so is it safe to login now to change password?
Chat CIMB kena hack?
Chat CIMB kena hack?
|
|
Dec 17 2018, 12:37 AM
Show posts by this member only | IPv6 | Post
#141
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
7,617 posts Joined: Mar 2009 |
so is it safe to login now to change password?
|
|
|
|
|
|
Dec 17 2018, 12:37 AM
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
5,363 posts Joined: Apr 2005 From: กรุงเทพมหานคร BKK |
|
|
|
Dec 17 2018, 12:37 AM
|
![]() ![]()
Junior Member
51 posts Joined: Dec 2015 |
|
|
|
Dec 17 2018, 12:37 AM
Show posts by this member only | IPv6 | Post
#144
|
![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
1,191 posts Joined: Nov 2004 From: Ipoh, now PJ |
probably hashing problem. causing abnormally frequent collision.
This post has been edited by victor_hoh: Dec 17 2018, 12:38 AM |
|
|
Dec 17 2018, 12:37 AM
|
![]() ![]()
Junior Member
94 posts Joined: Jul 2012 From: Batcave |
My sis baru kena semalam. Demn
|
|
|
Dec 17 2018, 12:38 AM
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,175 posts Joined: Mar 2016 |
|
|
|
|
|
|
Dec 17 2018, 12:38 AM
Show posts by this member only | IPv6 | Post
#147
|
![]() ![]() ![]() ![]() ![]()
Senior Member
856 posts Joined: Sep 2004 From: Aurora |
QUOTE(maxera @ Dec 17 2018, 12:36 AM) Actually you need to enter your password and then enter any alphabets and numbers after your password. You can login as usual. That's fcked up. That means you still need to know the password, right? The captcha might help from brute force attack though. Damn, what's really going on |
|
|
Dec 17 2018, 12:39 AM
Show posts by this member only | IPv6 | Post
#148
|
![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
1,244 posts Joined: Jul 2005 |
|
|
|
Dec 17 2018, 12:39 AM
|
![]() ![]() ![]()
Junior Member
397 posts Joined: Oct 2007 From: broken heart land, single forever~ |
They should just shut the server down as it affected too many user.
This post has been edited by stupiak07: Dec 17 2018, 12:40 AM |
|
|
Dec 17 2018, 12:40 AM
|
![]() ![]() ![]() ![]()
Senior Member
545 posts Joined: Mar 2006 From: The Weirdo River O_o |
not going to share the video for the obvious reason. later all /k use that method to go attack pula hahahahhahah ~ wait la, i'm sure your whatsapp will ring later.
|
|
|
Dec 17 2018, 12:40 AM
Show posts by this member only | IPv6 | Post
#151
|
![]() ![]()
Junior Member
164 posts Joined: Mar 2007 |
|
|
|
Dec 17 2018, 12:41 AM
Show posts by this member only | IPv6 | Post
#152
|
![]() ![]()
Junior Member
164 posts Joined: Mar 2007 |
|
|
|
Dec 17 2018, 12:41 AM
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
3,968 posts Joined: Sep 2012 |
Removed
This post has been edited by briantwj: Dec 17 2018, 12:43 AM |
|
|
|
|
|
Dec 17 2018, 12:41 AM
|
![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
1,116 posts Joined: Dec 2009 |
![]() dah kantoi since morning |
|
|
Dec 17 2018, 12:42 AM
|
![]() ![]() ![]()
Junior Member
321 posts Joined: Jun 2016 |
|
|
|
Dec 17 2018, 12:42 AM
|
![]() ![]()
Junior Member
156 posts Joined: Apr 2009 |
QUOTE(jimmyktp @ Dec 16 2018, 11:12 PM) It is super easy. So much work. SMS can be redirected to another number. No need IC, no need Sim Card with target number. No need visit Police or telco, just sit at home. Just redirect all the bank sms to a hacker controlled number. Old vulnerability is old, please get educated dear Malaysians, and tell your banks, No more sms based authentication. Bank Negara should step in and fine or revoke licenses of banks that do not protect their customers money adequately.Coupled with installing Cerberus app on an unsuspecting phone, I can even read or send sms from my computer/phone Note: Cerberus is a legitimate app but could be easily misused. Let's take this as a scenario: 1. You went overseas for holiday bringing your phone with you. Someone knew you are not in the country. 2. Scammer goes to police station and make a report saying lost IC (pretending as you). 3. Using the police report, goes to make a temporary IC. 4. Using temp IC and police report, makes a report with telco to get them reissued a replacement sim card. 5. You realised your phone cannot use while you were in overseas. You didn't bother because you think you will sort it out when u come home. 6. Scammer can get banks to reissue a new CC, or if they already have your username and password, you GG because now any new sms from banks to you will be sent to the replacement sim card which is being held by the scammer. 7. See how powerful if someone gets your Phone Number?? A chain is only as strong as the weakest link. The phone number is the weakest link! *Happened to my friend's dad* A big foreign bank in Malaysia who is famous with issuing CCs wanted to sue my friend's dad* The suit was thrown out eventually. Start here: https://arstechnica.com/information-technol...uting-protocol/ and then look up more on SS7 and SMS and how it all works. Then you will understand, no more SMS please. This post has been edited by thewan: Dec 17 2018, 12:43 AM |
|
|
Dec 17 2018, 12:42 AM
|
![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
1,192 posts Joined: Jan 2003 From: Kepong, Kuala Lumpur, Malaysia. |
|
|
|
Dec 17 2018, 12:43 AM
Show posts by this member only | IPv6 | Post
#158
|
![]()
Newbie
4 posts Joined: May 2018 |
|
|
|
Dec 17 2018, 12:43 AM
Show posts by this member only | IPv6 | Post
#159
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
9,796 posts Joined: Jun 2008 From: Rubber Duck Pond |
|
|
|
Dec 17 2018, 12:44 AM
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
5,363 posts Joined: Apr 2005 From: กรุงเทพมหานคร BKK |
Fark.. This is legit..
fark im changing my pw now. |
| Change to: | 0.0234sec
0.66
6 queries
GZIP Disabled
Time is now: 12th December 2025 - 09:25 AM |