
It's that time again! Time for me to give you a few tips on keeping your internet life safe, and hack-free.
- Don't use the same password on all the sites that you use! If you use windows, KeePass is a good application for keeping all of your passwords in one place (and locked with a master password!) so that you don't forget them. If you are using a mac, you can use the Keychain which comes with your mac (it's in applications/utilities) or 1Password is what I personally use ;).
- Make sure that your e-mail password is different than any password you use on a site! If someone gets into your e-mail, they can use the 'lost password' functions on sites to get into any site that you play.
- It's a good idea to change your password monthly (or more often than that!).
I know that it's a hassle changing passwords and trying to remember them, which is why I linked to software that can help with that (or you can use the Keychain that comes with your mac!). Really, it's worth it to not log into your favorite sites one day to see that everything has been taken.
Posted by Keith
IcabodCrane
Now Keith's insinuating this is my fault!! WHAT THE FUCK!?!
Because my computer's pretty well protected, I don't have to worry about my personal stuff... and if someone hacks my subeta account then it's just a game that got fried.
<b>Quote:</b><blockquote style="padding:5px; line-height:15px; background-color: #FAFFFF; border: 1px solid #000000; font-family: georgia; font-size: 10;">I know I've heard about Keith buying like 300 USD worth of items on Gaia on some site that also sells Neopet items.</blockquote>
... what does that have to do with this, exactly? :T
... what does that have to do with this, exactly? :T

Why would someone go to the trouble of hacking all these accounts and wasting their day to spread this?
When they could probably get away with hacking if they were more discrete?
When they could probably get away with hacking if they were more discrete?
What purpose do the hackers have by accessing and posting all these threads? Where there's smoke there's usually fire.
May not have sold ALL of the accounts but maybe a few for funds for the layout.
I know I've heard about Keith buying like 300 USD worth of items on Gaia on some site that also sells Neopet items.
May not have sold ALL of the accounts but maybe a few for funds for the layout.
I know I've heard about Keith buying like 300 USD worth of items on Gaia on some site that also sells Neopet items.
Duck, that still doesn't make me feel any better, especially with the other occurances I've stated.

One reason why that post was deleted, as I read over it, is in the 'need more proof' part where it added in some codes, it revealed pws for 3 current users!!
There are such things as hackers, but there is nothing to be gained by selling pws to third parties, unless said third parties are hackers, but what would be gained in doing that for anyone? Every site out there that has members tells their customers to change their pws on a regular basis, avoid phishing scams and don't give your pw out to anyone at all ever. I have worked for places where the pws are coded and only ceratin people can obtain them, or send them to the 'customer' with the computer system, but they can't actually see them. Hackers can go into the code, if they know how, to find the pws, but it's very difficult and nothing can be gained by doing so for a site like this. All that happens is havoc, but no monitary gain comes from doing so.
If the owner of the site asks you to change your pw on a regular basis, he is telling you to keep yourself safe, just as any online site would, including, eBay, Verizon, any and ALL creditcard companies and banks. If you feel your pw is compromised, change it immediatly. Keith cannot 'fund' this site by selling our pws, to whom would he sell them to? And if he sold them to hackers, what would they be able to get from it? Fake money and gif pets and clothes? Please,people you need to stop thinking there's some big conspiracy going on here. I"ve been here for several years and have never had my account compromised- because I don't give out my pw and I change it often.
So calm down.
Thanks for the update.
There are such things as hackers, but there is nothing to be gained by selling pws to third parties, unless said third parties are hackers, but what would be gained in doing that for anyone? Every site out there that has members tells their customers to change their pws on a regular basis, avoid phishing scams and don't give your pw out to anyone at all ever. I have worked for places where the pws are coded and only ceratin people can obtain them, or send them to the 'customer' with the computer system, but they can't actually see them. Hackers can go into the code, if they know how, to find the pws, but it's very difficult and nothing can be gained by doing so for a site like this. All that happens is havoc, but no monitary gain comes from doing so.
If the owner of the site asks you to change your pw on a regular basis, he is telling you to keep yourself safe, just as any online site would, including, eBay, Verizon, any and ALL creditcard companies and banks. If you feel your pw is compromised, change it immediatly. Keith cannot 'fund' this site by selling our pws, to whom would he sell them to? And if he sold them to hackers, what would they be able to get from it? Fake money and gif pets and clothes? Please,people you need to stop thinking there's some big conspiracy going on here. I"ve been here for several years and have never had my account compromised- because I don't give out my pw and I change it often.
So calm down.
Thanks for the update.
Well I'm with Lyl... my trust has been pretty compromised. I mean Aaron said Godlies would NEVER end up in the frag shop again, and then the DAY after I get my SSB it's in there for 10k crystals. Ontop of that... then there's a ton of hacks going about the site which has happened over and over again.

Keith
STAFF
I don't ask that you trust <strong>me</strong>, but we're a <strong>team</strong> and we all work on the security of the accounts. I'm not bothered if you think I'm a money hungry whore who would sell out all the users in the drop of a hat, but I can guarantee you that the rest of the team would be objective to that <img src="http://images.subeta.net/smilies/6398_emoticon_wink.gif" border="0" />.

Keith
STAFF
Not to mention, they were posting <strong>false information</strong>, that not only undermines the security efforts that we have made (including having a firm look over our MySQL code to make sure that we are protected from injections) but it makes people question the safety of their accounts.
We are <strong>not</strong> selling user account information (if I was that hungry for money, I'd be putting ads all over the site <img src="http://images.subeta.net/smilies/6398_emoticon_wink.gif" border="0" />)
We are <strong>not</strong> selling user account information (if I was that hungry for money, I'd be putting ads all over the site <img src="http://images.subeta.net/smilies/6398_emoticon_wink.gif" border="0" />)

Keith
STAFF
Why... would we leave <strong>40</strong> threads that the person made <strong>on a hacked account</strong>. Why would we leave that, and not delete them (or, in reality, we moved them to the UA forums). It doesn't make any sense.

wait a minute--if we have PINS protecting all our areas: bank, vault, shop till, etc. what could anyone do if they did get our passwords? i thought that's what the PINS were all about.
so are we supposed to change our PINS as well as our passwords now?
ish SO confussed
so are we supposed to change our PINS as well as our passwords now?
ish SO confussed

Keith
STAFF
@IcabodCrane No -- We're just posting this so that users are smart enough (this time) to change their password.
The hashes being posted are from JUNE, when the exploit happened. We've asked people to change their passwords multiple times since then.
The hashes being posted are from JUNE, when the exploit happened. We've asked people to change their passwords multiple times since then.
User not found:
oh, mayor dramz!!
sometimes it really seems as if the users were against keith (and staff) <img src="http://images.subeta.net/smilies/6398_emoticon_wink.gif" border="0" />
sometimes it really seems as if the users were against keith (and staff) <img src="http://images.subeta.net/smilies/6398_emoticon_wink.gif" border="0" />
I'm still starting to wonder if the selling to third party access is true... it seems like if there was an SQL inject that allowed this, that they'd put it up right away, not wait until accounts start getting nuked.

FexHex if you don't know, you have 32bit <img src="http://images.subeta.net/smilies/6398_emoticon_smile.gif" border="0" />
Someone posted a thread saying Keith sold user accounts and passwords to someone and he said it was for funds towards a new site layout. Then the thread suddenly vanishes like it never existed and then the news announcement. :I
This is fishy as fuck.
This is fishy as fuck.
User not found:
I always get hacked occasionaly by a certain person bt now NO MORE!!! thanksXS TO SUBETA ^^

Ack! Do you have any idea how many usernames and passwords I have to remember every day? No complaining anybody! I love how Subeta reminds us every now and then, because I'm always forgetting about security on my game sites.

keith--can you please put a link in your post to where we change our passwords?
some of us can`t find it in the new format. it's not under preferences anymore.
some of us can`t find it in the new format. it's not under preferences anymore.
Weird posts here, what's happening? I'll change again just to be safe.
Actually, can we really be safe? Seeing all that information popping here is really really weird and scary.
Actually, can we really be safe? Seeing all that information popping here is really really weird and scary.
User not found:
FexHex, its a cookie grabber.
Youre an idiot for clicking it.
KELLLLLLLLY CLARKSOOOOOOON!
Youre an idiot for clicking it.
KELLLLLLLLY CLARKSOOOOOOON!

ok, i know i'm pretty pc-illiterate, but i can usually download a program with no problem. but when i went to download this one, it asks me which windows platform i have: 32-bit or 64-bit. huh???
if this is required information to download, can't they at least tell me where to find it?? anyone?
if this is required information to download, can't they at least tell me where to find it?? anyone?
User not found:
Mogel, Cyde, Jakey, Longcat?
WHAT A WALK DOWN MEMORY LANE
WHAT A WALK DOWN MEMORY LANE

I changed my password and then I couldn't log in for over a half hour.
The forget password wasn't working at first, but now it is.
Finally got back into my account.
The forget password wasn't working at first, but now it is.
Finally got back into my account.

User not found:
@Zoshi_the_Confused
Oh, I see.
I should have figured as much.
I have a short memory apparently.
x.x
Oh, I see.
I should have figured as much.
I have a short memory apparently.
x.x

OH how fun.
I use diff passwords so safe. <img src="http://images.subeta.net/smilies/6398_emoticon_wink.gif" border="0" />
just to be sure...
/changes
I use diff passwords so safe. <img src="http://images.subeta.net/smilies/6398_emoticon_wink.gif" border="0" />
just to be sure...
/changes

Private email server ftw <img src="http://images.subeta.net/smilies/6398_emoticon_smile.gif" border="0" />
User not found:
"Really, it's worth it to not log into your favorite sites one day to see that everything has been taken. "
Yeah, considering Ive done that to 30+ so far <img src="http://images.subeta.net/smilies/6398_emoticon_sad.gif" border="0" />
Yeah, considering Ive done that to 30+ so far <img src="http://images.subeta.net/smilies/6398_emoticon_sad.gif" border="0" />
I keep wondering why after every one of these little problems, somehow a few days or weeks later a meticulous list of passes ends up on a site and it ends up ultimately in this happening. I browse the little pet-site forums and it always sends to pop back up. Is the security really that bad?
ALSO, the version of Norton I got with my computer, had a internet toolbar that keeps the passwords saved with a master PW too.

User not found:
How does this relate to those weird boards popping up everywhere (if at all)?
I think I noticed those on the tail end, so please don't shoot me if I'm treading into deep water here.
I think I noticed those on the tail end, so please don't shoot me if I'm treading into deep water here.
I must research this Keychain thing. I just got my mac not too long ago and am still mac-tarded <img src="http://images.subeta.net/smilies/6398_emoticon_sad.gif" border="0" />
