Page 1 of 1 [ 13 posts ] 

The_Walrus
Forum Moderator
Forum Moderator

User avatar

Joined: 27 Jan 2010
Age: 29
Gender: Male
Posts: 8,808
Location: London

24 Feb 2017, 5:41 am

Hello everyone,

Last night, CloudFlare, who provide some hosting services for WrongPlanet, confirmed that a bug has occasionally been leaking small amounts of private information, including passwords. Some of this information has been cached by search engines.

There is very little chance that you have been affected and no reason to panic. There is no reason to think WrongPlanet data has been compromised, let alone your own. However, if you want to make sure that you are secure, then follow these steps:

- Change your password
- Log out
- Log back in
- If you use your password on any other sites, change those too.

You may need to repeat this across several sites which use CloudFlare.

It's important to emphasise that while this means you can't have 100% certainty about the security of your accounts, it's very unlikely anyone would target your WrongPlanet account. Other services affected include Uber, Discord, Patreon, Medium, Yelp, Change.org, Pastebin, and OK Cupid.

I have followed the steps above and hopefully other moderators will do so too.

While changing your password (and logging out and in again) is advisable as a precaution, there is no reason for panic.



dcj123
Veteran
Veteran

User avatar

Joined: 2 Sep 2009
Gender: Male
Posts: 10,796

24 Feb 2017, 6:03 am

1. I am getting an error that says "The current password you entered is incorrect." when I entered my password the same multiple times after logging off and back on with said password.


2. I changed my password not long ago, is there a time frame for this hack?



Lunella
Veteran
Veteran

User avatar

Joined: 2 Mar 2016
Age: 33
Gender: Female
Posts: 1,067
Location: Yorkshire, UK

24 Feb 2017, 6:06 am

I wondered why the site kept going on and off.


_________________
The term Aspergers is no longer officially used in the UK - it is now regarded as High Functioning Autism.


The_Walrus
Forum Moderator
Forum Moderator

User avatar

Joined: 27 Jan 2010
Age: 29
Gender: Male
Posts: 8,808
Location: London

24 Feb 2017, 1:11 pm

dcj123 wrote:
1. I am getting an error that says "The current password you entered is incorrect." when I entered my password the same multiple times after logging off and back on with said password.


2. I changed my password not long ago, is there a time frame for this hack?

It's not a hack, it's not a single event. Data have been accidentally revealed to people in certain conditions. It started about six months ago and reached a peak about a week ago.

I can't answer on point #1.

Again, chances are that you're absolutely fine, but it's important to be aware of the possibility.

I don't think this bug is at all related to WP downtime.



dcj123
Veteran
Veteran

User avatar

Joined: 2 Sep 2009
Gender: Male
Posts: 10,796

24 Feb 2017, 5:20 pm

The_Walrus wrote:
I can't answer on point #1.


Well,

It looks to be one of the many bugs of the site, I have tried resetting everything and clearing my history and its still a no go and I can't change my email or password. Don't worry about, it'll probably fix itself eventually, I'll try Firefox at some point too. Thanks for the letting everyone know.



Kiprobalhato
Veteran
Veteran

User avatar

Joined: 25 Mar 2014
Age: 27
Gender: Female
Posts: 29,119
Location: מתחת לעננים

24 Feb 2017, 5:35 pm

Lunella wrote:
I wondered why the site kept going on and off.


if we're thinking about the same things, then that's a regular, daily occurrence that happens around midnight EST when the server maintenance occurs. i don't believe it has any connection to the cloudflare leak.

thanks for announcing this, Walrus :thumright: i have changed my password, for that extra little bit of security.


_________________
הייתי צוללת עכשיו למים
הכי, הכי עמוקים
לא לשמוע כלום
לא לדעת כלום
וזה הכל אהובי, זה הכל.


0_equals_true
Veteran
Veteran

User avatar

Joined: 5 Apr 2007
Age: 41
Gender: Male
Posts: 11,038
Location: London

27 Feb 2017, 3:48 pm

It would be very unlikely that CloudFlare would have the our passwords, for one POST requests such as login would not be cached, and there would be no reason to transfer hashes to CF



Kiprobalhato
Veteran
Veteran

User avatar

Joined: 25 Mar 2014
Age: 27
Gender: Female
Posts: 29,119
Location: מתחת לעננים

27 Feb 2017, 3:55 pm

that may very well be true.

regardless, it was time i changed mine anyway - i had my old one since i joined the site. :oops:


_________________
הייתי צוללת עכשיו למים
הכי, הכי עמוקים
לא לשמוע כלום
לא לדעת כלום
וזה הכל אהובי, זה הכל.


The_Walrus
Forum Moderator
Forum Moderator

User avatar

Joined: 27 Jan 2010
Age: 29
Gender: Male
Posts: 8,808
Location: London

27 Feb 2017, 5:09 pm

0_equals_true wrote:
It would be very unlikely that CloudFlare would have the our passwords, for one POST requests such as login would not be cached, and there would be no reason to transfer hashes to CF

You probably know more about this than I do, but there are certainly cases where the bleed has led to usable authentication tokens being leaked. Believe logging out and in again is the solution to this, but in theory, if someone has logged in to your account then they could get back in again unless you change your password.



iBlockhead
Velociraptor
Velociraptor

User avatar

Joined: 6 Jun 2012
Age: 41
Gender: Male
Posts: 408

28 Feb 2017, 4:50 am

This Cloudflare leak is not just to WP. Any site that uses Cloudflare could have been affected by this - Authy, OKCupid, Yelp, etc.

https://github.com/pirate/sites-using-cloudflare/blob/master/README.md

Users should get into the practice of changing their passwords at least once a year, more if the site has sensitive info, and use multifactor authentication for really personal things.



dcj123
Veteran
Veteran

User avatar

Joined: 2 Sep 2009
Gender: Male
Posts: 10,796

17 Mar 2017, 1:24 am

For some reason I can change my password now after being banned (by request) and unbanned :jester:



Meistersinger
Veteran
Veteran

User avatar

Joined: 10 May 2012
Gender: Male
Posts: 3,700
Location: Beautiful(?) West Manchester Township PA

17 Apr 2017, 8:57 am

Could this leak, or something else going wrong with CloudBlare (get it?) why I am randomly being redirected to rightplanet.club?

Now before you tell me to run a scan on my iPhone, I've done so, as well as erased my phone and reset my network settings. It does not matter what network I use, nor what browser, I still get the random redirects to rightplanet.club. Could CloudFlare be infected?



Misslizard
Veteran
Veteran

User avatar

Joined: 18 Jun 2012
Age: 59
Gender: Female
Posts: 20,470
Location: Aux Arcs

17 Apr 2017, 10:10 am

I'm still being hijacked to rightnetworkclub constantly.WTF??


_________________
I am the dust that dances in the light. - Rumi