Jump to content

Nexus hacking


Dark0ne

Recommended Posts

  • Replies 298
  • Created
  • Last Reply

Top Posters In This Topic

Dear addons.mozilla.org user,

 

The purpose of this email is to notify you about a possible disclosure

of your information which occurred on December 17th. On this date, we

were informed by a 3rd party who discovered a file with individual user

records on a public portion of one of our servers. We immediately took

the file off the server and investigated all downloads. We have

identified all the downloads and with the exception of the 3rd party,

who reported this issue, the file has been download by only Mozilla

staff. This file was placed on this server by mistake and was a partial

representation of the users database from addons.mozilla.org. The file

included email addresses, first and last names, and an md5 hash

representation of your password. The reason we are disclosing this event

is because we have removed your existing password from the addons site

and are asking you to reset it by going back to the addons site and

clicking forgot password. We are also asking you to change your password

on other sites in which you use the same password. Since we have

effectively erased your password, you don't need to do anything if you

do not want to use your account. It is disabled until you perform the

password recovery.

 

We have identified the process which allowed this file to be posted

publicly and have taken steps to prevent this in the future. We are also

evaluating other processes to ensure your information is safe and secure.

 

Should you have any questions, please feel free to contact the

infrastructure security team directly at [email protected]. If you

are having issues resetting your account, please contact

[email protected].

 

We apologize for any inconvenience this has caused.

 

Chris Lyon

Director of Infrastructure Security

Link to comment
Share on other sites

It is good to hear he did not bother to put some pressure on the forum server. So far I have only received one piece of Spam from this, and it was of the blatant type that is easy to recognize and box.

 

I would estimate his ago to be 13-15 based on these facts (gave up early, and lewd spam), so I would just contact his parents. If you do a little mining of social/school sites you could probably get all his details. Then just contact his parents and let them know that they are legally responsible for his actions, and that if this were taken to the FBI it would mean federal charges (against them as his legal guardians). Then politely ask them to make sure their son (presumably) behaves in the future, so you can forget about reporting this to anyone unless there is a repeat.

 

If this is not in the US then you have less ability unless you want to press charges. If it originated in Canada, I can help you out if you need it (PM me).

 

 

Cheers,

 

4Aces

Link to comment
Share on other sites

**SNIP**, thats the 7th website I see reports of hackage in their forums between dec. 9th and dec. 16th!

as well as reports of sites major websites misworking in the same period, such as Delta airlines website, and American airlines too

 

EDIT by LHammonds: Watch the language please. And yes, there are more hacks around the holidays because of more commerce happening around that time.

Link to comment
Share on other sites

With all theese complaints about spam, the little kid thinks he´s close to an medal of honour (since he probably reads all this). Let me take that away from him when I speak on behalf of hundreds of thousands of silent members who never recieved one tiny little e-mail that did not belong in the mail box. :thumbsup:
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.

×
×
  • Create New...