No, not me (phew) - but @sift666 has been hacked!steemCreated with Sketch.

in #steemit7 years ago (edited)

And yes, this is for real, no joke, no satire :-(

hacked-2127635_640.png

This morning he found himself logged out, When he went to login again, he got this message:

sift-screendump.jpg

After setting that in motion, the message that came back was:

sift-screendump2.jpg

On the "steemit" "new" tab I found a couple of others who'd been hacked. If there is a high volume of emails, does that mean it's happened a lot over the last few hours?

I don't specifically know what any of us can do to prevent this happening (as he hadn't shared his master key) - but be careful out there! I'll keep you posted.

If it takes a while to resolve, you might see some @sift666 work coming through here...

EDIT

After further investigation, it turned out that it was not a hack, it was a block. It was part of a new initiative by @gtg to promote awareness of the dangers of using the wrong keys. For more info and instructions on how to keep safe, see @sift666's post: https://steemit.com/steemit/@sift666/have-i-been-hacked-or-blocked

Thanks for reading

Pics and screendumps by @sift666 or from Pixabay

Follow me for more health, nutrition, food, lifestyle and recipe posts.

Sort:  

Did he happen to look at a post like this one: https://steemit.com/steemit/@aftabkhan10/that-glitch-scam-post-do-not-click-or-enter-your-details

I just saw that in the feed. That really sucks, I"m super sorry to hear that Ian!!

Edit: And@reddust just posted this: https://steemit.com/steemit/@reddust/birjudanak-is-pulling-a-phishing-scam

He says: Thanks for that – here’s where it gets confusing – I haven’t clicked on any pages like that or used my login for months as far as I remember (I know to take care with that) – so my only thought at this point is that they have some other way of targeting accounts and I’m hoping to find out more about this… I’m thinking it might really take off in the next few days – from @sift666 the punter that can’t log in!

reddust just wrote me that people are also using their master keys to exchange steem and sbd, you haven't done that have you?

I resteemed this and also reddust's post, I definitely want to give this huge problem exposure, so if you do run across anything else I'll resteem that too. God, I hope you recover it with everything still in it!

OK, I'm back with a different account in the meantime. As far as I can tell I haven't done anything dodgy with my security, so this is really confusing.

Next thing I'm wondering is how long it will take to hear back and to change my password. So far my account doesn't seem to be posting spam and my wallet hasn't changed, so fingers crossed it's OK.

Anything new to report? Glad to hear nothing appears to have changed :)

We haven't done any exchanging for a long time, so hopefully we didn't do that. I just added a link to an article by @gtg in the comments, which is very sobering and scary. I hope we get a successful recovery too, but that isn't guaranteed. Feeling sick...

Although, to his knowledge, Ian did none of these things, this post from @gtg is a sobering and vital read.
https://steemit.com/steem/@gtg/memos-keys-and-passwords-balrogs-and-fields-of-despair-be-safe-almost-usd100k-wasn-t

I feel a bit sick now, and am hoping like mad that a successful recovery can be done :-(

Think I saw at least 10 different people that has been hacked. The big problem is that the hacker uses the hacked account to try to convince followers of that account to "login" on a different page... That page looks like a steemit page, but is not... always check the adress in your browser and never never never login with your password on a page you don't know or trust...

Thanks for this. Very helpful warning for anyone who gets hacked subsequently.

Pleasure mine. This kind of info has to be shared as much as possible... It's a "very good" scam, I personally also clicked on the link but stopped when I saw they wanted my password... but I can imagine that many people will trust and go on...

This is just a thought, but I know you (@sift666) mentioned this new tool to draw just yesterday. Did that require any password to login?

You're just not safe anywhere anymore. Sigh...Resteeming this notice. Thank you for sharing.

please keep us posted :(

Looking into this now - still no idea how it happened

@sift666 from a new temporary account - @mg-nz

My message to GTG:

https://steemit.com/steem/@gtg/memos-keys-and-passwords-balrogs-and-fields-of-despair-be-safe-almost-usd100k-wasn-t#@mg-nz/re-gtg-memos-keys-and-passwords-balrogs-and-fields-of-despair-be-safe-almost-usd100k-wasn-t-20170926t043520192z

Hi - none of this stuff is my gig - I barely understand any of it and my head is spinning just looking at this - but here is what I think has happened:

I was randomly logged out (no idea why) and went to log in with the key stored in my browser (Opera) - but that has been there since last year and it's my original key - but from reading your post I'm guessing is no longer OK to use that, (it must have been OK last time I used it )so my account - @sift666 - has been locked up.

I never knew about needing different log in keys because it's probably over a year since I last logged in, and I don't have copies of the other log ins - only the original one

How do I go about sorting this account log in?

(I'm currently using a temporary account so I can see this post and comments)

Couldn't you have just send me a message saying I needed to use a different password? I know how to see them all now, but I can't get to them in my account because i'm logged out

Everybody on Steemit was saying I had been hacked because I clicked on a dodgy link - but I hadn't. This seems a stressful way to go about all this...

Jeepers I'm confused now!

Thanks for the heads up, please let us know the outcome.

Thanks - I've just posted response to all this here:

https://steemit.com/steemit/@sift666/have-i-been-hacked-or-blocked

Some of the people here might want to read this post: https://steemit.com/promo-steem/@omar-hesham/to-all-my-friends-in-steemit-be-aware-of-the-big-scam-and-account-hacking-from-optimisticguy-and-flenn
Yet another trick to capture your key is going around... .

resteemed to warn others ..

Thanks - I've just posted a response to all this here:

https://steemit.com/steemit/@sift666/have-i-been-hacked-or-blocked

Hope things work out though I also wonder without sharing his details how did it get hack unless it was an easy password but I thought it's a long password for many of us .

That's what I'm wondering too because it was a complex password and I never knowingly shared it..

@sift666 from a new temporary account - @mg-nz

Good for you with a temp account. Scary how it happens.

We have a theory about what happened - I was randomly logged out and went to log in with the key stored in my browser - but that has been there since last year and it's my master key which is no longer OK to use, so my account has been locked up.

I never knew about needing different log in keys because it's probably over a year since I last logged in, and I don't have copies of the other log ins - only the original master one

Hope it works out ok for you

Thanks - I've just posted response to all this here:

https://steemit.com/steemit/@sift666/have-i-been-hacked-or-blocked

Coin Marketplace

STEEM 0.27
TRX 0.25
JST 0.039
BTC 96923.38
ETH 3370.74
USDT 1.00
SBD 3.55