Postmortem Site compromised 10-Sep-2019

  • 🏰 The Fediverse is up. If you know, you know.
  • Want to keep track of this thread?
    Accounts can bookmark posts, watch threads for updates, and jump back to where you stopped reading.
    Create account
Status
Not open for further replies.
hello classmate kiwis
You guys who all open up your laptops to browse kiwi farms in a big row before class starts (and a few of you during class) all have guts of steel or brains of mud, I don't know which.
I knew shit was going down though when every third person in front of me in class Tuesday had their laptop out and was scrolling past posts with Null's avatar.
Is this normal or have I found myself in some kiwi nest by converging circumstances?

You know we got at least one Quinn praising troon back here right? Sitting right behind you? I know, because I've listened to their screeds before because they sit close to me, and sat next to me last semester until I figured out how to avoid it.
You don't have dim narrow range TN panels, and I can see your screen just fine. If you were sitting directly in front of me I even know your username 0_0.
I'm sure almost everyone else in the room can see the big kiwi farms logo on the top of the screen since you are all sitting at the front of the room... wait I just realized that I have no idea what was on the laptops behind me.
...with the concentration of kiwis in front of me, if I were extrapolating the data it would stand to reason there would be even more behind be considering I was sitting towards the front of the room!
That's a lot of kiwis unless something about us makes us prone to sitting in the front 1/3 of the room.

Not sure if you guys were aware of your brilliant screen clarity or the members of your audience, or are aware and are asserting dominance by not giving a fuck. I give at least a few of those and only tend to view the farms in public on my phone or if my laptop screen isn't facing anyone because I know about the reddit SRS and discord tranny defense nutters we have, and even if we didn't browsing forums like the farms where anyone could read behind you just seems... weird.

Am I just the only weirdo who glances at everyone's screens and this is a non-issue? That doesn't seem possible.
wtf classmate kiwis
some are farmers,
some are snitches,
some are rebels,
some are lost,
some are chanfans,
some are bitches,
some are whiney,
some are crossed.
Where you fit into this story, that has yet to be disclosed,
But the ones who sit behind you they DGAF: "you hosed".
 
I can't believe I missed out on all the fun and "kiwifarms is down sperging" since my router went bad. Looks like a nothing burger since nothing major was leaked.
 
I would like to state for the record that my recent absence from the site had nothing to do with hiring Ukrainian script kiddies to get blackmail info and entirely to do with traveling for work and leisure with friends and family. I am the only non-autistic on this site and my absence is not suspicious at all.
 
That fucking murderwhore Zoe Quinn virtually killed Dynastia who was one of my favorite Internet terroristic threat makers.

If we get rid of all the people who make well written terroristic threats on the Internet then, rather than getting well-written threats that make me smile I'll just have people barking at me like feral dogs.
 
Last edited:
Somehow I lost access to my account around the comprimise and cannot log back in. tried to DM mods but newfags are not allowed? if a mod could DM me I would appreciate that I do not have access to my e-mail associated with my account but I can verify the e-mail host and anything required to verify its my account.
 
There's a furry mob outside my door right now. They've been there for three days. They're wielding dragon dildos and are screaming for me to come out because "we just want to nuzzle you uwu". I've been able to remain alive thanks to my supply of orange Fanta and Doritos, but I don't know how much longer those will last. Send help.
I'm sending a drone with chicken tendies right now.
 
One thing that's interesting if you look at ipout.csv in the data dump is that the last three IP addresses are stored, at least for my account.

So that tells me if I connect to the site without a VPN all I need to do is to connect from three different VPN servers in succession to flush my real IP address out of the records.

Though actually ipout.csv is kind of weird because it's got what looks like MAC addresses or some other kind of identifier in it for some users.
 
One thing that's interesting if you look at ipout.csv in the data dump is that the last three IP addresses are stored, at least for my account.

So that tells me if I connect to the site without a VPN all I need to do is to connect from three different VPN servers in succession to flush my real IP address out of the records.

Though actually ipout.csv is kind of weird because it's got what looks like MAC addresses or some other kind of identifier in it for some users.
It's already been said but that's probably just IPv6.

edit: Having not looked at it myself, at least
 
It's already been said but that's probably just IPv6.

edit: Having not looked at it myself, at least

Hmm, I see what you mean. If you convert from the XX:XX:XX:XX:XX:XX:XX:XX in the log to XXXX:XXXX:XXXX:XXXX and look them up here you get sane results.

I also found this site which claims to tell you if an address is a VPN or not.

Incidentally, I can't help but wonder if Xenforo really needs to store IP addresses for a blacklist. Instead, it could hash them with a salt when it gets them. Then when it needed to see if an IP needs to be blacklisted it could just hash that with the same salt and do the comparison.

It would be like the old Unix password storage algorithm where you store a hash of the valid password and the salt used to hash it and then when someone logs on you hash what they enter and see if the two hashes match rather than storing the password in plain text.
 
Last edited:
Heh. I have an email that I created specifically for this forum, on cock.li. Looks like someone around 9-15 took the Kiwi Farms hack list and sold it to someone. Got two phishing attempts that week from Indians, or perhaps someone with brain trauma. It's hard to tell the difference.
Lists containing at least some of the emails have been posted on doxbin.org and pastebin.com.
 
Status
Not open for further replies.
Back
Top Bottom