• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 09:48
CEST 15:48
KST 22:48
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
Code S RO12 Preview: Maru, Trigger, Rogue, NightMare12Code S RO12 Preview: Cure, sOs, Reynor, Solar15[ASL19] Ro8 Preview: Unyielding3Official Ladder Map Pool Update (April 28, 2025)17[ASL19] Ro8 Preview: Rejuvenation8
Community News
Code S Season 1 - RO12 Group A Results (2025)3$1,250 WardiTV May [May 6th-May 18th]4Clem wins PiG Sty Festival #66Weekly Cups (April 28-May 4): ByuN & Astrea break through1Nexon wins bid to develop StarCraft IP content, distribute Overwatch mobile game29
StarCraft 2
General
How does the number of casters affect your enjoyment of esports? Code S Season 1 - RO12 Group A Results (2025) quickbooks-database-server-manager-not-running quickbooks-has-stopped-working-^^[[855-749-2321]] Code S RO12 Preview: Maru, Trigger, Rogue, NightMare
Tourneys
[GSL 2025] Code S:Season 1 - RO12 - Group A INu's Battles#12 < ByuN vs herO > [GSL 2025] Code S:Season 1 - RO12 - Group B GSL 2025 details announced - 2 seasons pre-EWC 2025 GSL Season 2 (Qualifiers)
Strategy
[G] PvT Cheese: 13 Gate Proxy Robo Simple Questions Simple Answers
Custom Maps
[UMS] Zillion Zerglings
External Content
Mutation # 472 Dead Heat Mutation # 471 Delivery Guaranteed Mutation # 470 Certain Demise Mutation # 469 Frostbite
Brood War
General
OGN to release AI-upscaled StarLeague from Feb 24 Battlenet Game Lobby Simulator [G] GenAI subtitles for Korean BW content BGH auto balance -> http://bghmmr.eu/ StarCraft & BroodWar Campaign Speedrun Quest
Tourneys
[ASL19] Ro8 Day 4 [CSLPRO] $1000 Spring is Here! Small VOD Thread 2.0 [Megathread] Daily Proleagues
Strategy
[G] How to get started on ladder as a new Z player Creating a full chart of Zerg builds [G] Mineral Boosting
Other Games
General Games
What do you want from future RTS games? Nintendo Switch Thread Stormgate/Frost Giant Megathread Grand Theft Auto VI Battle Aces/David Kim RTS Megathread
Dota 2
Official 'what is Dota anymore' discussion
League of Legends
LiquidLegends to reintegrate into TL.net
Heroes of the Storm
Simple Questions, Simple Answers
Hearthstone
Heroes of StarCraft mini-set
TL Mafia
Vanilla Mini Mafia TL Mafia Community Thread TL Mafia Plays: Diplomacy TL Mafia: Generative Agents Showdown Survivor II: The Amazon
Community
General
Elon Musk's lies, propaganda, etc. US Politics Mega-thread UK Politics Mega-thread Things Aren’t Peaceful in Palestine Russo-Ukrainian War Thread
Fan Clubs
Serral Fan Club
Media & Entertainment
Movie Discussion! Anime Discussion Thread [Books] Wool by Hugh Howey Surprisingly good films/Hidden Gems
Sports
2024 - 2025 Football Thread NHL Playoffs 2024 NBA General Discussion Formula 1 Discussion
World Cup 2022
Tech Support
Cleaning My Mechanical Keyboard How to clean a TTe Thermaltake keyboard? Logitech mx518 cleaning.
TL Community
BLinD-RawR 50K Post Watch Party The Automated Ban List TL.net Ten Commandments
Blogs
Info SLEgma_12
SLEgma_12
SECOND COMMING
XenOsky
What High-Performing Teams (…
TrAiDoS
WombaT’s Old BW Terran Theme …
WombaT
Heero Yuy & the Tax…
KrillinFromwales
BW PvZ Balance hypothetic…
Vasoline73
Test Entry for subject
xumakis
Customize Sidebar...

Website Feedback

Closed Threads



Active: 10577 users

[H] Hacked Gmail.

Blogs > NoNameLoser
Post a Reply
NoNameLoser
Profile Blog Joined December 2002
United States1508 Posts
May 15 2010 04:15 GMT
#1
I haven't checked my gmail for a week now when i try to log in it says invalid password and on password reset page says it will send it to *****@m***.ru. I sure as hell don't have any .ru mails.

I had the account for around 5 years and its filled with personal info and other stuff... Password was 6 characters with 1 numerical, never had problem with it for 8 years on other emails.

Cant login to facebook either, it was linked to gmail account...

Filled out google's compromised account form and they replied they couldn't determine if it was stolen, and said to try again...

Feel so angry right now.

NoNameLoser
Profile Blog Joined December 2002
United States1508 Posts
May 15 2010 04:18 GMT
#2
Also i didn't login on any other computer at least a few month; unlikely that i have a trojan.

How likely is it that google's server had password hashes stolen and cracked?
Empyrean
Profile Blog Joined September 2004
16957 Posts
May 15 2010 04:24 GMT
#3
On May 15 2010 13:18 NoNameLoser wrote:
Also i didn't login on any other computer at least a few month; unlikely that i have a trojan.

How likely is it that google's server had password hashes stolen and cracked?


Not likely at all. What's more likely is a bunch of Russians trying the same password on a bunch of different accounts and seeing if they work. What's even more likely is you being phished.
Moderator
floor exercise
Profile Blog Joined August 2008
Canada5847 Posts
Last Edited: 2010-05-15 04:33:26
May 15 2010 04:32 GMT
#4
One time I found this random email as my backup email for a gmail account I have. I'm pretty sure it was orly@gmail.com which isn't mine and it confused me cause I doubt I would put a random email address in, that would be retarded. I changed it when I saw it there, and a few days later I get a password reset confirmation to that email, like someone was trying to reset the password to my account by somehow changing the backup email on that account. It was all very strange. I mean how would you do that in the first place without having access to the account, why not just change the password yourself at that point.
fight_or_flight
Profile Blog Joined June 2007
United States3988 Posts
May 15 2010 04:33 GMT
#5
Do you use the password for anything else? If so, I'd change it.
Do you really want chat rooms?
mmp
Profile Blog Joined April 2009
United States2130 Posts
Last Edited: 2010-05-15 05:11:50
May 15 2010 05:07 GMT
#6
Was your password dictionaried? It's really easy to brute force these and you may have just been one unlucky one in a thousand.

You should change and improve all of your passwords on an annual basis. It's so easy for anyone to write a script that just guesses hundreds of logins per minute.
I (λ (foo) (and (<3 foo) ( T_T foo) (RAGE foo) )) Starcraft
rotinegg
Profile Blog Joined April 2009
United States1719 Posts
May 15 2010 05:26 GMT
#7
i heard there was a pretty big scandal recently where russians attacked the fb server and stole a bunch of accounts... so it might have been the other way around: fb account got hacked, and gmail was linked to it. If thats what happened im sorry keep pursuing google and fb about it
Translator
fight_or_flight
Profile Blog Joined June 2007
United States3988 Posts
Last Edited: 2010-05-15 06:59:39
May 15 2010 06:56 GMT
#8
On May 15 2010 14:07 mmp wrote:
Was your password dictionaried? It's really easy to brute force these and you may have just been one unlucky one in a thousand.

You should change and improve all of your passwords on an annual basis. It's so easy for anyone to write a script that just guesses hundreds of logins per minute.

How is that possible? If someone tires to brute force someone's gmail account, obviously google would block further log in attempts after probably 10 or 20 tries.

If someone is trying random email addresses with the same password, wouldn't google just block whatever IP address is sending that many requests? I don't see how it is "easy" to write such a script.

The only reasonable method I can think of is if someone owns a botnet and each bot tries only a couple accounts.

The much more likely scenario I can see is a keylogger, or possibly a website that you registered a username at whose admin accessed your password and tried it with the email address you supplied.


On May 15 2010 14:26 rotinegg wrote:
i heard there was a pretty big scandal recently where russians attacked the fb server and stole a bunch of accounts... so it might have been the other way around: fb account got hacked, and gmail was linked to it. If thats what happened im sorry keep pursuing google and fb about it

If you use the same password for multiple things, thats very possible. If you have a hacked fb account , the obvious thing is to check what email address its linked to and see if the password works there as well.

Whatevere password you use for your main email address should be unique from any other password you use.
Do you really want chat rooms?
mmp
Profile Blog Joined April 2009
United States2130 Posts
Last Edited: 2010-05-15 07:28:11
May 15 2010 07:02 GMT
#9
Further attempts maybe just on that one account, and maybe only so many spams from one IP before blocking it.

Botnets exist to achieve just this kind of drudge work, but it's nothing personal. Anyone who has a low security password on a high profile service is playing roulette.

If you can extract credit card or bank account information from a compromised email account, then it's entirely worth it if you only get one good hit out of thousand of misses.

And anyone who has a basic understanding of internet protocols and has access to numerous machines can write a distributed brute force script. The programming is very elementary, you just have to know how and where to attack.

Also keep in mind that it's not a simple matter of blocking spammy IPs. Most botnets are a network of compromised machines infected by shit that your internet browser let in (running Windows without updates is suicide, but most infection occurs in countries where the software is mostly pirated or is simply an old version - the moment you connect Windows to the internet it gets spammed with attempts to catch a virgin system before it's inoculated). If you try to block every IP that does illegal things you risk upsetting a lot of legitimate users.

The problem applies to internet retaliation and culpability. Because of proxying/forwarding over neutral or compromised parties, it's difficult to be certain who is attacking you.

Anyone in the open (university students, some corporations) who runs Linux and uses sshd (possibly enabled by default) can just check their syslog and see a huge list of failed login attempts in bursts of ~100 attempts for usernames like "root, www, sql, bob, fred, ..." so it's safe to say that if your IP is accessible, someone is trying to break down the door.

I get a lot of chitchat from Russia, and I've seen one machine get brute forced from the Phillipines and rooted by a script from Bulgaria. It's quite fun to read the logs.
I (λ (foo) (and (<3 foo) ( T_T foo) (RAGE foo) )) Starcraft
Babel
Profile Joined April 2010
30 Posts
May 15 2010 08:06 GMT
#10
On May 15 2010 13:15 NoNameLoser wrote:
I had the account for around 5 years and its filled with personal info and other stuff... Password was 6 characters with 1 numerical, never had problem with it for 8 years on other emails.


Feel so angry right now.

/facepalm

This is why you change your passwords regularly, not stay on the same one for multiple accounts for 8 years.
Mortality
Profile Blog Joined December 2005
United States4790 Posts
May 15 2010 09:13 GMT
#11
I really don't think that matters. Unless someone is actively trying to get into your account specifically, they aren't going to waste months of time cracking your password. More likely, one account (most likely the new one) got compromised for any of a number of reasons and it didn't really make a difference that the password was years old.
Even though this Proleague bullshit has been completely bogus, I really, really, really do not see how Khan can lose this. I swear I will kill myself if they do. - nesix before KHAN lost to eNature
Shrine
Profile Blog Joined April 2010
Australia107 Posts
May 15 2010 09:43 GMT
#12
sk8d3mz7cm4

Those are my passwords all different for all things.

Copy and paste notepad is a wonderful tool vs keyloggers.
Hell is empty, All the devils are here.
Biff The Understudy
Profile Blog Joined February 2008
France7856 Posts
May 15 2010 11:40 GMT
#13
On May 15 2010 18:43 Shrine wrote:
sk8d3mz7cm4

Those are my passwords all different for all things.

Copy and paste notepad is a wonderful tool vs keyloggers.

And how do you connect from other computers?
The fellow who is out to burn things up is the counterpart of the fool who thinks he can save the world. The world needs neither to be burned up nor to be saved. The world is, we are. Transients, if we buck it; here to stay if we accept it. ~H.Miller
MasterOfChaos
Profile Blog Joined April 2007
Germany2896 Posts
May 15 2010 12:05 GMT
#14
On May 15 2010 18:43 Shrine wrote:
Copy and paste notepad is a wonderful tool vs keyloggers.

Only against very stupid trojans.
LiquipediaOne eye to kill. Two eyes to live.
Shrine
Profile Blog Joined April 2010
Australia107 Posts
Last Edited: 2010-05-15 12:48:27
May 15 2010 12:46 GMT
#15
On May 15 2010 20:40 Biff The Understudy wrote:
Show nested quote +
On May 15 2010 18:43 Shrine wrote:
sk8d3mz7cm4

Those are my passwords all different for all things.

Copy and paste notepad is a wonderful tool vs keyloggers.

And how do you connect from other computers?



I have a psp it opens *.txt in its web browser xD

EDIT: I have never had a trojan so no idea what they even do, i've had 1 key logger though.
Hell is empty, All the devils are here.
lac29
Profile Blog Joined December 2008
United States1485 Posts
May 15 2010 15:18 GMT
#16
KeePass.
Kambo_Rambo
Profile Joined May 2010
Australia79 Posts
May 15 2010 15:35 GMT
#17
On May 15 2010 13:15 NoNameLoser wrote:
Password was 6 characters with 1 numerical



well theres your problem. im assuming the 6 characters is a dictionary word/name.

Try aim for 9+ alpha/numic/symbolic characters. To helop make a password, think of a sentence, and take the first letter of each word. Add some numbers and or symbols somewhere in between and you have yourself a reasonably easy to remember password.
You require more vespene minerals?
MasterOfChaos
Profile Blog Joined April 2007
Germany2896 Posts
May 15 2010 16:59 GMT
#18
On May 16 2010 00:35 Kambo_Rambo wrote:
Try aim for 9+ alpha/numic/symbolic characters. To helop make a password, think of a sentence, and take the first letter of each word. Add some numbers and or symbols somewhere in between and you have yourself a reasonably easy to remember password.

For website passwords the entropy of the password itself is usually not that critical (unless you use "Password1" or sth like that). For that use it's more important to not get a trojan, not fall for fishing and use the pw only on one website.
The password strength is mainly important for cryptographic uses. For example a TrueCrypt pw should have a high entropy.
LiquipediaOne eye to kill. Two eyes to live.
Please log in or register to reply.
Live Events Refresh
Next event in 14h 12m
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
Harstem 442
Lowko347
Hui .108
StarCraft: Brood War
Horang2 30792
Bisu 3419
Flash 1204
Shuttle 743
BeSt 538
Pusan 451
Stork 409
Mini 369
PianO 301
actioN 278
[ Show more ]
Soulkey 151
TY 100
Leta 84
Rush 75
Mind 65
ToSsGirL 54
sSak 50
Aegong 37
Backho 30
Terrorterran 24
Shinee 22
Barracks 22
sorry 20
soO 15
Shine 14
Yoon 12
yabsab 12
Movie 9
Sacsri 7
Sexy 5
IntoTheRainbow 3
Stormgate
NightEnD32
Dota 2
Gorgc1477
420jenkins1037
syndereN271
qojqva125
Counter-Strike
olofmeister2229
NBK_214
Super Smash Bros
Mew2King100
Heroes of the Storm
Khaldor233
Other Games
singsing3055
B2W.Neo1797
DeMusliM755
XcaliburYe693
hiko271
crisheroes263
ArmadaUGS109
SortOf102
djWHEAT94
Liquid`VortiX62
Organizations
StarCraft: Brood War
UltimateBattle 1096
StarCraft 2
WardiTV945
ESL.tv122
StarCraft: Brood War
lovetv 9
StarCraft 2
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
sctven
[ Show 12 non-featured ]
StarCraft 2
• AfreecaTV YouTube
• intothetv
• Kozan
• IndyKCrew
• LaughNgamezSOOP
• Migwel
• sooper7s
StarCraft: Brood War
• BSLYoutube
• STPLYoutube
• ZZZeroYoutube
League of Legends
• Nemesis3512
• Jankos1461
Upcoming Events
Online Event
14h 12m
ShoWTimE vs MaxPax
SHIN vs herO
Clem vs Cure
SHIN vs Clem
ShoWTimE vs SHIN
SOOP
19h 12m
DongRaeGu vs sOs
CranKy Ducklings
20h 12m
WardiTV Invitational
21h 12m
SC Evo League
22h 12m
WardiTV Invitational
1d
Chat StarLeague
1d 2h
PassionCraft
1d 3h
Circuito Brasileiro de…
1d 4h
Online Event
1d 14h
MaxPax vs herO
SHIN vs Cure
Clem vs MaxPax
ShoWTimE vs herO
ShoWTimE vs Clem
[ Show More ]
Sparkling Tuna Cup
1d 20h
WardiTV Invitational
1d 21h
uThermal 2v2 Circuit
2 days
Chat StarLeague
2 days
Circuito Brasileiro de…
2 days
Afreeca Starleague
2 days
BeSt vs Light
Wardi Open
2 days
PiGosaur Monday
3 days
Afreeca Starleague
3 days
Snow vs Soulkey
WardiTV Invitational
3 days
Replay Cast
4 days
GSL Code S
4 days
ByuN vs Rogue
herO vs Cure
Replay Cast
5 days
GSL Code S
5 days
Classic vs Reynor
GuMiho vs Maru
The PondCast
5 days
RSL Revival
6 days
GSL Code S
6 days
Liquipedia Results

Completed

FGSL Season 1
PiG Sty Festival 6.0
Calamity Stars S2

Ongoing

BSL Nation Wars Season 2
StarCastTV Star League 4
JPL Season 2
ASL Season 19
YSL S1
BSL 2v2 Season 3
BSL Season 20
China & Korea Top Challenge
KCM Race Survival 2025 Season 2
2025 GSL S1
Heroes 10 EU
Asian Champions League '25
ECL Season 49: Europe
BLAST Rivals Spring 2025
MESA Nomadic Masters
CCT Season 2 Global Finals
IEM Melbourne 2025
YaLLa Compass Qatar 2025
PGL Bucharest 2025
BLAST Open Spring 2025
ESL Pro League S21

Upcoming

CSLPRO Spring 2025
NPSL Season 2
CSLPRO Last Chance 2025
CSLAN 2025
Esports World Cup 2025
HSC XXVII
Championship of Russia 2025
Bellum Gens Elite Stara Zagora 2025
2025 GSL S2
DreamHack Dallas 2025
FISSURE Playground #1
BLAST.tv Austin Major 2025
ESL Impact League Season 7
IEM Dallas 2025
PGL Astana 2025
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2025 TLnet. All Rights Reserved.