14
posted ago by ghost_of_aswartz ago by ghost_of_aswartz +14 / -0

Gab Hacked; Group Promises ‘Gold Mine’ Of Info On ‘Militias, Neo-Nazis, QAnon’ // Alex Jones among those targeted by “mentally ill tranny demon hackers”


Gab Hacked; Group Promises "Gold Mine" Of Info On "Militias, Neo-Nazis, QAnon"


“Mentally ill tr**ny demon hackers” blamed for massive data leak at far right site Gab // CEO Andrew Torba has a really strange explanation for the leak of his users' data


Discussion

It's looking more and more like these patriot oriented websites are honeypots or just waiting to be compromised.

Parler.com destroyed itself after being monkeyhammered by the entire corporate internet service industry that has gone woke.

Gab claimed to have its own architecture, and remained open....how convenient! After parler, people were forced onto GAB and then a few weeks later their database is......taken!

It's just a matter of time before THIS WEBSITE (and greatawakening, conspiracies) Databases are taken also.

How do you mitigate this?

Well you can remove your email address from the account, but if a MITM attack is able to hijack your password and bust thru the SSL of it (easy to do--it's worthless now), then boom, they go in, change your password and then you can no longer recover your account...it's GONE

They've done this to me before. ON REDDIT, on FACEBOOK, and on NETFLIX

It happens routinely on NETFLIX. Netflix acknowledges that something strange happened, and either this was something done by NETFLIX staff on purpose as a political thing (reprisal), or they don't want to admit their site has been compromised. They assured me it was NOT an official password change by NETFLIX

This was a MITM attack. I use a VPN. I see attacks on my VPN every single day. I wrote a bash script that routinely reconnects to totally random VPN servers on the list in order to Foil them

My government doesn't even understand how to address these problems so they are not in any way capable of protecting me.

Chris Krebs the fired and disgraced DHS Cyber security and infrastructure administration chief was more interested in creating propaganda that justified their authority and justified the inadequate and illegal and unethical activity of the US GOVERNMENT rather than protecting its' citizens from shit like this that I experience every day. That's why I'm glad his ass is on CNN now. He's a faggot and a disgrace. And by faggot I'm not saying he's a homosexual because we love our homosexual patriot brothers and sisters, but rather, he's an evil actual demonic piece of shit human being. All of CISA is faggots, actually.

We are going to have to learn how to do security so much better and faster, because they've used an astronomical amount of US tax dollars to attack us. We've funded our own demise. Time to get smarter faster.

I'm not a cybersecurity expert but I am a coder and I've had to do code security audits and such and I am a mostly competent linux systems adminstrator since I use it for my own systems and servers. Here are my recommendations, and they are fairly easy to use and all open source / free.

  • PI HOLE --> turn a raspberry pi into an Ad-tracking firewall / ad garbage disposal
  • Pfsense --> strong firewall
  • IPFire --> another strong firewall -- you can install these firewall distributions on inexpensive single use computers
  • Store your user files separate from OS on another drive, so you can nuke your OS in an hour and nothing is lost. Even better if you have an external SSD on a power switch so you can just turn the power off when you're not using it so it's effectively airgapped user files.
  • QUBES --> should be your main linux operating system. It's a unique and novel approach at security that is absolutely compelling (lightweight xen vm instances to run all parts of the OS within their own isolated compartments)
  • Kodachi linux --> ultrasecure linux. Highly recommended! Works well as a VM.
  • Mint / Ubuntu / MX linux --> another option but not as secure as Qubes, easy beginner linux to use
  • Manjaro / Arch --> more advanced, more secure
  • Kali Linux --> for security testing your system, hacking
  • VERACRYPT --> you should be using this to keep your sensitive user files encrypted. Your tax documents, your passwords, your receipts, your artwork, your writings, you blueprints, your diary, your family documents, etc. Learn how to use a hidden veracrypt volume for deniability.
  • Privacy respecting VPNs. I recommend expressvpn and like the speed of it
  • Privacy respecting email systems. I use protonmail but I'm sure there's something better
  • Privacy respecting browsers. Right now I'm using GAB dissenter. I expect that all browsers will betray me. I've had to lock down this browser quite a lot by turning stuff off in chrome://flags (dissenter://flags/ brave://flags), specifically anything talking back to 'a server' or anything that lets the browser turn on my usb / bluetooth, other devices it has no business accessing. These things are on by default.
  • Use Virtual Machines running KODACHI or TAILS in order to access sensitive data that you don't want the Deepstate knowing you're accessing or downloading (VPN->VM->KODACHI->TOR BROWSER) It will be slow as hell. It's going thru 2 vpns and tor.
  • Router that has a stateful firewall. Possibly a commercial router with a third party firmware like dd-wrt or something similar and newer / better maybe. or just a decent router with defaults with a strong firewall in front of it (see above)

Also

  • All these "NEW" Things that people run to when they are deplatformed...THEY ARE HONEYPOTS. All of them
  • Telegram = Honeypot
  • Signal = Honeypot
  • MeWe = Honeypot
  • On a long enough timeline, the deepstate will steal the databases of these reich-wing websites and will be able to use this data to map out the users, so everything is a honeypot

You should be concerned then, with security, once your privacy is compromised.

If you don't ever give out your information, then it's much harder for your privacy / security to be compromised

Therefore it may be the case we should be developing websites that are much more like 4CHAN / 8CHAN than like THIS WEBSITE, a reddit clone linksharing site

I know you love it

I do too

But this is war. And until we win back our country and our way of life, we will have to fight them in a smarter way.

Remember, if we go HIGH security, and they keep trying to break it, then they're going to be breaking security for the LEFT ALSO

No one will have it

At least we'll be better equipped

What do THEY have? They all have apple devices. This means that once you compromise apple, you have every person on the left. ALL OF THEM

So reich wing hackers should be attacking APPLE now

I am not recommending or encouraging / endorsing any un-lawful activity. I don't like hackers and hacking. People should respect each other and leave each other alone.

But they won't.

So this is why I'm posting this to help you out.

Comments (4)
sorted by:
3
marishiten 3 points ago +3 / -0

You're basing this information off an article that gives no evidence that they actually parsed the whole site.

Torba himself came out and say there was a breach, but they patched it out, and that if they snaked anything, it'd be public posts, SOME group posts, a small amount of DM's, and hashed passwords.

Notice the keyword? HASHED PASSWORDS. Hashed data doesn't mean shit unless you have the decryption key. Which they don't have.

So what do they have? public facing posts. Okay. You can see those without having an account anyway. So they don't have anything of value.

Super hack right there.

Script Kiddies playing at being activists and trying to be the next Anon.

0
magadommer 0 points ago +1 / -1

hashed passwords under 10 characters (even salted) can be cracked in minutes with rainbow tables.

2
marishiten 2 points ago +2 / -0

I'm so burnt out on people's stupid conspiracy theories.

Gab isn't a honeypot you fucking retard. You don't even know what that term means.

Stop using it since you can't grasp the concept.

Gab has it's own racks and it's on it's own software. The hackers exploited a SQL vuln. SQL isn't made by Gab. It's an open source database software. Almost EVERYONE uses SQL or MariaDB which is a derivative of SQL. Shit happens. Nothing is 100% secure. There will ALWAYS be exploits. It's just how it is. If you want something 100% secure, don't use electronics or the internet. There.

Just because they were attacked and nearly nothing of sensitive value was copied, it's not much to be concerned about.

They patched that exploit out with a quickness where it takes other companies weeks to do it.

People like you are NEVER satisfied with ANYTHING and you think EVERYTHING is some super secret slight against you. It's not. Not everything is a CIA coverup or plant to get you to do something incriminating. Not everyone is against you. Sometimes, people tell the truth and can be taken at face value.

SSL 256bit is NOT easy to bust through. What are you talking about?

Oh. You're a script kiddie that can write a 10 line bash script. You ARE an idiot, then that doesn't grasp any of this.

Nevermind. I'm not going waste my time picking the rest of your post apart.

1
throwaway777 1 point ago +1 / -0

Now realize every time we do "Two Factor Authentication" even with your VPN, and other privacy measures, conveniently links your online anonymous account to your cell phone, location etc...