Cigar Asylum Cigar Forum  

Go Back   Cigar Asylum Cigar Forum > Non Cigar Specialty Forums > Misc > General Discussion

Reply
 
Thread Tools Display Modes
Old 01-24-2012, 08:01 AM   #1
McSmokey
Feeling at Home
 
McSmokey's Avatar
 
Join Date: Aug 2009
First Name: Justin
Location: Tuscaloosa, AL
Posts: 948
Trading: (30)
LGC
McSmokey will become famous soon enough
Default Great Way to Start the Morning....

Yeah Right.

So First thing this morning get a call from my dad... His email has been HACKED!!! Sure enough get to work and login, there is the please help I need money email staring back at me .

I pulled the originating IP from the Header of the email and low and behold it came from Nigeria.

Since this is his primary email for his DSL account I guess the next step is to call AT&T and have them kill the email address so he can create a new one. Also gonna get him to create a gmail or something too so he's not using the AT&T one anymore.

Any thoughts on what else to do? Have a Nice Day
__________________
"Although personally I am quite content with existing explosives, I feel we must not stand in the path of improvement." Winston Churchill
McSmokey is offline   Reply With Quote
Old 01-24-2012, 08:18 AM   #2
Blak Smyth
Think Blue!
 
Blak Smyth's Avatar
2
 
Join Date: Jun 2011
First Name: SD
Location: THE WOOD
Posts: 8,486
Trading: (52)
RA
Blak Smyth has disabled reputation
Default Re: Great Way to Start the Morning....

He didn't give his bank account to a Nigerian prince that is going to prison and needs to hide his fortune somwhere did he?

Sorry, I know this isnt funny. I know alot of people lately have had their e-mails hacked. I received a few e-mails from friends about how much better their sex life is now after trying a new drug, they included a link because they are very thoughtful friends.
__________________
SUPPORT OUR TROOPS
Blak Smyth is offline   Reply With Quote
Old 01-24-2012, 08:51 AM   #3
MrClean
Bald Man
 
MrClean's Avatar
 
Join Date: Sep 2011
First Name: Jeff
Location: KC MO
Posts: 2,229
Trading: (28)
Montecristo
MrClean is a jewel in the roughMrClean is a jewel in the roughMrClean is a jewel in the rough
Default Re: Great Way to Start the Morning....

I don't think there is much else to do Justin other than what you've already listed.
Something similar happened to my aunt, I got a 'help me I'm stuck on holiday, wallet, phone etc stolen'. I replied to the email and said 'tell me how we know each other and I'll send you the money'........it was an amusing exchange.

Hopefully it's just a case of them getting the email addy's for his contact lists and nothing else. That's generally what I've seen happen in cases like this.

It's amazing to think that this scam must work or why would it continue to happen so often. Hope everything works out ok.
__________________
http://jeffcarrollphotos.com Not a photographer, just a dude with a camera. Proud member of the GMCGTPWHAFA
MrClean is offline   Reply With Quote
Old 01-24-2012, 08:53 AM   #4
pnoon
YNWA
 
pnoon's Avatar
16
 
Join Date: Oct 2008
First Name: Peter
Location: San Diego
Posts: 29,919
Trading: (20)
RA
pnoon has disabled reputation
Default Re: Great Way to Start the Morning....

Nobody was hacked. Hacking implies someone got into the email account and obtained personal information.

Email addresses are culled and used for spam, scams, and junk (e)mail. Happens all the time. Good luck trying to stop it. Some ISPs have better spam filters than others.
Posted via Mobile Device
pnoon is offline   Reply With Quote
Old 01-24-2012, 09:04 AM   #5
McSmokey
Feeling at Home
 
McSmokey's Avatar
 
Join Date: Aug 2009
First Name: Justin
Location: Tuscaloosa, AL
Posts: 948
Trading: (30)
LGC
McSmokey will become famous soon enough
Default Re: Great Way to Start the Morning....

Quote:
Originally Posted by Blak Smyth View Post
He didn't give his bank account to a Nigerian prince that is going to prison and needs to hide his fortune somwhere did he?

Sorry, I know this isnt funny. I know alot of people lately have had their e-mails hacked. I received a few e-mails from friends about how much better their sex life is now after trying a new drug, they included a link because they are very thoughtful friends.
How considerate of them

Apparently my dad is trapped in Spain and needs $1,833.24 USD to settle his hotel bill sent to some website that looks totaly legit....
__________________
"Although personally I am quite content with existing explosives, I feel we must not stand in the path of improvement." Winston Churchill
McSmokey is offline   Reply With Quote
Old 01-24-2012, 09:28 AM   #6
jledou
Have My Own Room
 
jledou's Avatar
14
 
Join Date: Oct 2008
First Name: Jay
Location: Kansas
Posts: 2,223
Trading: (27)
Punch
jledou has a spectacular aura aboutjledou has a spectacular aura aboutjledou has a spectacular aura about
Default Re: Great Way to Start the Morning....

First step is to log into his account (if he can and reset the PW) make it something hard and I mean hard. Something like jwidl&sj24kem (you get the point). He may not like it but try it and write the password down.

if he can't log in then get in touch with AT&T and they maybe be able to reset the pw and recover control of the account.

My hotmail was hijacked twice ... the third time the pw was similar to above and remains so today ... no problems for a while now.
jledou is offline   Reply With Quote
Old 01-24-2012, 10:29 AM   #7
markem
Bunion
 
markem's Avatar
16
 
Join Date: Oct 2008
First Name: Mark
Location: Second Star on the Right
Posts: 22,621
Trading: (47)
HUpmann
markem has disabled reputation
Default Re: Great Way to Start the Morning....

I agree that all that has happened is that a password was compromised. If he had any personal information in email archives in that account, etc, well, then he may be well and truly screwed.

I agree with the idea of making the password hard and that it is okay to write it down, especially if he pretty much only uses it from home - although sticking it in your wallet behind your drivers license (or similar) is fine as well.

Don't rely on the originating IP. IP injection and email injection are trivial to do. If I was doing something like this, I'd use a Nigerian IP address just to give a nod to those who figured it out.

The important thing to figure out is how the password was compromised. Was it just a brute force attack and he was using a weak password or perhaps his computer was infected with malware and his data was harvested from there or maybe he was foolish enough to use a public use computer that wasn't secure or ... You get the idea.

Oh well, back to prepping the course I am teaching next term. A grad CS course in secure programming...

quick edit: here is an acceptable set of hints for creating passwords. Don't give much credence to the first section "Tips" but the next two sections are really good. Mnemonic devices are your friend!
http://www.cs.umd.edu/faq/Passwords.shtml
__________________
I refuse to belong to any organization that would have me as a member.
~ Groucho Marx
markem is offline   Reply With Quote
Old 01-24-2012, 10:34 AM   #8
pnoon
YNWA
 
pnoon's Avatar
16
 
Join Date: Oct 2008
First Name: Peter
Location: San Diego
Posts: 29,919
Trading: (20)
RA
pnoon has disabled reputation
Default Re: Great Way to Start the Morning....

I'm confused.
Did the Nigerian plea come from Dad's email addy? Or did Dad receive the email from an unknown sender?
Posted via Mobile Device
pnoon is offline   Reply With Quote
Old 01-24-2012, 10:38 AM   #9
markem
Bunion
 
markem's Avatar
16
 
Join Date: Oct 2008
First Name: Mark
Location: Second Star on the Right
Posts: 22,621
Trading: (47)
HUpmann
markem has disabled reputation
Default Re: Great Way to Start the Morning....

Oh, and finally (I promise). I recommend gmail and set up the account so that it will only connect using HTTPS (secure HTTP using the openSSL toolset). I also recommend that, if possible, set up your home computer to connect using IMAP (over a secure connection) and delete the messages off the server after downloading. Of course, if that is totally inconvenient, you can do something else, that's just my recommendation, and it is worth every penny that you paid for it as well!
__________________
I refuse to belong to any organization that would have me as a member.
~ Groucho Marx
markem is offline   Reply With Quote
Old 01-24-2012, 10:48 AM   #10
Taki
Welcome to the Layer Cake
 
Taki's Avatar
 
Join Date: Aug 2011
First Name: Taki
Location: The Creek
Posts: 2,271
Trading: (38)
HdM
Taki has disabled reputation
Default Re: Great Way to Start the Morning....

I was hacked (or whatever you want to call it) into a few weeks back...couldnt figure out which website I was on that caused the leak or that was hacked but anyway all I did was change my password and all the fake emails stopped No harm no fould in my case just all sorts of crazy emails sent from my account about viagra and all sorts on nonsense.
__________________
Taki is offline   Reply With Quote
Old 01-24-2012, 12:22 PM   #11
McSmokey
Feeling at Home
 
McSmokey's Avatar
 
Join Date: Aug 2009
First Name: Justin
Location: Tuscaloosa, AL
Posts: 948
Trading: (30)
LGC
McSmokey will become famous soon enough
Default Re: Great Way to Start the Morning....

Quote:
Originally Posted by pnoon View Post
I'm confused.
Did the Nigerian plea come from Dad's email addy? Or did Dad receive the email from an unknown sender?
Posted via Mobile Device
It went out to his entire contact list from his addy. On top of that once I finally got into the acct it had been wiped clean no mail no contacts just like a brand new acct. I have changed the password and set one of my side accts as the backup in all of the options. Hopefully this won't happen again at least not any time soon.
__________________
"Although personally I am quite content with existing explosives, I feel we must not stand in the path of improvement." Winston Churchill
McSmokey is offline   Reply With Quote
Old 01-24-2012, 12:25 PM   #12
pnoon
YNWA
 
pnoon's Avatar
16
 
Join Date: Oct 2008
First Name: Peter
Location: San Diego
Posts: 29,919
Trading: (20)
RA
pnoon has disabled reputation
Default Re: Great Way to Start the Morning....

I misunderstood your original post. My apology.
I hope your efforts to prevent it from happening again are successful.
Posted via Mobile Device
pnoon is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -6. The time now is 05:50 PM.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
All content is copyrighted jointly by Cigar Asylum and the content provider.