visa card that I used with Linode was stolen and used on an Amazon order I didn't authorise last week, my bank successfully blocked the charge. Someone else reported their Visa had also been compromised in the thread 2 days ago, looks like that confirms the suspicions: https://news.ycombinator.com/item?id=5542015 Poor show Linode. (edit: worth noting I use the card with other things too, I have no confirmation it…

FWIW, no charges on my card used with Linode at this point.

Re: Linode hacked, CCs and passwords leaked

#374
post #363

How about you guys cool it and stop organizing a lynching mob devoid of any real data? It's embarrassing. HN is supposed to be populated with lots of very smart, data-driven analytical folks. Yet, every time something like this happens out of the woodwork come people who would ran you and your children down in the event of an emergency rather than turn around, carefully evaluate the situation, and help you. Don't be…

I am a customer too, and I wield no torch or pitchfork, but I grow increasingly frustrated at the lack of response from Linode. I understand your point about the idea that they may be unable to speak to the issue due to law enforcement efforts, but for the moment, acknowledgement would be satisfactory. I would be happy with, "We're aware of the rumors regarding the intrusion at Linode this past week. We are working w…

I get it. It's just that these things keep getting exaggerated, twisted and blown out of proportion in the best Fox News, CNN, MSNBC, et al. style. It's sad to see it happen on HN, where things ought to be far more analytical and data (aka: facts) driven.

Re: Linode hacked, CCs and passwords leaked

#375

I've seen no evidence of passwords or credit card numbers being accessed. The purported "evidence" is a list of supposed entries in a public_html directory. https://bin.defuse.ca/hq0Ay8RzpKdR6vQwYxnmhc Has anyone seen any evidence that this is not simply a hoax?

Well, yes: try some of those files out:

http://linode.com/MyAddress.class http://linode.com/y_key_57284cb2de704e02.html http://linode.com/ispcheck http://linode.com/k5_3

etc.

Re: Linode hacked, CCs and passwords leaked

#376

Earlier quoted context omitted.

Not with a debit card - you don't get the same protections as a credit card and I'd rather just have a few days of hassle and then know my card is secure than be unsure and have to constantly check my account for odd transactions. Also, whilst I may get money refunded if taken from my account, if I miss bill payments as a result - that would affect my credit report and I don't know if that would be removed when I rep…

Yes, you do. The Debit Card was used in a Credit transaction, so Visa's general protections still apply. You can dispute any of the transactions if they were done through credit (which online ones are nearly 100% of the time).

Had $3-4k stripped off a debit Visa while in Europe on holiday. Sent a list of fraudulent transactions to my bank and they had them sorted and refunded within an hour.

I'll be watching my card more closely after this Linode incident, but not cancelling it preemptively.

Re: Linode hacked, CCs and passwords leaked

#377
post #156

I am an ex-customer of Linode and I'm still worried about this incident - Do they still store your card after you've quit the service? This is terrible :(

I've asked them this question. Here is the answer:

Credit card information continues to be stored in our database in an encrypted format, and the decryption key is not stored electronically. We are working on a process on remove the credit card details of past customers on request and can handle this for you soon if you would like. If you have any further questions or concerns please let us know.

Re: Linode hacked, CCs and passwords leaked

#378
post #111

Earlier quoted context omitted.

I've now heard from a number of people using Linode that have suspicious activities on the cc which they used with Linode. I just called up my bank to tell them to 'block' it as a precaution (I will now have to give them a visit later today to get a new card). I encourage all other Linode customers to do the same, because it'll be easier to just spend half an hour doing this instead of spending hours upon hours dispu…

"because it'll be easier to just spend half an hour doing this instead of spending hours upon hours disputing specific transactions." I live on the internet. Put my credit card out on many services. Over the last 5 to 8 years I've had my credit card numbers taken I believe 4 times. Never had to dispute it once. These Credit Card companies and Banks have a stake in not allowing your account to be drained. I think it w…

I've had roughly the same experience: in the last 8 years, I've had suspicious activity on my CC about 5 times. Each time, the bank caught and trapped it before I noticed and issued me a new card quickly. I've only had to fill out paperwork for a disputed charge once, and it was a 2-page, 2 question, sign-and-mail-it-in deal.

My advice is different, though. I notice that I tend to get lucky in places where people can have very aggravating experiences. I'd say that if you've had problems before, then anticipate problems this time around too. If you haven't, then don't bother.

Re: Linode hacked, CCs and passwords leaked

#380
post #310

Earlier quoted context omitted.

Am I the only one who is more confused about why there are compiled java classes and AMI BIOS updates in the www directory than about the hacking itself?

> Am I the only one who is more confused about why there are compiled java classes and AMI BIOS updates in the www directory than about the hacking itself? Sysadmins being lazy. Somebody needs to get a file from a workstation to a remote machine. There's a firewall in the way somewhere that prevents SSH directly between them or one of them is a Windows box that isn't running an SSH server. The "correct" solution is c…

Something that took me a long time to notice was that you can actually copy files directly over a RDP session from/to the local machine or other RDP sessions using the clipboard.. Even nested RDPs. Has been an absolute timesaver to know about when doing Windows admin work.
Post reply on HN