The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#81
|
||||
|
||||
Quote:
be well. |
#82
|
||||
|
||||
You are the one claiming vb.org was hacked at some time in the past and the database stolen. You back that up by nothing, and you can't explain why the much simpler method everyone else in this thread assumes won't work. So...
|
Благодарность от: | ||
Amaury |
#83
|
||||
|
||||
The fact that they are doing it in alphabetical order proves that they are scanning the members list as the database, if it was stolen, is not automatically in alphabetical order but in order of userid.
It's as simple as that, pretty soon they'll be through the entire list and all this will be forgotten, if you want advice, change your password to something strong and they wont get anywhere with their 5 attempts per ip. |
Благодарность от: | ||
Amaury |
#84
|
||||
|
||||
Quote:
Just my opinion but your accusation could have a lot of simpler truths. I don't think thats evidence of stealing. Whenever I export data I almost always have to manipulate it. It's never in the form I need it to be at export. |
#85
|
|||
|
|||
Well, as cellarius pointed out, if someone had stolen the database the thing to do would be to use the hashed passwords and salt values to try to crack the passwords on a local computer. Using a stolen database just to get the usernames for a brute force attack over the net would be pretty stupid (but, well, I suppose there are people like that around).
Edit: but of course the point is that there's no reason to think they have access to the database, since it can easily be done with the member list. |
#86
|
||||
|
||||
Cosign...
Quote:
brute force is an attempt to login...Not the aftermath of data stolen. If someone had the data they could just clone the site, login, and do whatever without fear of being caught. I don't think brute force should be by username but by IP because the intruder is foreign and blocking by username would lock out the legitimate user. Just create a strong password and that is enough. Mixed with symbols, numbers, and letters a strong password would take until infinity to crack. That's totally safe. |
Благодарность от: | ||
Amaury |
#87
|
||||
|
||||
No one has stolen any data. Thats enough of such nonsense, any more such ridiculous posts will be removed. Stick to the topic and facts, not wild imagination.
|
#88
|
||||
|
||||
@Paul M, do you not think this thread has run its course now?
|
#89
|
||||
|
||||
it should be closed.
|
#90
|
|||
|
|||
Agree close this, it should of been closed a long time ago
|
Thread Tools | |
Display Modes | |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
More Information | |
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|