← Home ← Back to /vip/

Thread 136030

66 posts 18 images /vip/
Anonymous No.136030 [Report] >>136037 >>136047 >>136048 >>136059 >>136103 >>136129 >>136148 >>136205 >>136241 >>136294 >>136414
>pay for 4chan pass
>can't use it for eleven (11) days

I demand reimbursement. At $30 per year, that works out to approximately $0.90 of money STOLEN from each of us.

You may expect a letter from my lawyer.
Anonymous No.136037 [Report]
>>136030 (OP)
Good man, biggest class action suit in internet history
Anonymous No.136043 [Report] >>136098 >>136121 >>136127 >>136128 >>136138 >>136144 >>136184 >>136294
I saw someone say they should extend everyone's pass for 11 days
Anonymous No.136044 [Report]
We need extensions of every pass
Anonymous No.136047 [Report]
>>136030 (OP)
Ima sugu! Give me my dollar back
Anonymous No.136048 [Report]
>>136030 (OP)
They do 100% need to extend our passes to make up for this. I don't care if someone has the hash for the email I used, but if I don't get my pass extended then I will never pay for another year.
Anonymous No.136055 [Report]
I should've bought some btc while it was at 70k for next year
Anonymous No.136056 [Report] >>136062
I would appreciate an extension seeing as they even made the passes MORE expensive and then that money proceeded to not go into upgrading the site until the inevitable finally happened.
Anonymous No.136059 [Report]
>>136030 (OP)
Exactly
Anonymous No.136061 [Report] >>136063 >>136081 >>136082 >>136086 >>136091 >>136108
Anyone else worried about their pass details being leaked by basedjak party?
Anonymous No.136062 [Report]
>>136056
I'm honestly not expecting shit. They've had days to post anything and there isn't even a news post after the site came back up. I'm not expecting a email sucking my dick or asking for forgiveness or anything, but any sort of public post beyond
>twitter
Would be nice
Anonymous No.136063 [Report] >>136065 >>136070
>>136061
The hacker said that there wasn't any payment information. Only hashes for the emails, not even the email addresses themselves. So it really isn't worth being concerned over.
Anonymous No.136065 [Report]
>>136063
>Only hashes for the emails, not even the email addresses themselves.
How does that work? They send out expiry emails long after a purchase. Are they pre-scheduled?
Anonymous No.136070 [Report] >>136073
>>136063
I thought he said that there was that data, he just didn't intend on leaking it.
Anonymous No.136071 [Report]
not to mention all my information was leaked
Anonymous No.136073 [Report] >>136074
>>136070
He did say he didn't intend to leak it, but he only had hashes, not the actual emails themselves.
Anonymous No.136074 [Report] >>136075 >>136076
>>136073
Are you sure you're not confusing the pass emails to the (15-minute timer) verification emails?
Anonymous No.136075 [Report] >>136076 >>136077
>>136074
I guess I could be wrong but I'm pretty sure I saw that he said he only got hashes for the pass user emails, not the actual emails.
Anonymous No.136076 [Report]
>>136074
>>136075
It would be nice if the mods clarified exactly what user information was compromised.
Anonymous No.136077 [Report] >>136079
>>136075
I saw him post that he didn't have the emails but I imagine it was because he didn't grab them and not because they weren't there.

The verification system hashes emails AFAIK.
Anonymous No.136079 [Report]
>>136077
That could be. I do think some clarity from mods would go a long way here.
Anonymous No.136081 [Report] >>136083
>>136061
what pass details are there to even leak?
just a serial number?
Anonymous No.136082 [Report] >>136084
>>136061
You mean my throwaway email address and equally meaningless bitcoin wallet that I only use to pay for passes? No, not really.
Anonymous No.136083 [Report]
>>136081
Email address.
Anonymous No.136084 [Report] >>136085
>>136082
The payments are done through Stripe, there's no way the hacker would have anyone's credit card info. People are asking about the emails linked to their passes. And it's probably not a huge deal anyway but it's still not a good look for the mods. The lack of communication about all of it was pretty terrible.
Anonymous No.136085 [Report]
>>136084
Anybody who is dumb enough to use a day to day email, let alone a work or college one on 4chan deserves what they get.
Anonymous No.136086 [Report] >>136087
>>136061
Even if it's leaked, what are they going to do with it? I'm an unemployed NEET
Anonymous No.136087 [Report] >>136088
>>136086
Well fortunately this time the hacker wasn't interested in leaking anything related to the users anyway. It would be nice to believe they've taken steps to ensure it can't happen again.
Anonymous No.136088 [Report]
>>136087
They have changed nothing except they now offer free passes as bounties for reporting security leaks
Anonymous No.136090 [Report]
I think it is only fair if we get an extension considering that they fucked up this bad on security by not updating things for a decade. Thankfully the sharty troon that did the hack didn’t release pass users info
Anonymous No.136091 [Report] >>136098
>>136061
It would be nice to hear from some 4chan authority on this desu, all we know is the hacker said that he didn't have access to that information. But that's his word, don't think we can trust him.
Anonymous No.136092 [Report]
>miss me yet?
Anonymous No.136098 [Report] >>136100 >>136107
>>136043
This is the common sense solution to the problem.

>>136091
That's the big issue because he still has the information, he just hasn't published it. Though if you practice basic OpSec, it shouldn't be an issue.
Anonymous No.136100 [Report]
>>136098
>That's the big issue because he still has the information
He has claimed to not have it, which would mean that he didn't grab it, he grabbed it and deleted it, or he still has it and is lying. And really only the last one of those options is provable.
Anonymous No.136103 [Report] >>136104 >>136105
>>136030 (OP)
When did they raise the price? I only noticed it after the site came back.
Anonymous No.136104 [Report]
>>136103
I think it was like August of last year.
Anonymous No.136105 [Report] >>136171
>>136103
February, iirc
Anonymous No.136107 [Report]
>>136098
Fuck that, 11 weeks and then we're talking. People died (probably) because of this downtime!
Anonymous No.136108 [Report] >>136109
>>136061
It's a good lesson to never use your personal address for this stuff. Hell, even if your deets did get leaked, they couldn't link you to any posts.
Anonymous No.136109 [Report] >>136132
>>136108
If they got a full database dump, they could link it to any posts that were still alive at the moment.
Anonymous No.136121 [Report]
>>136043
I remand 1 year extension.
Anonymous No.136127 [Report]
>>136043
They most likely won't do anything, I didn't pay for this year (I have no idea how I got a bonus year) so guess I'm not losing money over it.
Anonymous No.136128 [Report]
>>136043
actually didn't they do that once?
Anonymous No.136129 [Report]
>>136030 (OP)
>If enough people have a 4chan pass, we could buy a 4chan pads
Anonymous No.136132 [Report]
>>136109
>anon you've been posting touhou on every board, what do you have to say for yourself?
Anonymous No.136138 [Report]
>>136043
Yeah this please. It's only fair after all. Maybe we can send in feedback about it if they don't address it.
Anonymous No.136144 [Report]
>>136043
That would make sense, so it won't happen
Anonymous No.136148 [Report] >>136154 >>136224
>>136030 (OP)
I unironically have four active passes so they owe me $3.60.
Anonymous No.136154 [Report] >>136170
>>136148
Literally why
Anonymous No.136170 [Report]
>>136154
Ban evasion. Bans are tied to the Pass if you're using one, not the IP.
Anonymous No.136171 [Report]
>>136105
yeah feb was the deadline for the most recent increase
Anonymous No.136184 [Report]
>>136043
They'd better.
Anonymous No.136189 [Report] >>136190
Has anyone here looked at the codebase and confirmed that they hash the emails? Imagine getting fired from work for your 4chin posts
Anonymous No.136190 [Report] >>136191
>>136189
Only verification emails are hashed, pass emails are not. How would they resend you the pass details, expiration remainder etc. otherwise?
Anonymous No.136191 [Report] >>136192 >>136201
>>136190
it's ova for every pass user once 4chin inevitably gets hacked again i guess then
Anonymous No.136192 [Report]
>>136191
last time I checked you could use virtually any domain for the pass email, even the shittiest temporary ones so if you use email that can linked to your identity it's on you
Anonymous No.136201 [Report] >>136211
>>136191
I mean, the only thing that gets you is a list of email addresses. Might get picked up on a few spam mailing lists if you weren't already, but that's about it.
Anonymous No.136205 [Report]
>>136030 (OP)
Meh I don't care
Anonymous No.136206 [Report]
The other thing to consider is that they were in the process of migrating the data, but despite the number of passes sold over the years, they had only recently made the purchase of the new servers. Why didn't the move the critical stuff over first? We all would have accepted a couple of days of downtime vs. a week and a half.
Anonymous No.136211 [Report]
>>136201
and obviously if you dont have a 12345 password lol
Anonymous No.136224 [Report]
>>136148
>reddit frog
Anonymous No.136241 [Report]
>>136030 (OP)
STOP WHINING!
Anonymous No.136251 [Report]
I hope they use my 90¢ on hookers and blow
Anonymous No.136259 [Report]
The sensible thing would be to allow pass users to actually change the email address associated with their pass. It's a pretty common thing to want to do with any user accounts. However, considering the state of the codebase, I imagine this is not something you should look forwards to.
Anonymous No.136294 [Report]
>>136030 (OP)
come here to see if anyone brought up this issue
>>136043
is there a way to check?
Anonymous No.136414 [Report]
>>136030 (OP)
>At $30 per year
stopped reading. imagine paying more than 45 dollaridoos / 3 year