Meet the Other Phone. Child-safe in minutes.

Meet the Other Phone.
Child-safe in minutes.

Buy now

Please or to access all these features

Site stuff

Join our Innovation Panel to try new features early and help make Mumsnet better.

See all MNHQ comments on this thread

Hackergate part four - PLEASE READ!

993 replies

RebeccaMumsnet · 20/08/2015 10:12

Previous thread here and original thread here

We will post here throughout the day with updates and info, please do post any questions and we will get to them as soon as possible.

If you need to get in touch off of the boards, please email [email protected], we have a team of people working through the inbox now and will get back to you ASAP but please do bear with us, it's very busy.

There is also a specific thread about passwords here.

Thanks all
MNHQ

OP posts:
Thread gallery
10
TiredButFineODFOJ · 20/08/2015 20:30

Scary dadsec.lol page

Hackergate part four - PLEASE READ!
StephanieBeacham · 20/08/2015 20:33

Tired - maybe don't put that on here? I think most of us are sick of it Smile

akkakk · 20/08/2015 20:34

Bore - not a problem :)

WellWhoKnew
this is how URLs are constructed...
there are different sections which all are of use to the server...

www.domain.com/folder/page?variable1=fred&variable2=mary

in the above, lets split it down:

https
is the protocol being used - http = Hyper Text Transfer Protocol or some such thing :) - basically it means pages linked together and is how the web started... the s bit at the end is a secure bit which encrypts the conversation between computer and server. You can have other bits here - e.g. ftp:// for file transfer protocol - which is a bit more technical...

://
don't worry about it! - usually your browser ignores it / hides it

www.domain.com
this is your 'domain' well sort of :) the domain is actually the domain.com bit... the world is split in top level domains (TLDs) - the .com bit and alternatives might be .co.uk or .uk for the UK - .com is american as that is where they started this process...

when you buy the domain - you can then choose the bits to go before it so you could have forum.domain.com / www.domain.com / etc. - www is a convention and not required, sometimes they all just end up at the same place...

/
this is significant - everything to the left of the first single slash says which server to go looking for - everything to the right is about finding something on that server...

folder
you can now subdivide pages etc. so can have folders if you wish, you can also use this bit differently using htaccess rules, but roughly speaking if we think of each bit between slashes as being a method of categorising then that generally makes sense - used to make it legible for users, and easy to use for the computer...

page
eventually you have something to the right of the last slash - this is likely to be the actual page - it might have an ending such as php or aspx - or it might not :)

? &
this is the start of a list of variables to feed into that page, the first one is a question mark, the rest being ampersands.
between each is a variable and its value e.g. variable 1 = fred the page will suck that in and use it to personalise the experience...

so in your examples:
/talk/shite_stuff/123456-wot-is-going-on?trending=1
/talk/shite/123456-wot-is-going-on?#prettyphoto.

the ?trending=1 is simply a variable to be read by the page - and irrelevant -you can put your own in and see what happens - it used to be an earlier form of hacking - add &user=admin to the end and early web pages would let you be admin Grin

that is a very generalised overview of URLs - but maybe helpful - the key thing with hackers is to check the www.domain.com bit - if that is not as you expect then you are on someone else's website - if that is fine, then the rest may not matter...

of course you can use URLs in a far more complex way (look at Amazon) - but for now that will do :)

VivaLeBeaver · 20/08/2015 20:37

How does he get actual addresses to send the swat team to?

I'm on holiday anyway.

ItsAllGoingToBeFine · 20/08/2015 20:40

Google a real name and quite often it will pop up on 192.com or similar

VivaLeBeaver · 20/08/2015 20:42

I should be safe then.. I dnt have my real name on my profile and I'm ex directory.

WellWhoKnew · 20/08/2015 20:44

So it does! Thanks for the insight. I have never found URLs interesting until now. I am hoping, though, it's a passing fad...no disrespect.

Arkkorox · 20/08/2015 20:48

tired did you call it?

cozietoesie · 20/08/2015 20:49

Ah. I found Jeffrey's song - pretty well explains everything.

TiredButFineODFOJ · 20/08/2015 20:50

Google says that a Mirror journo has spoken to one of the group. I think they do like the publicity so that will make them easier to trace.

BabCNesbitt · 20/08/2015 20:52

MrsMcGregor, I requested a password reset about three times last night because I thought the request hadn't worked, and then read a post here explaining that with the number of request involved, it was highly likely that for one reason or another, the reset email would probably take a while to come through. I got one reset email through last night, but the other two didn't arrive until this afternoon, and I just deleted those.

OneLittleLady, yep, got an email from Virgin East Coast today advising me to update my password. I just assumed it was as a reaction to the two reasonably newsworthy hacks this week, this and the Ashley Madison thing. Would probably go to the site to change it if you're concerned, rather than following a link in an email, though.

excitedbutsick · 20/08/2015 20:53

I have also had strange issues with logging in. After I reset my password this morning and logged in it took me straight back to the login page with the advice to change to a secure password, the url was the correct one. Also when I open a new session it has the login button on the homepage but I can navigate to a talk page and it will have me as logged in, without actually using the login button.

TiredButFineODFOJ · 20/08/2015 20:53

No I feel bad now in case I'm going to add to ruining a mner's day. I do think given Jeffrey's modus operandi it's probably a "victim's" number he is hoping sngry companies/mumsnetters will call. Though I was kind of hoping for a crazy dadsec clown voicemail (hence linking the Jeffrey with the number so the feds can do some proper late night arresting and not just hoax swatting)

clam · 20/08/2015 20:54

Am I missing something here? How come a Mirror journo has interviewed Jeffrey (or one of his mates), yet the police haven't?

ItsAllGoingToBeFine · 20/08/2015 20:56

If he's in the states as suspected things get more complicated re police etc

StephanieBeacham · 20/08/2015 20:58

One of his mates. Sounded a bit pathetic apparently. Like 'well Jeff said it was a sick idea and he's a mate so erm, yeah, and mumsnet is just really really mean about fathers, yeah, uhhh, um thanks'

BoreOfWhabylon · 20/08/2015 20:58

Mirror journo rang the number posted on SadSac website, I believe.

SadSac's American, apparently and not a father.

cozietoesie · 20/08/2015 20:58

As he's in the States he ought to be even more circumspect.

Theydontknowweknowtheyknow · 20/08/2015 20:59

What is the message of the song cozie?

cozietoesie · 20/08/2015 21:00

Race and women.

StephanieBeacham · 20/08/2015 21:02

No the mate isn't a father. Apparently they have around 100 members Hmm and some a re dads and some are involved in custody/access disputes. all according the world's most reliable red top.

WhyBeHappyWhenYouCouldBeNormal · 20/08/2015 21:02

a previous poster mentioned the getting an email from a popular train company asking us to change passwords... i got that too and not sure if its legit or not. i'm not doing anything about it at present... I'm hoping it is legit, but certainly wouldn't click on any links at the moment...

"Remember, passwords should be like underwear: changed often and never shared!" seems a bit odd for Virgin, no?

Devilishpyjamas · 20/08/2015 21:03

Where's his song? :confused:

WhyBeHappyWhenYouCouldBeNormal · 20/08/2015 21:04

just saw your response to the poster BabCNesbitt, you're probably right. Just being hyper vigilant about EVERYTHING now!

cozietoesie · 20/08/2015 21:04

I would be guessing that they went - before they were really ready - to try to pre-empt the Ashley Madison hack which must have been rumoured on the circuit. Now they have to keep the pot boiling to keep the troops happy.

Swipe left for the next trending thread