Hi all,
Just been notified by “Have I been pwned” that this site has suffered a data breach.
Has the breach been sealed before I go about changing my password?
Hi all,
Just been notified by “Have I been pwned” that this site has suffered a data breach.
Has the breach been sealed before I go about changing my password?
I received this email too
Where do you sign up for this to get a notification? :o
Firefox just informed me of the same breach including password having been breached.
More concerning, according to Firefox the breach date was 1 July 2019.
Why was this breach not notified earlier?
Yes, why wasn’t community let know? They should have at least sent out a notice to change passwords or something as it states that passwords were included.
Its a Chrome problem i think . Got it today on biggest site i use on my country and only on chrome:)
Password changed, catastrophe avoided, for now. :rolleyes:
[CODE]Planet Calypso: In approximately July 2019, the forums for the Planet Calypso game suffered a data breach. The breach of the vBulletin based forum exposed email and IP addresses, usernames and passwords stored as salted MD5 hashes.
Compromised data: Email addresses, IP addresses, Passwords, Usernames[/CODE]
At least it is “just” salted hashes of names and passwords
me 2, seems there was 62 261 accounts that got breeched.
Why no information to us? or wasnt it known the the owners of PCF?
I’ll do this when we know the breach has been sealed.
It was done in a reflex.
I will change again at that point.
Thanks for pointing that out.
Hopefully we will get an official statement.
I got This message from Firefox monitor:
Planet Calypso
Datenleck hinzugefügt:
12. Januar 2020
Passwords kept as salted hashes is the correct and secure way of storing them.
However over the past decade MD5 is proven to have a number of weaknesses.
Thankfully most MD5 attacks take time and computational power if everything else is done right.
Ideally MA/EU upgrades to something more secure like SHA-2 or SHA-3 hash function in the near future.
BUT, MA/EU should never publicly discuss or disclose their technical side of these things.
However, MA/EU should always disclose when there’s been a data breach that includes names, emails, etc.
Also when their security breach was sealed.
One thing I’ve noticed is that forums tend to be targets (or at least show up in breaches) often. One can talk about having separate passwords for every single site, but forums are the one area I always make sure to give priority to not using one similar to other sites or game logins because of that.
I was notified by Firefox via email and changed my password. I’ll change it again when it seems appropriate to do so. This isn’t the first data breach my information has been compromised in and I highly doubt it will be the last.
I think it’s concerning there’s been no notification from officials to say this is either under investigation or that the breach has been found and/or sealed.
It should give 10 years of prison for illegal hackers. Also email spaming should give 2 - 5 years.
110 grains of lead travelling 800 feet per second, applied to the frontal lobe of the suspect.
If not allowed, then a #10 boot thrust squarely into the anal sphincter of said suspect. Daily.
After spending 10 years “married” to my Mother (thanks to a hacker), I have 0% humor for their antics.
I guess you had to be there.