monyet.cc
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
@G59@lemmy.ml to Fediverse@lemmy.mlEnglish •
edit-2
2 years ago

PSA: Lemmy.world has been compromised! (Edit: Multiple Instances are down)

message-square
229
fedilink
388
message-square

PSA: Lemmy.world has been compromised! (Edit: Multiple Instances are down)

@G59@lemmy.ml to Fediverse@lemmy.mlEnglish •
edit-2
2 years ago
message-square
229
fedilink

FYI!!! In case you start getting re-directed to porn sites.

Maybe the admin got hacked?


edit: lemmy.blahaj.zone has also been hacked. beehaw.org is also down, possibly intentionally by their admins until the issue is fixed.

Post discussing the point of vulnerability: https://lemmy.ml/post/1896249

Github Issue created here: https://github.com/LemmyNet/lemmy-ui/issues/1895

  • bootyberrypancakes
    link
    fedilink
    English
    35•
    edit-2
    2 years ago

    lemmy.blahaj.zone got hacked too, looks like the same people

    https://lemmywinks.xyz/post/320087

    • james
      link
      fedilink
      English
      27•2 years ago

      They also changed the allowed/blocked instances to allow threads.net and defederate lemmy.ml, just like they did on lemmy.world: https://lemmy.blahaj.zone/instances

    • @Candelestine@lemmy.ca
      link
      fedilink
      English
      18•2 years ago

      Huh… so this probably is more sophisticated than a single acct breach then. Lovely.

      • bootyberrypancakes
        link
        fedilink
        English
        16•2 years ago

        Yeah, I’d recommend any server admin that doesn’t have 2FA turn it on ASAP until we know what their exploiting

        • @bdonvr@thelemmy.club
          link
          fedilink
          English
          8•2 years ago

          Looks like the accounts were compromised by stealing their cookie - something 2FA can’t stop.

          Still should have it on, though.

    • bootyberrypancakes
      link
      fedilink
      English
      7•2 years ago

      blahaj admins are aware and have the site down with a splash screen now

    • RoundSparrow
      link
      fedilink
      English
      5•
      edit-2
      2 years ago

      Links to this video: https://www.youtube.com/watch?v=Z1K4BUtHsO4

      • bootyberrypancakes
        link
        fedilink
        English
        5•2 years ago

        Yup they must of just put that up after I posted and @ the admins

Fediverse@lemmy.ml

!fediverse@lemmy.ml

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !fediverse@lemmy.ml

A community dedicated to fediverse news and discussion.

Fediverse is a portmanteau of “federation” and “universe”.

Getting started on Fediverse;

  • What is the fediverse?
    • Short ver.
    • Full ver.
  • Fediverse Platforms
  • How to run your own community
  • 15 users / day
  • 173 users / week
  • 480 users / month
  • 2.98K users / 6 months
  • 19.4K subscribers
  • 1.03K Posts
  • 14.2K Comments
  • Modlog
  • mods:
  • Sean Tilley
  • wakest
  • BE: 0.19.3
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org