FYI!!! In case you start getting re-directed to porn sites.

Maybe the admin got hacked?


edit: lemmy.blahaj.zone has also been hacked. beehaw.org is also down, possibly intentionally by their admins until the issue is fixed.

Post discussing the point of vulnerability: https://lemmy.ml/post/1896249

Github Issue created here: https://github.com/LemmyNet/lemmy-ui/issues/1895

You are viewing a single thread.
View all comments
37 points
*

lemmy.blahaj.zone got hacked too, looks like the same people

https://lemmywinks.xyz/post/320087

permalink
report
reply
29 points

They also changed the allowed/blocked instances to allow threads.net and defederate lemmy.ml, just like they did on lemmy.world: https://lemmy.blahaj.zone/instances

permalink
report
parent
reply
20 points

Huh… so this probably is more sophisticated than a single acct breach then. Lovely.

permalink
report
parent
reply
17 points

Yeah, I’d recommend any server admin that doesn’t have 2FA turn it on ASAP until we know what their exploiting

permalink
report
parent
reply
11 points

Looks like the accounts were compromised by stealing their cookie - something 2FA can’t stop.

Still should have it on, though.

permalink
report
parent
reply
8 points

blahaj admins are aware and have the site down with a splash screen now

permalink
report
parent
reply
6 points
*
6 points

Yup they must of just put that up after I posted and @ the admins

permalink
report
parent
reply

Fediverse

!fediverse@lemmy.ml

Create post

A community dedicated to fediverse news and discussion.

Fediverse is a portmanteau of “federation” and “universe”.

Getting started on Fediverse;

Community stats

  • 440

    Monthly active users

  • 966

    Posts

  • 14K

    Comments