 |
18-05-2007, 07:04 PM
|
#1 (permalink)
|
|
in your face..
Join Date: Jan 2007
Location: Wit's End
Posts: 219
|
URGENT! Password Stolen
Here's what happened.
A friend of mine can no longer log into her e-mail accounts with Hotmail, Rediffmail, Gmail, Ymail, simply because the “passwords” are not matching. She logged in yesterday at around 6:30 in the evening, from her office. But today she can't.
Apparently, she had a tiff with a colleague, who is supposed to be a computer wiz. She is afraid that he has got something to do with her stolen passwords.
Now what i am wondering is, if it is possible to steal passwords in way, other than using keyloggers. Can this be done by accessing the company servers? This guy and the computer admin are really good friends.
BTW, the company e-mail is working fine.
Can somebody throw some light on this. Also how can this be prevented.
Thx in advance.
|
|
|
|
Advertisements. Register and be a member of the community to get rid of them.
|
|
Advertisement
|
|
18-05-2007, 07:43 PM
|
#2 (permalink)
|
|
Human Spambot
Join Date: May 2005
Location: Riding an Oliphaunt
Posts: 2,173
|
Re: URGENT! Password Stolen
Ask her to check if the Caps Lock key is on, try typing it with the Caps key other way, else ask her to type password in notepad first then copy paste,
This is theoretically possible by using a Packet Sniffer, but some of these sites transport passwords in encrypted manner, Gmail for sure does it, so even packet sniffer would catch gibberish, just in case password is not sent thru a secure line, even then isolation of password is going to be very tricky.
Prevention - best is not to check email from computers @ risk,
And DO Not mess ppl who are computer wiz!!!
__________________
The real and only freedom is Public Domain. Everything else in unfree! Even those who claim to be the self styled evangelists of freedom are not free because freedom cannot be forced by any means!
|
|
|
18-05-2007, 08:14 PM
|
#3 (permalink)
|
|
in your face..
Join Date: Jan 2007
Location: Wit's End
Posts: 219
|
Re: URGENT! Password Stolen
kumarmohit
Thx for the prompt reply.
I don't think its a typing problem. She tried it from a cyber cafe as well. It seems she has a keylogger to deal with. Can u/anybody tell how to disable the keylogger.
Quote:
|
And DO Not mess ppl who are computer wiz!!!
|
TRUE. She is learning it a very hard and painful way.
|
|
|
18-05-2007, 11:25 PM
|
#4 (permalink)
|
|
Human Spambot
Join Date: May 2005
Location: Riding an Oliphaunt
Posts: 2,173
|
Re: URGENT! Password Stolen
Most of the antispywares can get rid of Keyloggers, try ad-aware se and Spybot S&D, they should be able to help.
__________________
The real and only freedom is Public Domain. Everything else in unfree! Even those who claim to be the self styled evangelists of freedom are not free because freedom cannot be forced by any means!
|
|
|
18-05-2007, 11:42 PM
|
#5 (permalink)
|
|
Coming back to life ..
Join Date: Nov 2003
Location: A bit closer to heaven
Posts: 1,997
|
Re: URGENT! Password Stolen
And also check for Ethereal or Cain and Abel packets on the lan. If its a window lan, CnA might be his tool of trade.
__________________
Sleight of hand and twist of fate...
On a bed of nails she makes me wait...
And I wait without you ...
With or without you ..
----
Batty = Too Busy Now !!!
|
|
|
18-05-2007, 11:49 PM
|
#6 (permalink)
|
|
Alive Again...
Join Date: May 2005
Location: Mumbai
Posts: 1,668
|
Re: URGENT! Password Stolen
the only solution is
Use
Forgot Password Option
& recover your Password
|
|
|
19-05-2007, 12:00 AM
|
#7 (permalink)
|
|
left this forum longback
Join Date: Sep 2005
Location: -
Posts: 7,536
|
Re: URGENT! Password Stolen
Quote:
|
Hotmail, Rediffmail, Gmail, Ymail, simply because the “passwords” are not matching.
|
all of 'em.cant believe.
only soltn is to confront that guy before his higher officials.that's it.
__________________
left this forum long back.Admin Can Delete this Account and posts Permanantly.Thank You
Get GNU/Linux - http://getgnulinux.org
|
|
|
19-05-2007, 07:29 AM
|
#8 (permalink)
|
|
Human Spambot
Join Date: May 2005
Location: Riding an Oliphaunt
Posts: 2,173
|
Re: URGENT! Password Stolen
^^ Totally agree, if this person is misusung his knowledge, then he must be brought to face the consequences.
__________________
The real and only freedom is Public Domain. Everything else in unfree! Even those who claim to be the self styled evangelists of freedom are not free because freedom cannot be forced by any means!
|
|
|
20-05-2007, 09:14 AM
|
#9 (permalink)
|
|
in your face..
Join Date: Jan 2007
Location: Wit's End
Posts: 219
|
Re: URGENT! Password Stolen
Update on the story:
Yesterday when she reached office and opened IE, she found that somebody had set the home page to some message saying "Does someone need help". Can you believe this guy.
This guy has changed the details of all her accounts, ie. hint question etc and deleted her Orkut account.
She reported this to the higher authority, but since they don't have any direct proof, they are not going to take any action against this person. So she will be moved to the other room.
Needless to say, she is **** scared.
Well, can she report this to the police or something. Any means of stopping this bullying.
|
|
|
20-05-2007, 10:44 AM
|
#10 (permalink)
|
|
Right man in wrong place!
Join Date: Jan 2007
Location: Hyderabad
Posts: 1,177
|
Re: URGENT! Password Stolen
Go bang that guy u doubt on!
__________________
Quad Core Q9300, Gigabyte EP45usb3 mobo, Zotac GTX 460 1024MB, 3x2 GB ddr3 memory, cooler master extreme 600W.
...They call me Prophet... - C2:twisted:
|
|
|
20-05-2007, 12:41 PM
|
#11 (permalink)
|
|
De@d
Join Date: Nov 2006
Location: kerala
Posts: 355
|
Re: URGENT! Password Stolen
hmm... that guy's gud...
a solution - find a bigger whiz.
request him to hack this losers id's
then it will be fun...
__________________
Man's greatest living fear - When you die, they will find your porn"
Most people are only alive because it is illegal to
shoot them.
|
|
|
20-05-2007, 01:26 PM
|
#12 (permalink)
|
|
Alive Again...
Join Date: May 2005
Location: Mumbai
Posts: 1,668
|
Re: URGENT! Password Stolen
their are some software available to spy on PC's
you can google it & find out
like hiddencam, PC SPY etc.
these can record the whole thing & whatever work done on a PC
you can try this to find out at what time & what problem does someone do's to your PC
& what are his methods
or you can install software like remotely anywhere or similar to it
& access that PC from your home PC to syp on it
but you have to work hard like spying it for continue 24hrs
also do one thing
install ccleaner
& go to that section where you can find all the install component
right click & save a .txt file
& post it here
So we can understand how many & which software are installed in her PC
|
|
|
20-05-2007, 01:47 PM
|
#13 (permalink)
|
|
Right Off the Assembly Line
Join Date: Jan 2007
Posts: 10
|
Re: URGENT! Password Stolen
Keylogger pfft.. Wasnt wise to access email accounts in a place filled with "Cyber-Hostility".
Well ofcourse there are lot more ways to get passwords than just keyloggers.
What she can do now , is create a new email address , or hack back that other email address , or contact hotmail , and try to get back that account or whatever (very less chance of getting back that address).
You cant complain to police that a guy hacked your FREE WEBMAIL ACCOUNT!!
__________________
Visit ~~~www.pyr3x.com~~~ A new torrent site ;)
|
|
|
20-05-2007, 06:14 PM
|
#14 (permalink)
|
|
Apprentice
Join Date: Jun 2005
Location: Bangalore
Posts: 56
|
Re: URGENT! Password Stolen
I think she used the same password for all.
gmail and yahoo use secure connection.
But if she logged into some other service like rediffmail without any secure connection,then i think the Computer whiz has sniffed out the password with the help of the Network Admin.
The best thing is to ask to him to reveal the password or wait for him to login into your account and try sniffing it yourself.
The rule is to secure connection
|
|
|
31-05-2007, 05:53 PM
|
#15 (permalink)
|
|
Right Off the Assembly Line
Join Date: Nov 2004
Location: India
Posts: 46
|
Re: URGENT! Password Stolen
I think its too late. Sorry I did not visit the forum for a long time.
If she was using firefox and did enable the remember username and password checkbox then it is child's play to get the password. Just go to Tools->Options->Security->Show Passwords.
Also there is a severe flaw in rediffmail. If after logging off from rediffmail you do not close the browser windows, then with the window open one can retrive the hash and salt of your password using SQL injection. It then takes 3 to 4 hrs for online websites to crack the encrypted password.
Also if you try to login back to your orkut account (even if with wrong password 3 times in a row), even after your account is scheduled for deletion, it is not deleted.
But it is too late now.
|
|
|
05-06-2007, 12:50 AM
|
#16 (permalink)
|
|
In The Zone
Join Date: Apr 2005
Location: Hyderabad
Posts: 361
|
Re: URGENT! Password Stolen
Quote:
|
Originally Posted by karnivore
Update on the story:
Yesterday when she reached office and opened IE, she found that somebody had set the home page to some message saying "Does someone need help". Can you believe this guy.
This guy has changed the details of all her accounts, ie. hint question etc and deleted her Orkut account.
She reported this to the higher authority, but since they don't have any direct proof, they are not going to take any action against this person. So she will be moved to the other room.
Needless to say, she is **** scared.
Well, can she report this to the police or something. Any means of stopping this bullying.
|
Well, your friend has still not learn t her lesson.... did she?
I guess it is too late to do anything except mebbe kick the guy on the butt and ask him to spill the new pwds or create new accounts....
__________________
Some of the happiest people in the world do NOT have Everything... They just make the Best of Everything life brings their way... So, Stay HaPpY.... Smile Always.... :-)
|
|
|
| Thread Tools |
|
|
| Display Modes |
Linear Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
|
|
|