AAO25.com

Community => The Lounge => Miscellaneous => Topic started by: BlueBlaster on Thursday, January 21, 2010, 23:28:11 PM

Title: Over 30 Million Passwords Discovered with SQL Injection
Post by: BlueBlaster on Thursday, January 21, 2010, 23:28:11 PM
http://www.computerworld.com/s/article/9142327/RockYou_hack_exposes_names_passwords_of_30M_accounts

That was a fun read. My favorite quote:
Quote from: Hacker
Don't lie to your customers, or i will publish everything
Title: Re: Over 30 Million Passwords Discovered with SQL Injection
Post by: Spanky on Thursday, January 21, 2010, 23:54:57 PM
lol that's the first I've heard of RockYou. Go hackers go!
Title: Re: Over 30 Million Passwords Discovered with SQL Injection
Post by: Jared on Friday, January 22, 2010, 11:08:20 AM
lol at the people that use the same password for everything!
Title: Re: Over 30 Million Passwords Discovered with SQL Injection
Post by: Spanky on Friday, January 22, 2010, 18:14:14 PM
lol at the people that use the same password for everything!
Says the person that used their school id as a password for everything and that I still happen to remember :)
Title: Re: Over 30 Million Passwords Discovered with SQL Injection
Post by: Jared on Friday, January 22, 2010, 21:14:11 PM
i still remember yours 2 :D
Title: Re: Over 30 Million Passwords Discovered with SQL Injection
Post by: BlueBlaster on Friday, January 22, 2010, 21:17:59 PM
The passwords in the mysql are encrypted with SHA-1. Dump, decrypt, and sell. Go go go!
Title: Re: Over 30 Million Passwords Discovered with SQL Injection
Post by: Jared on Friday, January 22, 2010, 21:51:11 PM
that would be gay
Title: Re: Over 30 Million Passwords Discovered with SQL Injection
Post by: Spanky on Friday, January 22, 2010, 22:17:53 PM
i still remember yours 2 :D
Shhhh, no you don't :) But that's probably because I used my school id as well  ::)

The passwords in the mysql are encrypted with SHA-1. Dump, decrypt, and sell. Go go go!
You know, the only person I've ever done that successfully with (minus the selling) is Crusade's account. This, of course, is not taking into account the many many passwords I got from people by hosting a TS and then checking the database. Fun times.