Page 1 of 2 12 LastLast
Results 1 to 20 of 31
  1. #1
    Impounded 86 IROC-Z's Avatar
    Join Date
    Aug 2005
    Location
    .
    Age
    35
    Posts
    11,676

    Everything fiberglass
    2005 Amberlamps

    Exclamation ITT: I show you how to protect yourself on the net

    So I was a bit drunk last night and was looking for something to do. My curiosity lead me to do some less-than-ethical activities, however, it showed me how FaceBook and lax security measures make us so vulnerable to identity theft and personal attacks, etc. First I'll tell you what I did, and then I'll tell you how to protect yourself against these sorts of things.


    I logged into my FaceBook account, and went to my friends list, which contains a few hundred people. I started collecting email addresses that were listed on the profiles of people I'm friends with. Some profiles listed none, some one, and others a handful.

    After getting a good amount of email addresses, I started looking in to how they help you if you've forgotten your password.

    Student email accounts from different universities had a high level of security, requiring all of the following to reset a password: Full name, DoB, SSN, UID, and other things that weren't readily available.

    Free accounts, however, are much more lenient account retrieval measures.

    Gmail requires the account be idle (not logged into) for 24hrs, after which point it only asks a single security question which must be answered, at which point full access is given to the account, including the ability to change the password without know the old one.

    Yahoo mail requires two security questions to be answered before access is given to the account, again, after which the password is changed with out the need to enter the old one.


    First one I tried was a Gmail account. I clicked "can't access account", put in the gmail address, and it asked me the security question: "What is your favorite color?" I go back to the facebook account of the gmail account owner, and somewhere in the "about me" section was a single color among the other things about the person. So I type in that color, and it asks me to change the password, and then gives me full access to the gmail account.

    bertstare.jpg

    Second one I tried was a Yahoo account. First security question: "What is your middle name?" Didn't even have to look hard for that one. It WAS IN THE EMAIL ADDRESS ITSELF. Second security question: "What sorority are you in?" That took all of 10 seconds glancing at the persons FaceBook profile. Access granted, please change password, full access to account.

    notsureifsrs.jpg

    Third one I tried was also a Yahoo account. First security question: "What is the name of your oldest neice?" Browsing though some facebook photos of the person, one had the caption "Me and my neice [name]!! isn't she adorable!". So I put that name in, turns out she is the oldest. Second security question: "What was the make of your first car?" Look in the persons facebook albums, one is titled "My first car!", turned out to be a Mercedes. Typed that in, prompted me to change the password, and let me in.

    isthisreallife?.jpg


    You guys might be saying, "well whatever, I don't use my email for anything important, blah blah blah."

    These questions are uncomfortably similar to security questions asked by banking and credit websites and other important online account. What would you do if one of those was compromised?

    If you want to protect yourself, take a second look at all of the security questions across all of your online accounts. Most of the preloaded questions are bullshit, so if you have the chance to write your own question, DO IT! and ask something that ONLY YOU KNOW.

    Next, take a look at your facebook profile. Best option? Deactivate/Delete it. However I know most people don't want to do that.

    Just being "Friends only" isn't enough, as I've just shown, because that friend of that girl you talked with for 2 minutes at that party three years ago that you friend requested now has full view of your "friends only" account.

    Ways to protect yourself on facebook:
    Don't accept friend requests from people you haven't met in real life.
    Become "facebook friends" with only actual friends.
    Remove the following information from your profile:
    -Date of birth (at the very least, the year)
    -Hometown/Place of birth
    -Links to Relatives (Important: if your mother is listed as your relative, and is divorced from your father, she is probably using her maiden name now, which is the most common security question for banking websites)
    -All contact information (emails, phone, addresses, etc)
    -Certain interests (If one of your security questions is "What is your favorite TV show", don't list that TV show anywhere in the "favorite tv shows" section of your profile, herp derp)

    I hope you guys follow this advice because it's a scary world out there, and it's easier than ever to get information about anyone.
    Last edited by 86 IROC-Z; 07-24-2010 at 01:33 PM.

  2. #2
    lmpounded SandmanWs7's Avatar
    Join Date
    Jan 2006
    Location
    Dallas, Texas
    Posts
    8,030

    Silver
    2007 CTS-V

    I dont like your avatar......anymore

  3. #3
    Senior Member SeVeReDiStOrTiOn's Avatar
    Join Date
    Aug 2005
    Location
    Roseville, CA
    Posts
    8,164

    05 Wrangler
    00 Z28 sold :-(

    good info

  4. #4
    Never Drink and Derive Tonik's Avatar
    Join Date
    Jan 2006
    Location
    Texas
    Age
    36
    Posts
    1,018

    Black
    '99 SS

    Your definition of drunk:


    My definition of drunk:

  5. #5
    Member
    Join Date
    Apr 2008
    Location
    arizona
    Age
    39
    Posts
    178
    2004,2008 triumph 675 SE

    Quote Originally Posted by SandmanWs7 View Post
    I dont like your avatar......anymore

    Im with this guy. But thanks for the good info.

  6. #6
    rice,its what's fo dinner LeadFarmer's Avatar
    Join Date
    Jan 2010
    Location
    Arlington,Texas
    Age
    33
    Posts
    815

    Silver/Black
    00' z28-R.I.P 00' WS6 M6

    Quote Originally Posted by SandmanWs7 View Post
    I dont like your avatar......anymore
    really? I quite like it

  7. #7
    What I do? SHines-IT's Avatar
    Join Date
    Jun 2009
    Location
    FL, USA
    Age
    33
    Posts
    1,545
    2011 Prius

    I like my avatar.

  8. #8
    Never Drink and Derive Tonik's Avatar
    Join Date
    Jan 2006
    Location
    Texas
    Age
    36
    Posts
    1,018

    Black
    '99 SS

    I've had my avatar for a long time... I should change it...

    (IROC's thread got derailed, hardcore)

  9. #9
    Senior Member Nhra Firebird's Avatar
    Join Date
    Jul 2005
    Location
    southern pa
    Posts
    3,517
    My Avatar fits me well.

  10. #10
    What I do? SHines-IT's Avatar
    Join Date
    Jun 2009
    Location
    FL, USA
    Age
    33
    Posts
    1,545
    2011 Prius

    Quote Originally Posted by Nhra Firebird View Post
    My Avatar fits me well.

  11. #11
    Veteran pajeff02's Avatar
    Join Date
    Feb 2009
    Location
    Mansfield, PA
    Posts
    22,146

    Black & Blue
    '02 WS.6 / '07 Suburban

    Quote Originally Posted by Nhra Firebird View Post
    My Avatar fits me well.

    Didn't know you were related to the Wallendas.

  12. #12
    Yeah baby! Yeah! silverWS6's Avatar
    Join Date
    May 2009
    Location
    okc
    Posts
    2,567

    Silver 2002 WS.6
    Red 1989 Formula

    I miss my old avatar

  13. #13
    Impounded 86 IROC-Z's Avatar
    Join Date
    Aug 2005
    Location
    .
    Age
    35
    Posts
    11,676

    Everything fiberglass
    2005 Amberlamps

    I like to imagine my avatar reflects the expression on the faces of people who read my posts.

  14. #14
    I don't sell out! blackSS01's Avatar
    Join Date
    Jul 2005
    Location
    Wisconsin
    Posts
    5,558

    Black
    2001 Camaro SS M6

    I tried this with about 10 friends and couldn't get into one of them Guess my friends are a little bit better secured then I thought Granted I could ask the question to them and hit them up months later when the least expect it. Thanks tho IROC, I'll double check my shit
    ┌∩┐(◕_◕)┌∩┐

    Man: The Mods you are fighting,
    they are the biggest Men I have ever seen. I
    wouldn't want to fight them!

    Me: That is why no one will remember your name!

  15. #15
    Wait.........WHAT??!! LoneGunman's Avatar
    Join Date
    Jun 2006
    Location
    Central PA
    Posts
    146

    Hugger Orange
    '99 Camaro Z28

    Quote Originally Posted by 86 IROC-Z View Post
    So I was a bit drunk last night and was looking for something to do. My curiosity lead me to do some less-than-ethical activities, however, it showed me how FaceBook and lax security measures make us so vulnerable to identity theft and personal attacks, etc. First I'll tell you what I did, and then I'll tell you how to protect yourself against these sorts of things.


    I logged into my FaceBook account, and went to my friends list, which contains a few hundred people. I started collecting email addresses that were listed on the profiles of people I'm friends with. Some profiles listed none, some one, and others a handful.

    After getting a good amount of email addresses, I started looking in to how they help you if you've forgotten your password.

    Student email accounts from different universities had a high level of security, requiring all of the following to reset a password: Full name, DoB, SSN, UID, and other things that weren't readily available.

    Free accounts, however, are much more lenient account retrieval measures.

    Gmail requires the account be idle (not logged into) for 24hrs, after which point it only asks a single security question which must be answered, at which point full access is given to the account, including the ability to change the password without know the old one.

    Yahoo mail requires two security questions to be answered before access is given to the account, again, after which the password is changed with out the need to enter the old one.


    First one I tried was a Gmail account. I clicked "can't access account", put in the gmail address, and it asked me the security question: "What is your favorite color?" I go back to the facebook account of the gmail account owner, and somewhere in the "about me" section was a single color among the other things about the person. So I type in that color, and it asks me to change the password, and then gives me full access to the gmail account.

    bertstare.jpg

    Second one I tried was a Yahoo account. First security question: "What is your middle name?" Didn't even have to look hard for that one. It WAS IN THE EMAIL ADDRESS ITSELF. Second security question: "What sorority are you in?" That took all of 10 seconds glancing at the persons FaceBook profile. Access granted, please change password, full access to account.

    notsureifsrs.jpg

    Third one I tried was also a Yahoo account. First security question: "What is the name of your oldest neice?" Browsing though some facebook photos of the person, one had the caption "Me and my neice [name]!! isn't she adorable!". So I put that name in, turns out she is the oldest. Second security question: "What was the make of your first car?" Look in the persons facebook albums, one is titled "My first car!", turned out to be a Mercedes. Typed that in, prompted me to change the password, and let me in.

    isthisreallife?.jpg


    You guys might be saying, "well whatever, I don't use my email for anything important, blah blah blah."

    These questions are uncomfortably similar to security questions asked by banking and credit websites and other important online account. What would you do if one of those was compromised?

    If you want to protect yourself, take a second look at all of the security questions across all of your online accounts. Most of the preloaded questions are bullshit, so if you have the chance to write your own question, DO IT! and ask something that ONLY YOU KNOW.

    Next, take a look at your facebook profile. Best option? Deactivate/Delete it. However I know most people don't want to do that.

    Just being "Friends only" isn't enough, as I've just shown, because that friend of that girl you talked with for 2 minutes at that party three years ago that you friend requested now has full view of your "friends only" account.

    Ways to protect yourself on facebook:
    Don't accept friend requests from people you haven't met in real life.
    Become "facebook friends" with only actual friends.
    Remove the following information from your profile:
    -Date of birth (at the very least, the year)
    -Hometown/Place of birth
    -Links to Relatives (Important: if your mother is listed as your relative, and is divorced from your father, she is probably using her maiden name now, which is the most common security question for banking websites)
    -All contact information (emails, phone, addresses, etc)
    -Certain interests (If one of your security questions is "What is your favorite TV show", don't list that TV show anywhere in the "favorite tv shows" section of your profile, herp derp)

    I hope you guys follow this advice because it's a scary world out there, and it's easier than ever to get information about anyone.
    Dude, you SERIOUSLY need to get a fuckin' life!! I mean, hacking people's email accounts just to see if it can be done??

  16. #16
    Impounded 86 IROC-Z's Avatar
    Join Date
    Aug 2005
    Location
    .
    Age
    35
    Posts
    11,676

    Everything fiberglass
    2005 Amberlamps

    Quote Originally Posted by LoneGunman View Post
    Dude, you SERIOUSLY need to get a fuckin' life!! I mean, hacking people's email accounts just to see if it can be done??
    life? wut dat is


    Also I dislike using the term hacking for this sort of thing. 'hacking' to me denotes something that requires skill. A 12 year old could do what I did.

  17. #17
    Wait.........WHAT??!! LoneGunman's Avatar
    Join Date
    Jun 2006
    Location
    Central PA
    Posts
    146

    Hugger Orange
    '99 Camaro Z28

    Quote Originally Posted by 86 IROC-Z View Post
    life? wut dat is


    Also I dislike using the term hacking for this sort of thing. 'hacking' to me denotes something that requires skill. A 12 year old could do what I did.
    Ok, maybe "skill" is'nt your thing. But it does require a thought process that most 12 year olds don't posess, they are too busy trolling around on 4chan and chatroulette. But a 40 year old "Dateline Perv" would definitely appreciate your well thought out blueprint of how to attain info on people

  18. #18
    Impounded 86 IROC-Z's Avatar
    Join Date
    Aug 2005
    Location
    .
    Age
    35
    Posts
    11,676

    Everything fiberglass
    2005 Amberlamps

    Quote Originally Posted by LoneGunman View Post
    they are too busy trolling around on 4chan and chatroulette.
    Hey, I'm not 12...
    Quote Originally Posted by LoneGunman View Post
    But a 40 year old "Dateline Perv" would definitely appreciate your well thought out blueprint of how to attain info on people
    You really think predators are going to bother snooping through peoples email? Their targets aren't intelligent, no need for extensive cyber forensics, just pick up a value-size bag of candy and wait at a bus stop.

    Oops, I guess I shouldn't have said that, since I'm giving criminals instructions on how to perform their trade.

  19. #19
    Wait.........WHAT??!! LoneGunman's Avatar
    Join Date
    Jun 2006
    Location
    Central PA
    Posts
    146

    Hugger Orange
    '99 Camaro Z28

    Predators are freaks! They think up all sorts of ways to get at people. Speaking of chatroulette, ever notice how many fat hairy guys are jerking off? Who do you think they are?

  20. #20
    Slow'er'Ass Mr. Luos's Avatar
    Join Date
    Aug 2005
    Location
    Thornton, CO
    Posts
    23,773

    Red Tint Jewelcoat
    2008 Trailblazer SS

    WTF is an avatar?

Page 1 of 2 12 LastLast

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Moochelle: "Chip in $10 or more to protect Obamacare"
    By wileyCoyote in forum Political / Debate Forum
    Replies: 4
    Last Post: 01-28-2014, 05:53 PM
  2. Customize and Protect With Armor All Custom Shield Coating
    By Ed Blown Vert in forum Showcar and Detailing
    Replies: 5
    Last Post: 12-05-2013, 02:56 PM
  3. Mother shoots/kills home invader to protect baby
    By BdAsBrd01 in forum Almost Anything Goes
    Replies: 47
    Last Post: 01-19-2012, 04:58 AM
  4. divorce advice! How to protect myself financially!
    By RATCHETMASTER in forum Almost Anything Goes
    Replies: 65
    Last Post: 11-13-2008, 08:38 AM
  5. if you could only protect one which would it be?
    By 0rion in forum Almost Anything Goes
    Replies: 26
    Last Post: 11-02-2008, 08:33 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •