• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 01:12
CEST 07:12
KST 14:12
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
Team Liquid Map Contest #22: Results and Winners5Code S Season 2 (2026): RO4 and Finals Preview12TL.net Map Contest #22 - Voting & Ladder Map Selection7Code S Season 2 (2026) - RO8 Preview5[ASL21] Finals Preview: Two Legacies21
Community News
[BSL22] Non-Korean Championship from 13 to 28 June2Weekly Cups (May 25-31): Clem doubles, 2v2 circuit heads toward finale0StarCraft II 5.0.16 PTR Patch Notes may 26th151Weekly Cups (May 18-24): MaxPax wins doubles0Crank Gathers Season 4: BW vs SC2 Team League6
StarCraft 2
General
TL Poll: How do you feel about the 5.0.16 PTR balance changes? Team Liquid Map Contest #22: Results and Winners TL.net Map Contest #22 - Voting & Ladder Map Selection Oliveira Would Have Returned If EWC Continued Code S Season 2 (2026): RO4 and Finals Preview
Tourneys
Sea Duckling Open (Global, Bronze-Diamond) Douyu Cup 2026 Maestros of The Game 2 announcement and schedule ! GSL Code S Season 2 (2026) Sparkling Tuna Cup - Weekly Open Tournament
Strategy
[G] Having the right mentality to improve
Custom Maps
[D]RTS in all its shapes and glory <3
External Content
The PondCast: SC2 News & Results Mutation # 529 Opportunities Unleashed Mutation # 528 Infection Detected Welcome to the External Content forum
Brood War
General
Data needed Quality of life changes in BW that you will like ? BGH Auto Balance -> http://bghmmr.eu/ BW fans in southern Sweden, look here! 25 Years Since Brood War Patch 1.08
Tourneys
[BSL22] Grand Finals - Sunday 21:00 CEST [ASL21] Grand Finals [Megathread] Daily Proleagues Escore Tournament StarCraft Season 2
Strategy
Why doesn't anyone use restoration? Any training maps people recommend? Muta micro map competition [G] Hydra ZvZ: An Introduction
Other Games
General Games
Stormgate/Frost Giant Megathread PC Games Sales Thread Nintendo Switch Thread ZeroSpace Megathread Summer Games Done Quick 2026!
Dota 2
Looking for a Dota Mentor Official 'what is Dota anymore' discussion
League of Legends
Heroes of the Storm
Simple Questions, Simple Answers Heroes of the Storm 2.0
Hearthstone
Deck construction bug Heroes of StarCraft mini-set
TL Mafia
Vanilla Mini Mafia
Community
General
US Politics Mega-thread Trading/Investing Thread Canadian Politics Mega-thread Russo-Ukrainian War Thread Things Aren’t Peaceful in Palestine
Fan Clubs
The herO Fan Club!
Media & Entertainment
Movie Discussion! [Req][Books] Good Fantasy/SciFi books [TV/BOOK] *SPOILERS* Game of Thrones Discussion [Manga] One Piece
Sports
2024 - 2026 Football Thread Cricket [SPORT] NBA General Discussion McBoner: A hockey love story Formula 1 Discussion
World Cup 2022
Tech Support
Computer Build, Upgrade & Buying Resource Thread Facing Challenges in Mobile App Development
TL Community
The Automated Ban List
Blogs
How Streaming Impacts Game P…
TrAiDoS
An Exploration of th…
waywardstrategy
I'm an arrogant trash talke…
FlaShFTW
Gauntlet SC2: A Retrospectiv…
Ctone23
Why RTS gamers make better f…
gosubay
ASL S21 English Commentary…
namkraft
Customize Sidebar...

Website Feedback

Closed Threads



Active: 6946 users

GOMTV.net compromised - Page 15

Forum Index > SC2 General
Post a Reply
Prev 1 13 14 15 16 17 44 Next All
Voltaire
Profile Joined September 2010
United States1485 Posts
Last Edited: 2011-08-12 20:50:41
August 12 2011 20:50 GMT
#281
Yikes. I hope there won't be a repeat occurrence.
As long as people believe in absurdities they will continue to commit atrocities.
nonsence
Profile Joined July 2010
United States57 Posts
August 12 2011 20:51 GMT
#282
On August 13 2011 05:17 R1CH wrote:
Show nested quote +
On August 13 2011 05:15 ravemir wrote:
On August 13 2011 04:57 R1CH wrote:
On August 13 2011 04:55 Glowbox wrote:
Ideally you want to use something like bcrypt: http://codahale.com/how-to-safely-store-a-password/

For those curious, this is how TL passwords are stored.

Really? Isn't that supposedly too expensive on the login operation?

Not if you balance the iterations properly. A few hundred ms extra on the login isn't noticeable by most people and is plenty enough to defeat brute force attacks.


COOL, i hadn't heard of bcrypt, I just finished integrating a java version into my software Thanks TL
OMG Bear is driving! How is that possible?
DiamondTear
Profile Joined June 2010
Finland165 Posts
August 12 2011 20:51 GMT
#283
Changed GOM password, got not confirmation email (hotmail), can't log in.
slicknav
Profile Joined January 2011
1409 Posts
August 12 2011 20:51 GMT
#284
this should really be put on the front page of TL somewhere. This is kinda serious if personal information has been compromised.
blah blah blah...
Multis
Profile Joined May 2010
Finland21 Posts
August 12 2011 20:52 GMT
#285
Thanks for the heads up!
EndOfTime88
Profile Joined February 2011
Austria259 Posts
August 12 2011 20:53 GMT
#286
On August 13 2011 05:51 DiamondTear wrote:
Changed GOM password, got not confirmation email (hotmail), can't log in.


I'm having the same problem right now.
"Time is what we want most,but what we use worst."-William Penn
FallDownMarigold
Profile Blog Joined December 2010
United States3710 Posts
August 12 2011 20:53 GMT
#287
On August 13 2011 05:39 vyyye wrote:
Show nested quote +
On August 13 2011 05:38 FallDownMarigold wrote:
I use my real full name as my login, and social security number + credit card number as my password.


And I thought Login : Password was the dumbest login/pass combo, holy shit.


It's all good now, I just changed my account name to my home address and my password to my bank routing number.
thee telescopes
Profile Joined August 2010
321 Posts
August 12 2011 20:54 GMT
#288
On August 13 2011 05:51 slicknav wrote:
this should really be put on the front page of TL somewhere. This is kinda serious if personal information has been compromised.


Kinda annoying that there's nothing on Gom's site about this.
nooboon
Profile Blog Joined July 2011
2602 Posts
August 12 2011 20:54 GMT
#289
I don't know whats more surprising, GomTV getting hacked, or that R1CH found out who had been hack by himself.
CardG
Profile Joined March 2011
France131 Posts
August 12 2011 20:55 GMT
#290
On August 13 2011 05:53 EndOfTime88 wrote:
Show nested quote +
On August 13 2011 05:51 DiamondTear wrote:
Changed GOM password, got not confirmation email (hotmail), can't log in.


I'm having the same problem right now.

Same.
Badboyrune
Profile Blog Joined May 2010
Sweden2247 Posts
Last Edited: 2011-08-12 20:56:53
August 12 2011 20:55 GMT
#291
On August 13 2011 05:41 R1CH wrote:
Show nested quote +
On August 13 2011 05:26 ravemir wrote:
But tell me this, if you want to adjust the iterations, won't you have to re-calculate every password for each user?

Most systems store the algorithm and settings with the password hash and salt. For example, if your password hash is $2a$10$WyJ.NSYEmLixexXspQyoEOVYGK55cDjQd2cZedBN4t9.., the 2a identifies the algorithm (blowfish) and the 10 identifies the iterations (2^10). So if suddenly PCs become 100x faster I can just increase the 10 in our config and all new passwords become more secure, and old passwords are upgraded on successful logon.


I think this is the point where Hot_Bid posts:

I don’t understand the check_password function, why don’t you compare with the
stored hash in the BBDD? Something like this:
function check_password(password, nickname) {
//get user from nickname user = User.objects.get(nickname=nickname)
return user.hash_stored == hash(password)
Btw in your function check_password I suppose that in order to calculate again the
hash I’d have to do it with the cost parameter, something like this:
// this will be used to compare a password against a hash
public static function check_password($hash, $password) {
$new_hash = hash($password);
return ($hash == $new_hash);
"If yellow does start SC2, I should start handsomenerd diaper busniess and become a rich man" - John the Translator
Integra
Profile Blog Joined January 2008
Sweden5626 Posts
August 12 2011 20:56 GMT
#292
On August 13 2011 03:14 R1CH wrote:
There's a post on reddit that suggests that GOMTV has been compromised. I have independently verified that at least some usernames, passwords and email addresses have been compromised.

There appears to be zero security on the passwords as they were stored in plain text (really GOM?). This means if you use your GomTV password anywhere else, you should change it and consider it compromised. To clarify, your GomTV.net username, email address, PayPal real name and your GomTV.net password are likely compromised. Personal information such as your address may be compromised too if it was stored. You should also change your GomTV password to prevent unauthorized account access, although the exploit through which the information was compromised may still exist.

Since payments are processed through PayPal, there is no risk of your financial information being compromised, unless you used your PayPal password when signing up for GomTV (don't do this). Users who logged in via SNS should be safe as Twitter / Facebook authentication is token based, not password based.

If you aren't already, you should really use unique passwords for each website since this happens more often than you think (ever hear someone say they were "hacked"? this is likely how it happens) and not all websites will disclose if they get compromised. Use http://keepass.info/ for password management.

R1CH, from what I can deduct they simply used a SQL Injection to list all the data, if it's that simple then why does it matter if we change the password, they will still get it, you could change it a million times.
"Dark Pleasure" | | I survived the Locust war of May 3, 2014
Eleaven
Profile Joined September 2010
772 Posts
August 12 2011 20:57 GMT
#293
man i was seriously worried till you get to the facebook part.. phew
SilentShout
Profile Joined March 2011
686 Posts
August 12 2011 20:57 GMT
#294
Just got done changing a lot of my passwords... Just in case. My fault for using the same pass for so many sites, but better to be safe than sorry. Or so they say
Toons
Profile Joined November 2010
Australia136 Posts
August 12 2011 20:57 GMT
#295
^ Read further down, he says this ...

Change your pass to something completely obscure until they figure it out
Probes and pylons
strexer
Profile Blog Joined September 2010
United States54 Posts
August 12 2011 20:59 GMT
#296
You have to be kidding me, of course the only place I use my email password is GOMTV, I hope I'm not too late.
TOCHMY
Profile Blog Joined June 2010
Sweden1692 Posts
August 12 2011 20:59 GMT
#297
fuck hackers ffs i cant keep track on all my passwords ( some dipshit tried to login to my facebook from japan.
Yoona <3 ¯\_(ツ)_/¯ Look! It's Totoro! ☉.☉☂
ma70
Profile Joined October 2010
253 Posts
August 12 2011 21:04 GMT
#298
Thank you for posting this. I immediately changed my GOMTV.net/Email/Paypal password to different things....
Soulish
Profile Joined April 2010
Canada1403 Posts
August 12 2011 21:05 GMT
#299
On August 13 2011 03:18 radim wrote:
Show nested quote +
On August 13 2011 03:14 R1CH wrote:
...the passwords as they were stored in plain text...

are you serious? oh my god :x

Being stored in plain text doesn't mean they arent encrypted
me all in, he drone drone drone, me win
nOondn
Profile Joined March 2011
564 Posts
August 12 2011 21:05 GMT
#300
OMG GOM .... so careless, they are not professional in business
Mid Master Terran @ kr server fighting !!!
Prev 1 13 14 15 16 17 44 Next All
Please log in or register to reply.
Live Events Refresh
OSC
22:30
OSC Elite Rising Star #19
Liquipedia
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
RuFF_SC2 176
ProTech89
FoxeR 81
Nina 61
StarCraft: Brood War
Sea 3708
GuemChi 3140
Rain 2966
Tasteless 161
Aegong 87
Mind 59
ZergMaN 32
Bale 24
Noble 16
Icarus 9
[ Show more ]
JulyZerg 9
Nal_rA 5
Dota 2
NeuroSwarm156
League of Legends
JimRising 766
Other Games
summit1g8260
C9.Mang0533
WinterStarcraft433
ViBE68
Organizations
Other Games
BasetradeTV198
StarCraft 2
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
[ Show 12 non-featured ]
StarCraft 2
• practicex 29
• AfreecaTV YouTube
• intothetv
• Kozan
• IndyKCrew
• LaughNgamezSOOP
• Migwel
• sooper7s
StarCraft: Brood War
• BSLYoutube
• STPLYoutube
• ZZZeroYoutube
League of Legends
• Lourlo1214
Upcoming Events
OSC
7h 48m
Maestros of the Game
8h 48m
Classic vs Maru
Serral vs herO
TBD vs Clem
Replay Cast
18h 48m
CranKy Ducklings
1d 4h
uThermal 2v2 Circuit
1d 9h
BSL22 NKC (BSL vs China)
1d 13h
eOnzErG vs Mihu
Messiah vs XuanXuan
Jaystar vs TerrOr
Dewalt vs Bonyth
eOnzErG vs XuanXuan
Mihu vs TerrOr
Messiah vs Bonyth
Sparkling Tuna Cup
2 days
uThermal 2v2 Circuit
2 days
BSL22 NKC (BSL vs China)
2 days
Jaystar vs Dewalt
eOnzErG vs TerrOr
XuanXuan vs Bonyth
Mihu vs Dewalt
Messiah vs Jaystar
eOnzErG vs Bonyth
TerrOr vs Dewalt
OSC
2 days
[ Show More ]
Wardi Open
3 days
Replay Cast
5 days
The PondCast
6 days
Replay Cast
6 days
Liquipedia Results

Completed

BSL Season 22
2026 GSL S2
Heroes Pulsing #1

Ongoing

IPSL Spring 2026
KCM Race Survival 2026 Season 2
Acropolis #4
CSCL: Masked Kings S4
YSL S3
Acropolis #4 - GSB
SCTL 2026 Spring
WardiTV Spring 2026
Maestros of the Game 2
uThermal 2v2 2026 Main Event
Murky Cup 2026
Heroes Pulsing #2
IEM Cologne Major 2026
Stake Ranked Episode 2
CS Asia Championships 2026
Asian Champions League 2026
IEM Atlanta 2026
PGL Astana 2026
BLAST Rivals Spring 2026
IEM Rio 2026
PGL Bucharest 2026
Stake Ranked Episode 1

Upcoming

BSL 22 Non-Korean Championship
CSLAN 4
Blizzard Classic Cup 2026
Kung Fu Cup 2026 Grand Finals
CranK Gathers Season 4: BW vs SC2 Team League
HSC XXIX
Douyu Cup 2026
Heroes Pulsing #3
Esports World Cup 2026
BLAST Bounty Summer 2026
BLAST Bounty Summer Qual
Stake Ranked Episode 3
XSE Pro League 2026
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2026 TLnet. All Rights Reserved.