Jump to content

@LinusTech Twitter Account Hacked

SuperBailey
Go to solution Solved by LinusTech,

On June 28, 2016 the Linus Media Group domain registrar account was compromised.

 

The exact methodology of the "hack" won't be disclosed for obvious reasons, but I can assure you that despite any claims to the contrary, the appropriate safeguards were in place on our side, and as I type this Yvonne is having a very heated phone discussion with the 3rd party responsible for the breach.

 

Anyway, the thing most of you are probably wondering about right now is what this means for your forum account or personal information, and the answer is very simple:

 

NOTHING.

 

The "hacker" simply changed the DNS settings in the dashboard and did not at any time have access to the linustechtips.com server. Any claims of a database dump are categorically false.

 

The compromised accounts - including Twitter - have been restored.

 

I hope this clears things up.

 

Linus

15 hours ago, rm -rf said:

@linustech "you should" file a police report.

 

 

No offense to his staff or him. "he's not important enough"

 

Not sure how Canada works. However , working with big companies fortune 500/financial places etc/ That is all covered on federal level. Some stuff with banks and credit cards e.g. skimmer black market. That is directly related to US Secret Service. The guy runs a tech show and what happened to him affected NO ONE except him. The Power Grid didn't go offline/ No financial data was leaked or ss numbers.

 

It's a waste of peoples time to even bother looking or opening a case.

 

 

 

 

 

 

Windows 10 Latest Build
RAID 0 Samsung SSD 970 2tb EVO's (4Tb Store)
RTX 3090
9900k DELIDDED with custom copper Rockitcool @ 5ghz 
H150i RGB PRO XT
Corsair Dominator Platinum 64GB (4x16GB) DDR4 3200MHz C16 Desktop Memory 1.35v XMP Profile
Phanteks PH-P1200PS 80+ Platinum - Built-in Power Splitter 1200W Fully Modular

Z390 DESIGNARE (rev. 1.0)
Top Mon #2 ASUS ROG SWIFT PG348Q | NVIDIA G-Sync 100hz

Bottom Mon #1 Alienware Overclocked Refresh Rate #AW3418DW G-Sync 120hz

Server: 2019 DataCenter Edition, 42TB Store RAID 6 | WD Gold Enterprise Class 7200 RPM,SATA 6 Gb/s, 256 MB Cache

Link to comment
Share on other sites

Link to post
Share on other sites

22 hours ago, thedarkdad3 said:

 

 

You've been hacked multiple times buddy. My advice Hire a new firm and take some courses on real world security.

 

 

 

 

 

 

 

 

 

It's likely there was only one single hack, once you manage to change the DNS of a domain and redirect all the mail it becomes very scary just how easily you can gain access to accounts on certain services.

My Build:

Spoiler

CPU: i7 4770k GPU: GTX 780 Direct CUII Motherboard: Asus Maximus VI Hero SSD: 840 EVO 250GB HDD: 2xSeagate 2 TB PSU: EVGA Supernova G2 650W

Link to comment
Share on other sites

Link to post
Share on other sites

15 hours ago, thedarkdad3 said:

-snip-

I hope you arent this way in the professional world. You would not make it past week 1 on my team. Not sure id even hire you to start. 

Edited by Blade of Grass

CPU: Amd 7800X3D | GPU: AMD 7900XTX

Link to comment
Share on other sites

Link to post
Share on other sites

15 hours ago, thedarkdad3 said:

-snip-

Wow, I wasn't giving you crap or anything I was just pointing out some flaws in your argument. Try not to take things so personally especially when somebody is not acting negatively towards you. This reply makes you sound like a child when I was not attacking you in any way. You haven't a clue what I know except that you incorrectly spelled the name of one of your certificate providers in your signature. I wasn't berating you or talking condescending to you at all and my question about your signature was merely me being curious, nothing more but you apparently took my post as an attack against you and everything you stand for. Calm down, relax a bit before replying to posts, and read them for what they are and don't assume there's malice in the words you're reading.

 

As for me "knowing nothing", sure I did go to school and took a few ITSEC related classes many years ago when I was in college but the majority of my "cyber security" (for lack of a better term) I learned actually out there in the real world running my own network and ASN, managing thousands of publicly accessible servers, dealing with ISPs/upstream providers/data centers/registrars regularly, and being the constant target of script kiddies, competitors, and corporations. The amount of attacks my servers see on a daily basis is sickening and the tens of millions of packets Voxility and other anti-DDOS services mitigates for me and my clients is just as depressing. The number of times law enforcement and government agencies have contacted me over incidents much less damaging than Linus losing his domain or Twitter account puts me in a unique situation where I understand the gravity and effects this can have on a company along with the long drawn out process involved assuming they are taking legal action. So yeah, I have a slight clue about this kind of stuff.

Edited by Blade of Grass

-KuJoe

Link to comment
Share on other sites

Link to post
Share on other sites

@LinusTech @Slick

Sorry to bother you guys, but I've seen something recently, where hackers hacked in the http server of my school network in order to spread a botnet worm to all users using it. Maybe the final intention of your hackers was to try to spread a worm by the means of your forum server, using your fame to touch many users and therefore having a good basis for a botnet network.

That'd be a pretty serious attack, had it been that sneaky.

Anyways, just trying to give you ideas to assess the situation the best you can, which I am not doubting you are doing it quite well. I had a discussion with a security expert for an ISP and he explained me how these kinds of motives are sometimes overlooked, because of the distraction other actions have.

Thanks for your rx 480 review by the way, and thanks for handling the situation with the user security in mind.

Link to comment
Share on other sites

Link to post
Share on other sites

3 minutes ago, laminutederire said:

@LinusTech @Slick

Sorry to bother you guys, but I've seen something recently, where hackers hacked in the http server of my school network in order to spread a botnet worm to all users using it. Maybe the final intention of your hackers was to try to spread a worm by the means of your forum server, using your fame to touch many users and therefore having a good basis for a botnet network.

That'd be a pretty serious attack, had it been that sneaky.

Anyways, just trying to give you ideas to assess the situation the best you can, which I am not doubting you are doing it quite well. I had a discussion with a security expert for an ISP and he explained me how these kinds of motives are sometimes overlooked, because of the distraction other actions have.

Thanks for your rx 480 review by the way, and thanks for handling the situation with the user security in mind.

If @LinusTech is using passwords to protect the server this forum runs on then his team needs to start writing a script for "SSH RSA keys and how to use them" video. Even with access to their e-mail, the person who did this should have no way to get access to the server even if they were able to social engineer the web hosting provider (who's pretty large and isn't known to handle support requests very well at all anyways so social engineering them is very time consuming) the hosting provider should not have access to their server at all except I believe they have an SNMP client they install by default via their deployment script for monitoring. They used to install their own SSH keys on servers in the past if I remember correctly but I don't think they do that anymore.

-KuJoe

Link to comment
Share on other sites

Link to post
Share on other sites

4 minutes ago, KuJoe said:

Wow, I wasn't giving you crap or anything I was just pointing out some flaws in your argument. Try not to take things so personally especially when somebody is not acting negatively towards you. This reply makes you sound like a child when I was not attacking you in any way. You haven't a clue what I know except that you incorrectly spelled the name of one of your certificate providers in your signature. I wasn't berating you or talking condescending to you at all and my question about your signature was merely me being curious, nothing more but you apparently took my post as an attack against you and everything you stand for. Calm down, relax a bit before replying to posts, and read them for what they are and don't assume there's malice in the words you're reading.

 

As for me "knowing nothing", sure I did go to school and took a few ITSEC related classes many years ago when I was in college but the majority of my "cyber security" (for lack of a better term) I learned actually out there in the real world running my own network and ASN, managing thousands of publicly accessible servers, dealing with ISPs/upstream providers/data centers/registrars regularly, and being the constant target of script kiddies, competitors, and corporations. The amount of attacks my servers see on a daily basis is sickening and the tens of millions of packets Voxility and other anti-DDOS services mitigates for me and my clients is just as depressing. The number of times law enforcement and government agencies have contacted me over incidents much less damaging than Linus losing his domain or Twitter account puts me in a unique situation where I understand the gravity and effects this can have on a company along with the long drawn out process involved assuming they are taking legal action. So yeah, I have a slight clue about this kind of stuff.

 

 

Awesome man. Would love to meet you at BlackHat or CanSec West. I'll be speaking at both you're more than welcome to give me your insight. See unlike most people I will bring it to your doorstep.

 

I don't need to argue on a Forum Board. DM ME I'll get you a badge if you can get yourself to either event.

 

 

For now like he Said/ THE THREAD NEEDS TO DIE. Quit speculating. That's all you are doing everyone.

 

Windows 10 Latest Build
RAID 0 Samsung SSD 970 2tb EVO's (4Tb Store)
RTX 3090
9900k DELIDDED with custom copper Rockitcool @ 5ghz 
H150i RGB PRO XT
Corsair Dominator Platinum 64GB (4x16GB) DDR4 3200MHz C16 Desktop Memory 1.35v XMP Profile
Phanteks PH-P1200PS 80+ Platinum - Built-in Power Splitter 1200W Fully Modular

Z390 DESIGNARE (rev. 1.0)
Top Mon #2 ASUS ROG SWIFT PG348Q | NVIDIA G-Sync 100hz

Bottom Mon #1 Alienware Overclocked Refresh Rate #AW3418DW G-Sync 120hz

Server: 2019 DataCenter Edition, 42TB Store RAID 6 | WD Gold Enterprise Class 7200 RPM,SATA 6 Gb/s, 256 MB Cache

Link to comment
Share on other sites

Link to post
Share on other sites

5 hours ago, Sakkura said:

This is the internet. What you said will now be speculated into a confirmation of Half-Life 3.

Maybe the 3rd party is the 3rd half life...

 

2 minutes ago, KuJoe said:

 

I actually am not an IT expert, I just read DNS server got hacked, they rightfully don't disclose anything more. I was saying that IF they managed to access the server handling this forum or their company website, they could have installed a worm exploiting some windows security leak to gain privileges, just by changing some script to execute what they wanted to when you browsed the website.

I may be far off, but that won't kill anyone to point it out, right?

Link to comment
Share on other sites

Link to post
Share on other sites

6 minutes ago, laminutederire said:

Maybe the 3rd party is the 3rd half life...

 

I actually am not an IT expert, I just read DNS server got hacked, they rightfully don't disclose anything more. I was saying that IF they managed to access the server handling this forum or their company website, they could have installed a worm exploiting some windows security leak to gain privileges, just by changing some script to execute what they wanted to when you browsed the website.

I may be far off, but that won't kill anyone to point it out, right?

You're not wrong, the point is a good one. I just wanted to help ease any concern some people might have before they panic. ;)

-KuJoe

Link to comment
Share on other sites

Link to post
Share on other sites

1 minute ago, KuJoe said:

You're not wrong, the point is a good one. I just wanted to help ease any concern some people might have before they panic. ;)

Yeah sure, it happened at my school, and it was the panic for those who actually cared (and didn't have a mac).

However our network wasn't handled professionally, so I strongly feel LMG security is faaaaar better (thank god it is though, since at my school, the students didn't even have any machine to just monitor packets going in and out)

Link to comment
Share on other sites

Link to post
Share on other sites

My hl3 and portal 3 confirm post just got deleted?! Wth? So no hl3 and portal 3? :(

 

Intel Xeon E5 1650 v3 @ 3.5GHz 6C:12T / CM212 Evo / Asus X99 Deluxe / 16GB (4x4GB) DDR4 3000 Trident-Z / Samsung 850 Pro 256GB / Intel 335 240GB / WD Red 2 & 3TB / Antec 850w / RTX 2070 / Win10 Pro x64

HP Envy X360 15: Intel Core i5 8250U @ 1.6GHz 4C:8T / 8GB DDR4 / Intel UHD620 + Nvidia GeForce MX150 4GB / Intel 120GB SSD / Win10 Pro x64

 

HP Envy x360 BP series Intel 8th gen

AMD ThreadRipper 2!

5820K & 6800K 3-way SLI mobo support list

 

Link to comment
Share on other sites

Link to post
Share on other sites

4 hours ago, Ryan_Vickers said:

That would actually be hilarious.  Like just be completely deadpan about it and pretend it's a totally normal show

Let the "pre-recorded" crap talk begin...

Link to comment
Share on other sites

Link to post
Share on other sites

12 hours ago, Yongtjunkit said:

@LinusTech new personal twitter account?

 

 

Nah, it's from January, way too long

Link to comment
Share on other sites

Link to post
Share on other sites

7 hours ago, LinusTech said:

Everyone really needs to stop speculating about who the 3rd party is.

 

It does nothing but spread FUD.

Lock the topic? If it gets bad enough then you should reveal the 3rd party but until then just keep quiet and hope everyone forgets.

Judge a product on its own merits AND the company that made it.

How to setup MSI Afterburner OSD | How to make your AMD Radeon GPU more efficient with Radeon Chill | (Probably) Why LMG Merch shipping to the EU is expensive

Oneplus 6 (Early 2023 to present) | HP Envy 15" x360 R7 5700U (Mid 2021 to present) | Steam Deck (Late 2022 to present)

 

Mid 2023 AlTech Desktop Refresh - AMD R7 5800X (Mid 2023), XFX Radeon RX 6700XT MBA (Mid 2021), MSI X370 Gaming Pro Carbon (Early 2018), 32GB DDR4-3200 (16GB x2) (Mid 2022

Noctua NH-D15 (Early 2021), Corsair MP510 1.92TB NVMe SSD (Mid 2020), beQuiet Pure Wings 2 140mm x2 & 120mm x1 (Mid 2023),

Link to comment
Share on other sites

Link to post
Share on other sites

On 6/29/2016 at 2:48 AM, givingtnt said:

lol no

 

you DO NO WANT

to store passwords

ever

ever

 

till the end of time

But I store my passwords in my mind!?

Main Gaming Rig:

Spoiler

Core i7-4770, Cryorig M9i Cooler, ASUS B85M GAMER, 8GB HyperX Fury Red 2x4GB 1866MHz, KFA2 GTX 970 Infin8 Black Edition "4GB", 1TB Seagate SSHD, 256GB Crucial m4 SSD, 60GB Corsair SSD for Kerbal and game servers, Thermaltake Core V21 Case, EVGA SuperNOVA 650W G2.

Secondary PC:

Spoiler

i5-2500k OCed, Raijintek Themis, Intel Z77GA-70K, 8GB HyperX Genesis in grey, GTX 750 Ti, Gamemax Falcon case.

 

Link to comment
Share on other sites

Link to post
Share on other sites

23 hours ago, Ryan_Vickers said:

Yes, thank you :D

 

 

What is FUD?

Main Gaming Rig:

Spoiler

Core i7-4770, Cryorig M9i Cooler, ASUS B85M GAMER, 8GB HyperX Fury Red 2x4GB 1866MHz, KFA2 GTX 970 Infin8 Black Edition "4GB", 1TB Seagate SSHD, 256GB Crucial m4 SSD, 60GB Corsair SSD for Kerbal and game servers, Thermaltake Core V21 Case, EVGA SuperNOVA 650W G2.

Secondary PC:

Spoiler

i5-2500k OCed, Raijintek Themis, Intel Z77GA-70K, 8GB HyperX Genesis in grey, GTX 750 Ti, Gamemax Falcon case.

 

Link to comment
Share on other sites

Link to post
Share on other sites

2 hours ago, NinjaJc01 said:

What is FUD?

A falsehood, or in other words misinformation and disinformation.

 

Also, Elmer.

Read the community standards; it's like a guide on how to not be a moron.

 

Gerdauf's Law: Each and every human being, without exception, is the direct carbon copy of the types of people that he/she bitterly opposes.

Remember, calling facts opinions does not ever make the facts opinions, no matter what nonsense you pull.

Link to comment
Share on other sites

Link to post
Share on other sites

2 hours ago, NinjaJc01 said:

What is FUD?

Fear, uncertainty, and doubt

Solve your own audio issues  |  First Steps with RPi 3  |  Humidity & Condensation  |  Sleep & Hibernation  |  Overclocking RAM  |  Making Backups  |  Displays  |  4K / 8K / 16K / etc.  |  Do I need 80+ Platinum?

If you can read this you're using the wrong theme.  You can change it at the bottom.

Link to comment
Share on other sites

Link to post
Share on other sites

14 minutes ago, Colonel_Gerdauf said:

A falsehood, or in other words misinformation and disinformation.

 

Also, Elmer.

Elmer?

Main Gaming Rig:

Spoiler

Core i7-4770, Cryorig M9i Cooler, ASUS B85M GAMER, 8GB HyperX Fury Red 2x4GB 1866MHz, KFA2 GTX 970 Infin8 Black Edition "4GB", 1TB Seagate SSHD, 256GB Crucial m4 SSD, 60GB Corsair SSD for Kerbal and game servers, Thermaltake Core V21 Case, EVGA SuperNOVA 650W G2.

Secondary PC:

Spoiler

i5-2500k OCed, Raijintek Themis, Intel Z77GA-70K, 8GB HyperX Genesis in grey, GTX 750 Ti, Gamemax Falcon case.

 

Link to comment
Share on other sites

Link to post
Share on other sites

7 minutes ago, NinjaJc01 said:

Elmer?

The one on the left here is Elmer Fudd

tumblr_n7u3k2obMR1s4rha3o9_250.gif

 

System CPU : Ryzen 9 5950 doing whatever PBO lets it. Motherboard : Asus B550 Wifi II RAM 80GB 3600 CL 18 2x 32GB 2x 8GB GPUs Vega 56 & Tesla M40 Corsair 4000D Storage: many and varied small (512GB-1TB) SSD + 5TB WD Green PSU 1000W EVGA GOLD

 

You can trust me, I'm from the Internet.

 

Link to comment
Share on other sites

Link to post
Share on other sites

2 minutes ago, GzeroD said:

The one on the left here is Elmer Fudd

tumblr_n7u3k2obMR1s4rha3o9_250.gif

 

Oh ok. I do know the character.

Main Gaming Rig:

Spoiler

Core i7-4770, Cryorig M9i Cooler, ASUS B85M GAMER, 8GB HyperX Fury Red 2x4GB 1866MHz, KFA2 GTX 970 Infin8 Black Edition "4GB", 1TB Seagate SSHD, 256GB Crucial m4 SSD, 60GB Corsair SSD for Kerbal and game servers, Thermaltake Core V21 Case, EVGA SuperNOVA 650W G2.

Secondary PC:

Spoiler

i5-2500k OCed, Raijintek Themis, Intel Z77GA-70K, 8GB HyperX Genesis in grey, GTX 750 Ti, Gamemax Falcon case.

 

Link to comment
Share on other sites

Link to post
Share on other sites

It sucks people try to break in and just wreck it for everyone.

 

For anyone says they should've known how to protect themselves because what they are. Keep in mind, like death. Hackers only have to be right 1 time

Link to comment
Share on other sites

Link to post
Share on other sites

Guest
This topic is now closed to further replies.


×