← Home ← Back to /g/

Thread 105581037

42 posts 18 images /g/
Anonymous No.105581037 [Report] >>105582963 >>105583016 >>105589284 >>105591931 >>105592201
why is it doooooown
Anonymous No.105582963 [Report] >>105583051
>>105581037 (OP)
Anonymous No.105583016 [Report] >>105583024 >>105583434 >>105587460 >>105587558 >>105592168 >>105593692 >>105594440
>>105581037 (OP)
>Yesterday, a threat actor claimed to have breached cock[.]li using the latest RCE vulnerability affecting RoundCube (which cock[.]li uses).

>The leak appears to be authentic, containing data on approximately 1,023,800 users (dating from 2016 to 2025) and around 93,000 contacts.

>The compromised data does not include passwords or plaintext emails, but it does contain names, email addresses, and login attempt timestamps.
https://x.com/ReyXBF/status/1933555211185819835
Anonymous No.105583024 [Report] >>105591602
>>105583016
Anonymous No.105583051 [Report] >>105594495
>>105582963
Damn. This is sad.
Anonymous No.105583434 [Report]
>>105583016
ah yeah, xss. Famous forums where skids can exchange their 'extraordinary' python scripts to hack the school wifi lol
Anonymous No.105583562 [Report] >>105583595
VINCEEEEEEEEEEEEEEEENT AAAAAAAAA
Anonymous No.105583595 [Report] >>105583642 >>105585179
>>105583562
>The new certificate was issued on April 16
>The warrent canary hasn't been updated since April 21 https://cock.li/canary.asc.txt
Vincent isn't here anymore, and the glowies couldn't be bothered to update the roundcube install
Anonymous No.105583642 [Report]
>>105583595
>there's a canary AFTER the renewed cert
Nothingburger, surely Vincent will post a new pgp signed message soon!
Anonymous No.105585179 [Report]
>>105583595
>Until further notice, THIS CANARY SHOULD BE UPDATED EVERY 72 HOURS. Under no
>circumstances should we let this canary go 96 hours without an update unless a
>PGP-signed message changes the schedule.
oh nyo
Anonymous No.105585232 [Report] >>105585280
>Written in: PHP
No one could have predicted this.
Anonymous No.105585280 [Report]
>>105585232
>The bug stems from unsanitized $_GET['_from'] input, enabling PHP object deserialization and session corruption when session keys begin with an exclamation mark.
>The flaw, which impacts Roundcube versions 1.1.0 through 1.6.10, spanning over a decade
>Shortly after the patch was released, hackers reverse-engineered it to develop a working exploit, which they sold on underground forums.
https://www.bleepingcomputer.com/news/security/over-84-000-roundcube-instances-vulnerable-to-actively-exploited-flaw/
Anonymous No.105587303 [Report]
>still down
owari da
Anonymous No.105587318 [Report] >>105587464 >>105588586
>no one on /g/ even cares anymore
what happened
Anonymous No.105587460 [Report]
>>105583016
lmao
Anonymous No.105587464 [Report]
>>105587318
friday
Anonymous No.105587558 [Report] >>105592181
>>105583016
How exactly do you expect someone to send you over $100k on a pinky promise you'll hand over a bunch of mostly useless metadata? Do these guys use escrow or something?
Anonymous No.105588475 [Report] >>105588586
Is Vincent kill? Why no tweet or blogpost
Anonymous No.105588586 [Report] >>105591444
>>105587318
>>105588475
cock.li has long been seized by the feds, vincent is no more
Anonymous No.105588966 [Report] >>105588977
What happened to piss mail?
Anonymous No.105588977 [Report] >>105589021
>>105588966
Nothing? Looks up to me
Anonymous No.105589021 [Report]
>>105588977
Hey it's working! I'll have to try it on my pc. It and cock wasn't working and I tried brave and chrome
Anonymous No.105589284 [Report] >>105589295
>>105581037 (OP)
Right after they returned the nigge.rs domain, lol. And get rekt, for anyone who uses a meme email service named cock.li seriously.
Anonymous No.105589295 [Report]
>>105589284
what are you using your 'serious' email for faggot receiving orders from your boss? end your life.
Anonymous No.105591444 [Report]
>>105588586
it's over
Anonymous No.105591602 [Report]
>>105583024
what is this cracking webforum
Anonymous No.105591931 [Report] >>105592022 >>105592514
>>105581037 (OP)
Why are you using this service without configuring a male client to fetch and send the emails? Are you people really using the web browser interface? It still works for me.
Anonymous No.105592022 [Report] >>105592047
>>105591931
airmail.cc isn't working for me, which domain is working for you
Anonymous No.105592047 [Report]
>>105592022
Airmail.cc
Anonymous No.105592168 [Report] >>105592368
>>105583016
Oh no no fellow users of an email address with cock in the name
Anonymous No.105592181 [Report]
>>105587558
Usually grey market brokers from what I understand. They're trusted enough by both sides and would lose all credibility otherwise
Anonymous No.105592201 [Report]
>>105581037 (OP)
@national.shitposting.agency
o7
Anonymous No.105592368 [Report]
>>105592168
You know they offer like 15 different domains right
Anonymous No.105592470 [Report] >>105593673
isn't this a honeypot?
Anonymous No.105592514 [Report]
>>105591931
can confirm my cockmail still works
Anonymous No.105593673 [Report]
>>105592470
All email is a honeypot. All email traffic goes through the Utah datacenter.
Anonymous No.105593692 [Report] >>105593764 >>105594540
>>105583016
>but it does contain names, email addresses, and login attempt timestamps
>34790234908723 failed login attempts for peepeepoopoo@nigge.rs
Anonymous No.105593764 [Report] >>105593771 >>105594540
>>105593692
>for that i ask between 1 BTC or 2 BTC, ok)))
>spasiba harasho
Anonymous No.105593771 [Report]
>>105593764
kek
Anonymous No.105594440 [Report]
>>105583016
no one is gonna pay 1 btc for that
Anonymous No.105594495 [Report]
>>105583051
are you stupid or retarded (or both)?
Anonymous No.105594540 [Report]
>>105593692
>>105593764
putinbros how do we recover