Page 28 of 32 FirstFirst ... 182627282930 ... LastLast
Results 271 to 280 of 316

Thread: Neopets security breach

  1. #271
    Orbit's Avatar
    Joined
    Nov 2021
    Posts
    275
    Pronouns
    she/her
    Userbars
    25
    Thanks
    898
    Thanked
    959/251
    DL/UL
    27/0
    Mentioned
    87 times
    Time Online
    36d 3h 5m
    Avg. Time Online
    56m
    (you need an account to see links)
    Just got this pop up on the site!

    Pomi the Ryu
    amazing userbar by lyrichord

  2. The Following 10 Users Say Thank You to Orbit For This Useful Post:

    Aero (07-28-2022),Android (07-22-2022),cornishwall (07-22-2022),Double.Trouble (07-22-2022),Erik. (07-22-2022),♥ GreyFaerie ♥ (07-22-2022),Lyrichord (07-22-2022),phantasia (07-22-2022),Sakuras (07-22-2022),Shawn (07-22-2022)

  3. #272

  4. The Following 3 Users Say Thank You to Shawn For This Useful Post:

    Android (07-22-2022),cornishwall (07-22-2022),♥ Dita ♥ (07-22-2022)

  5. #273
    cornishwall's Avatar
    Joined
    Nov 2019
    Posts
    212
    Userbars
    16
    Thanks
    997
    Thanked
    561/159
    DL/UL
    19/0
    Mentioned
    14 times
    Time Online
    25d 22h 8m
    Avg. Time Online
    22m
    Quote Originally Posted by Shawn View Post
    I dont think you can fix stuff with DB access.
    More like change values like NPs, items, pet stats/info, and who knows what else since I don't have much insight into this
    As I understand it, it would depend on how Neopets is structured on the backend. They use MS Azure as the host, which I haven't used, but assuming it is similar to AWS and how little of the site is updated, I would imagine there is quite a bit you could mess with beyond pet/account stats and genning items/NP.

    It also depends on what method the live database access is based on. If n_t is at all correct/honest about this issue being one many websites are vulnerable to, the access is probably Azure based and would likely let you change anything you want

  6. The Following 2 Users Say Thank You to cornishwall For This Useful Post:

    Sakuras (07-22-2022),Shawn (07-22-2022)

  7. #274
    phantasia's Avatar
    Joined
    Jun 2015
    Posts
    2,941
    Pronouns
    she/her
    Userbars
    94
    Thanks
    3,205
    Thanked
    4,401/1,478
    DL/UL
    96/0
    Mentioned
    385 times
    Time Online
    90d 6h 42m
    Avg. Time Online
    40m
    Quote Originally Posted by Orbit View Post
    (you need an account to see links)
    Just got this pop up on the site!
    I guess it is about time. So annoying that they waited more than a day to do this. I mean neopets staff is not the people to get in a emergancy

  8. #275
    Dark_dragonz's Avatar
    Joined
    Jul 2012
    Posts
    395
    Pronouns
    He/Him
    Userbars
    31
    Thanks
    367
    Thanked
    281/169
    DL/UL
    78/0
    Mentioned
    24 times
    Time Online
    24d 22h 59m
    Avg. Time Online
    8m
    They were a bit late, probably relaxed due to how unlikely it is for such a sale to take place within a day. It would've been ideal if they could have just been 100% transparent from the start. I am glad, however, that they have immediately launched an investigation and are hopefully taking the necessary steps to improve their current security.

  9. #276
    cornishwall's Avatar
    Joined
    Nov 2019
    Posts
    212
    Userbars
    16
    Thanks
    997
    Thanked
    561/159
    DL/UL
    19/0
    Mentioned
    14 times
    Time Online
    25d 22h 8m
    Avg. Time Online
    22m
    Quote Originally Posted by Dark_dragonz View Post
    They were a bit late, probably relaxed due to how unlikely it is for such a sale to take place within a day. It would've been ideal if they could have just been 100% transparent from the start. I am glad, however, that they have immediately launched an investigation and are hopefully taking the necessary steps to improve their current security.
    I see this as JumpStart/NetDragon legal department letting TnT know they are required by the SEC in the USA to disclose the breach to anyone affected, not TNT being willfully transparent. I can't remember the last time TNT was preemptively transparent

  10. The Following 5 Users Say Thank You to cornishwall For This Useful Post:

    basmatirice (07-25-2022),Erik. (07-22-2022),♥ GreyFaerie ♥ (07-22-2022),LittlePunker (07-22-2022),Shawn (07-22-2022)

  11. #277
    xmilo's Avatar
    Joined
    May 2017
    Posts
    727
    Pronouns
    he/him
    Userbars
    74
    Thanks
    1,053
    Thanked
    1,742/554
    DL/UL
    11/0
    Mentioned
    175 times
    Time Online
    245d 8h 34m
    Avg. Time Online
    2h 17m
    Quote Originally Posted by cornishwall View Post
    As I understand it, it would depend on how Neopets is structured on the backend. They use MS Azure as the host, which I haven't used, but assuming it is similar to AWS and how little of the site is updated, I would imagine there is quite a bit you could mess with beyond pet/account stats and genning items/NP.

    It also depends on what method the live database access is based on. If n_t is at all correct/honest about this issue being one many websites are vulnerable to, the access is probably Azure based and would likely let you change anything you want
    to be honest, im surprised they're even hosted on a cloud based service. i would have thought they're hosted on-site. migration on its own might have taken them some time, especially when they're so short handed and nothing has been fixed in years.

  12. #278
    yesnt's Avatar
    Joined
    Nov 2020
    Posts
    111
    Userbars
    6
    Thanks
    59
    Thanked
    311/73
    DL/UL
    6/0
    Mentioned
    14 times
    Time Online
    17d 14h 53m
    Avg. Time Online
    19m
    Well I just logged in to Neopets for the first time in a while to be greeted by the above message... good to see TNT haven't changed much in the time I haven't really been playing

  13. #279
    RealisticError's Avatar
    Joined
    Jul 2018
    Posts
    1,629
    Userbars
    26
    Thanks
    899
    Thanked
    2,282/840
    DL/UL
    36/0
    Mentioned
    133 times
    Time Online
    55d 4h 25m
    Avg. Time Online
    37m
    Quote Originally Posted by Shawn View Post
    I dont think you can fix stuff with DB access.
    More like change values like NPs, items, pet stats/info, and who knows what else since I don't have much insight into this
    They have access to the source code, could be full server access, in that case they could definitely fix the BD...but more likely they'd just add cookie grabbers/trojans/etc. to the base code.

  14. The Following User Says Thank You to RealisticError For This Useful Post:

    Sakuras (07-22-2022)

  15. #280
    Sakuras's Avatar
    Joined
    May 2014
    Posts
    1,806
    Userbars
    23
    Thanks
    11,768
    Thanked
    2,255/724
    DL/UL
    3/0
    Mentioned
    149 times
    Time Online
    40d 6h 6m
    Avg. Time Online
    15m
    Quote Originally Posted by Orbit View Post
    (you need an account to see links)
    Just got this pop up on the site!
    fucking finally jesus

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •