maemo.org - Talk

maemo.org - Talk (https://talk.maemo.org/index.php)
-   Off Topic (https://talk.maemo.org/forumdisplay.php?f=19)
-   -   My gmail account has been hacked - I am pretty sure it's related to the N900 somehow (https://talk.maemo.org/showthread.php?t=56656)

eitama 2010-06-20 12:52

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
Quote:

Originally Posted by CrashandDie (Post 722595)
TLS clients will bork if they connect to a host that does not offer a certificate. Typing your username/password on a page that is not secure deserves you to get your account hacked.

Nuff said.

You can stick your head in the sand if you like, and ignore that there might be a problem, but there are too many ways for this to happen to just rule it out.

And yes, I am human, I might have made a mistake and didn't notice that SSL was gone.

I having a hard time using my humanity as an excuse for your rudeness.

Quote:

4/ Don't blame the N900.
5/ Stupid topic
6/ ???
7/ Profit.

uvatbc 2010-06-20 17:08

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
Do these steps from a machine you know (know, not believe) to be secure:
1. Change your gmail password. Do not tell it to anyone. Not even your spouse.
2. Change the address of you alternate email address to an address you know to be secure.
3. Go to gmail. At the bottom in fine print there should be something that explains the latest activity on the account. It should have a "Details" link. Click it. A popup window will appear. Click Disconnect all other sessions.

After these steps:
Monitor your gmail like a hawk for a month at least to ensure there's no funny activity.

If you think your phone is compromised. Reflash everything down to emmc before you attempt login to gmail.

I am more inclined to believe that your desktop/laptop is compromised - because the n900 is not a "famous" enough target to install keyloggers / rootkits. The ROI is in most cases not worth it.

Some of these steps sound funny (paranoid) even when I read them, but for me they are important because my email account is effectively a gateway to almost everything else I have.
I cannot afford to have it be compromised.

Texrat 2010-06-25 20:09

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
Well, after all these years, it looks like an online account of mine has been hacked: Youtube. I can no longer log in, and today Youtube asked me to verify I wanted the password changed.

Crap.

Not sure how to fix this...

gerbick 2010-06-25 20:21

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
This thread has made me rotate my passwords on all of my online accounts.

juise- 2010-06-25 20:52

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
Quote:

Originally Posted by gerbick (Post 729473)
This thread has made me rotate my passwords on all of my online accounts.

It's a good idea to do that every once in a while.

To OP:

I'd look back if I've used any computers in public places (likely targets), or anything running windows (likely targets).

Targeting N900 users would mean targeting so small total amount of users it wouldn't make sense to most hackers.

Texrat 2010-06-25 21:29

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
Quote:

Originally Posted by gerbick (Post 729473)
This thread has made me rotate my passwords on all of my online accounts.

And really makes me wonder about OpenID...

gerbick 2010-06-25 21:36

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
Quote:

Originally Posted by Texrat (Post 729534)
And really makes me wonder about OpenID...

I believe that it was GA here that was first to have shown the security concerns for OpenID around here. Not sure, but I've seen concerns.

I used to rotate my password - non-dictionary, complex (uppercase, lowercase) with at least two special characters - once per 120 days. I just rotated and since last year have done so only once per 180 days.

You guys just prompted it today for all but my throwaway accounts.

optimistprime 2010-06-25 21:55

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
just rotated mine. had something similar with the gmail thing happen the other day. i do usually check and see if the account is logged in somewhere else but recently had been using gmail mobile. in the middle of a gtalk chat, the account was temporarily suspended due to "suspicious" activity. had to change email passwords.....just changed EVERY password that i used.

eitama 2010-06-25 22:06

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
Interesting information guys!
Thanks for letting me know, I'll restart the brute force loop.

juise- 2010-06-25 22:30

Re: My gmail account has been hacked - I am pretty sure it's related to the N900 somehow
 
Quote:

Originally Posted by CrashandDie (Post 722595)
Typing your username/password on a page that is not secure deserves you to get your account hacked.

Easier said than not done.

I have almost typed my FB credentials to a phishing site once, after following a link from authentic looking email notification to authentic looking login page. The only thing that was wrong was the URL.

Edit: needless to say, I've been more careful with clicking links in e-mails ever since.


All times are GMT. The time now is 23:37.

vBulletin® Version 3.8.8