Author

Topic: Hacked account recovery (Read 1370 times)

legendary
Activity: 1789
Merit: 2535
Goonies never say die.
January 27, 2019, 01:16:36 PM
#46
Recovery worked, I got my account back, thanks everyone!

Now, I see that I have -2 trust, which was justified while it was under the control of the hacker(s), but can it be reset now? Or should I just contact the people that voted negatively?

Looks like an account recovery has happened according to seclog, I've removed my feedback.
jr. member
Activity: 34
Merit: 18
January 27, 2019, 06:58:28 AM
#45
Code:
January 18, 2019, 01:14:13 PM - theta - manual recovery, ownership change queued (completed)
January 25, 2019, 01:25:01 PM - theta - manual recovery, previously-queued ownership change completed
Today at 10:10:00 AM - theta - password reset via email
Today at 10:10:16 AM - theta - woke up
Congratulations mate, the recovery speed was quite impressive.

should I just contact the people that voted negatively?
Yep, just contact them to remove the negative tags
full member
Activity: 164
Merit: 100
January 27, 2019, 05:37:20 AM
#44
Recovery worked, I got my account back, thanks everyone!

Now, I see that I have -2 trust, which was justified while it was under the control of the hacker(s), but can it be reset now? Or should I just contact the people that voted negatively?

newbie
Activity: 21
Merit: 0
January 02, 2019, 09:14:22 AM
#43
jr. member
Activity: 55
Merit: 15
newbie
Activity: 21
Merit: 0
December 16, 2018, 02:59:29 PM
#41
bump
newbie
Activity: 21
Merit: 0
December 02, 2018, 09:29:46 AM
#40
One more nudge. More than a year has passed now.
jr. member
Activity: 55
Merit: 15
November 01, 2018, 10:13:40 AM
#39
Time flees.. no updates so far, very disappointed about staff management and their false promises.  Cry

I see you was lucky enough to lock your account within the 15 days window.. many others (including myself) were hijacked, used their profiles for spam / deceiving others, sold the accounts multiple times and even ignored all recovery & ban attempts from their legitimate owners.
Recovery of hacked accounts should be #1 priority, it is not rocket science and even a single volunteer could revert most of the damage that hackers has been making consistently over the years because of a second market that allows account buying/selling. Admins are well aware of this but they don't care nor enforce the rules or security measures.
newbie
Activity: 21
Merit: 0
October 02, 2018, 04:00:24 PM
#38
I wonder why your compromised Full Member account theta with only -2 red trust reports to be Last Active on: November 23, 2017, 05:37:28 PM . What made the spammer abbandon it ?
Hi,
I'm not sure I understand the question, but the last activity is in Nov 23, 2017 because that's when I locked the account. I did it immediately as soon as I received the notification that my password was changed, as I mentioned that in the very beginning of this thread. So it's not that the hacker abandoned it, it's that it's locked and can't access it themselves.

Either way, I just ignored your hacked account (however not sure if my current rank makes any difference) once you manage to recover your account you'll have to sign another message to confirm it, so I can remove my red trust.
I believe starting a red trust campaign on those hacked accounts who has been reported + verified successfully will cause a significantly harm on those scammers who bought your hacked account for spamming / shady purposes.
I guess you are referring to a case where a hacker uses a hacked account successfully for a long period, in which case reducing their trust would compromise their strategy. In my case the hacker didn't even manage to post a single message because I locked the account immediately.
I would love to have my account back and remove the red trust and go back to where we were. Perhaps as we approach the 1 year anniversary, a moderator will help me recover it!  Roll Eyes
jr. member
Activity: 55
Merit: 15
August 27, 2018, 10:30:10 AM
#37
I wonder why your compromised Full Member account theta with only -2 red trust reports to be Last Active on: November 23, 2017, 05:37:28 PM . What made the spammer abbandon it ?
 
Either way, I just ignored your hacked account (however not sure if my current rank makes any difference) once you manage to recover your account you'll have to sign another message to confirm it, so I can remove my red trust.
I believe starting a red trust campaign on those hacked accounts who has been reported + verified successfully will cause a significantly harm on those scammers who bought your hacked account for spamming / shady purposes.
newbie
Activity: 21
Merit: 0
April 22, 2018, 02:58:39 PM
#36
bump
newbie
Activity: 1
Merit: 0
April 07, 2018, 10:56:26 AM
#35
Hello,
I created this account as my account got hacked. So I PMed theymos with a bitcoin signed message, hoping to get back my access. This message is to make sure that It's me who PMed thymos. My hacked and locked account User name is: arghabd; Hope it helps.
Thanks a lot.
newbie
Activity: 21
Merit: 0
April 05, 2018, 05:00:00 PM
#34
bump
can someone please take a look?
newbie
Activity: 18
Merit: 0
February 11, 2018, 10:47:51 PM
#33
Anyone here have any success? Been waiting since October 27
newbie
Activity: 21
Merit: 0
January 28, 2018, 04:47:50 PM
#32
bump
newbie
Activity: 21
Merit: 0
January 19, 2018, 12:34:42 PM
#31
theta1's signed message is good. I verified it before, but I do not see the other thread it was in.
Probably removed because of this thread. Hopefully someone can look into this soon, and the many other accounts like
this. It would be nice if the forum would allow a "team" of volunteers to work on this issue. I'd sign up for it, and try
to clear some space on this board.
Thank you. Is any mod watching please?
full member
Activity: 350
Merit: 158
#takeminingback
January 16, 2018, 04:49:50 PM
#30
theta1's signed message is good. I verified it before, but I do not see the other thread it was in.
Probably removed because of this thread. Hopefully someone can look into this soon, and the many other accounts like
this. It would be nice if the forum would allow a "team" of volunteers to work on this issue. I'd sign up for it, and try
to clear some space on this board.
newbie
Activity: 116
Merit: 0
January 16, 2018, 01:04:02 PM
#29
Yes, indeed. I have however already signed the required message with an address that was shown in my profile, as you can see from the discussion in this thread. I have sent the signed message to Theymos and Cyrus, and have received no response yet. I will wait for longer, while hoping that another mod /admin will help with action being taken to restore my account.
me too, i have been waiting for long without any response
newbie
Activity: 21
Merit: 0
January 16, 2018, 11:38:30 AM
#28
Yes, indeed. I have however already signed the required message with an address that was shown in my profile, as you can see from the discussion in this thread. I have sent the signed message to Theymos and Cyrus, and have received no response yet. I will wait for longer, while hoping that another mod /admin will help with action being taken to restore my account.
sr. member
Activity: 518
Merit: 264
January 16, 2018, 10:14:28 AM
#27
Earlier today I received an email saying that the email address of my bitcointalk account (theta) was changed, and then another one saying that my password was changed.
The only option available was to lock the account and then try to recover it.
I did lock it and then checked the instructions for recovery (https://bitcointalksearch.org/topic/recovering-hacked-accounts-or-accounts-with-lost-passwords-497545). They require signing a bitcoin address or a PGP key that was previously mentioned and therefore is known to belong to the account holder.
The problem is I haven't publicly disclosed either so according to these instructions I can't recover my account.
I find this hard to believe.
First of all, how come an email address change is allowed without confirmation or at the very least time-locking from the previous email address? And how come I can't recover it now, again by returning ownership to the original email address?
There must be another way to recover it. What shall I do?
The way that you only to recover your account is using your blockchain wallet staking in your account.
newbie
Activity: 21
Merit: 0
January 16, 2018, 07:48:15 AM
#26
Bump
newbie
Activity: 6
Merit: 0
January 14, 2018, 02:52:58 PM
#25
the same problem ..
icant sig in my older acount
legendary
Activity: 2954
Merit: 3060
Join the world-leading crypto sportsbook NOW!
January 14, 2018, 12:34:49 PM
#24
How does this happen? Do people simply guess easy passwords? My password for this one includes symbols, numbers and shit.

Yeah, the very weak ones can be broken in seconds. There are websites where you can check how strong your password is such as: https://howsecureismypassword.net/

Try something similar to your password and see what it says, but merely using a dictionary word with a couple of symbols and numbers doesn't make it unbreakable but the longer it is with numerous symbols and numbers will make it much stronger. Ideally it should be some random gibberish with a lot of symbols and numbers and upper and lower case.
newbie
Activity: 21
Merit: 0
January 14, 2018, 09:45:23 AM
#23
Yes, brute force very likely, aided by very bad forum design, in that they allow a user to change the account's registered email address without requiring approval by the old email or at least giving the option to reject the change! If it weren't for that the hack would be fruitless, as the rightful owner could easily change the password back (whereas right now the only defence is to lock the account).
sr. member
Activity: 280
Merit: 250
January 12, 2018, 01:12:48 PM
#22
How does this happen? Do people simply guess easy passwords? My password for this one includes symbols, numbers and shit.
newbie
Activity: 18
Merit: 0
January 12, 2018, 11:14:47 AM
#21
I started this process October 27th. Losing hope on recovering my account. I would pay a small sum to recover it.
newbie
Activity: 21
Merit: 0
January 12, 2018, 03:14:32 AM
#20
Bump
Can someone please look into this?
brand new
Activity: 0
Merit: 0
January 07, 2018, 12:48:36 AM
#20
Hi i also Hacked my account someone ..He change password and Email address and then i locked my account ..

currently i report again and again admin with new account no one reply me ..too long ..

How to do help me ...Anyone know what ways is faster to recover back account ?
full member
Activity: 350
Merit: 158
#takeminingback
January 06, 2018, 08:30:01 PM
#19
Once either Cyrus or Theymos reset the account, please let us know how the notification process work... Do they reply to our PM or do we periodically check the email address we asked them to reset to? Thank you for the clarification!

You will receive a PM that simply says: UNLOCKED. That's all I received when
mine was unlocked last month. My account wasn't hacked so, it could also contain
simple instruction for keeping your account safe.

Was that a PM in the new account?

Yes, it's in the new account, in which you have sent the signed message.
newbie
Activity: 21
Merit: 0
January 06, 2018, 01:12:11 PM
#18
Once either Cyrus or Theymos reset the account, please let us know how the notification process work... Do they reply to our PM or do we periodically check the email address we asked them to reset to? Thank you for the clarification!

You will receive a PM that simply says: UNLOCKED. That's all I received when
mine was unlocked last month. My account wasn't hacked so, it could also contain
simple instruction for keeping your account safe.

Was that a PM in the new account?
member
Activity: 280
Merit: 12
January 06, 2018, 05:48:58 AM
#17
Oh I just learned something pretty practical. Thanks a lot guys!
full member
Activity: 350
Merit: 158
#takeminingback
January 04, 2018, 04:42:23 PM
#16
Once either Cyrus or Theymos reset the account, please let us know how the notification process work... Do they reply to our PM or do we periodically check the email address we asked them to reset to? Thank you for the clarification!

You will receive a PM that simply says: UNLOCKED. That's all I received when
mine was unlocked last month. My account wasn't hacked so, it could also contain
simple instruction for keeping your account safe.
newbie
Activity: 21
Merit: 0
December 20, 2017, 02:50:41 PM
#15
Bump
Hope a mod will have a look
Thanks for verifying the message. Can you please clarify what you mean regarding the date.
2017.11.24 is the day after the hack. I received the email about my account's email address and password change on Thu, Nov 23, 2017 at 5:35 PM (GMT), then followed the instructions to lock my account, created this new account and posted this thread on the same day, and then I tried to find a btc address linked to me. I found the one you posted as well, and signed it on November 24th (the following day).
Is there something else that I need to do?

Sorry - that was a typo, and is fixed now.  Embarrassed
FWIW, I believe you've satisfied the requirements for recovery, the archived address goes back to 2013, so it's enough proof. Cyrus or theymos are the only two that can recover the account though, and it can take some time. If you have sent messages to both, waiting is your only next step.

Thank you. That's fine, I can wait, I just don't want to lose the account. I assume it remains locked until further action is taken by the mods?
full member
Activity: 350
Merit: 158
#takeminingback
December 16, 2017, 05:53:21 PM
#14
Hello please help me.
my account was hacked too,
i sent message to @ Cyrus
But i dont know how to sign the message,



Follow these directions.

https://bitcointalksearch.org/topic/how-to-sign-a-message-990345


 You will also need proof of your address from an older post before it was hacked.
Put your address into google search. Hope this helps a little. Goodluck!!!
newbie
Activity: 116
Merit: 0
December 16, 2017, 04:20:41 PM
#13
Hello please help me.
my account was hacked too,
i sent message to @ Cyrus
But i dont know how to sign the message,
newbie
Activity: 21
Merit: 0
December 16, 2017, 11:36:49 AM
#12
Thanks for verifying the message. Can you please clarify what you mean regarding the date.
2017.11.24 is the day after the hack. I received the email about my account's email address and password change on Thu, Nov 23, 2017 at 5:35 PM (GMT), then followed the instructions to lock my account, created this new account and posted this thread on the same day, and then I tried to find a btc address linked to me. I found the one you posted as well, and signed it on November 24th (the following day).
Is there something else that I need to do?

Sorry - that was a typo, and is fixed now.  Embarrassed
FWIW, I believe you've satisfied the requirements for recovery, the archived address goes back to 2013, so it's enough proof. Cyrus or theymos are the only two that can recover the account though, and it can take some time. If you have sent messages to both, waiting is your only next step.

Thank you. That's fine, I can wait, I just don't want to lose the account. I assume it remains locked until further action is taken by the mods?
legendary
Activity: 1789
Merit: 2535
Goonies never say die.
December 16, 2017, 10:50:09 AM
#11
Thanks for verifying the message. Can you please clarify what you mean regarding the date.
2017.11.24 is the day after the hack. I received the email about my account's email address and password change on Thu, Nov 23, 2017 at 5:35 PM (GMT), then followed the instructions to lock my account, created this new account and posted this thread on the same day, and then I tried to find a btc address linked to me. I found the one you posted as well, and signed it on November 24th (the following day).
Is there something else that I need to do?

Sorry - that was a typo, and is fixed now.  Embarrassed
FWIW, I believe you've satisfied the requirements for recovery, the archived address goes back to 2013, so it's enough proof. Cyrus or theymos are the only two that can recover the account though, and it can take some time. If you have sent messages to both, waiting is your only next step.
newbie
Activity: 21
Merit: 0
December 16, 2017, 10:01:44 AM
#10
I did lock it and then checked the instructions for recovery (https://bitcointalksearch.org/topic/recovering-hacked-accounts-or-accounts-with-lost-passwords-497545). They require signing a bitcoin address or a PGP key that was previously mentioned and therefore is known to belong to the account holder.
The problem is I haven't publicly disclosed either so according to these instructions I can't recover my account.
I find this hard to believe.

Can you sign a message from this address?

1DUFbqqEf8PeH2ZpKf7ovLWpVLMh6urP63

https://web.archive.org/web/20140715150836/https://bitcointalk.org/index.php?action=profile;u=84992


Message was signed and verified in PM, signed message was dated "2017.11.24" which appears to be before the suspected hack. I've left feedback to alert others.


Quote
-----BEGIN BITCOIN SIGNED MESSAGE-----
My account theta has been hacked. Please reset the email to . The current date is 2017.11.24.
-----BEGIN SIGNATURE-----
1DUFbqqEf8PeH2ZpKf7ovLWpVLMh6urP63
G3Ze1Ug1KQy2rjt972Wrx8a7JhB6ykUHcV2AUyUUOqRhU02ufgJylGyIWSRykq6wf/BX19zqMXeRVN4zVtLdIFA=
-----END BITCOIN SIGNED MESSAGE-----

Thanks for verifying the message. Can you please clarify what you mean regarding the date.
2017.11.24 is the day after the hack. I received the email about my account's email address and password change on Thu, Nov 23, 2017 at 5:35 PM (GMT), then followed the instructions to lock my account, created this new account and posted this thread on the same day, and then I tried to find a btc address linked to me. I found the one you posted as well, and signed it on November 24th (the following day).
Is there something else that I need to do?
legendary
Activity: 1789
Merit: 2535
Goonies never say die.
December 16, 2017, 09:08:34 AM
#9
I did lock it and then checked the instructions for recovery (https://bitcointalksearch.org/topic/recovering-hacked-accounts-or-accounts-with-lost-passwords-497545). They require signing a bitcoin address or a PGP key that was previously mentioned and therefore is known to belong to the account holder.
The problem is I haven't publicly disclosed either so according to these instructions I can't recover my account.
I find this hard to believe.

Can you sign a message from this address?

1DUFbqqEf8PeH2ZpKf7ovLWpVLMh6urP63

https://web.archive.org/web/20140715150836/https://bitcointalk.org/index.php?action=profile;u=84992


Message was signed and verified in PM, signed message was dated "2017.11.24", which is after the suspected hack.
I've left feedback to alert others.


Quote
-----BEGIN BITCOIN SIGNED MESSAGE-----
My account theta has been hacked. Please reset the email to . The current date is 2017.11.24.
-----BEGIN SIGNATURE-----
1DUFbqqEf8PeH2ZpKf7ovLWpVLMh6urP63
G3Ze1Ug1KQy2rjt972Wrx8a7JhB6ykUHcV2AUyUUOqRhU02ufgJylGyIWSRykq6wf/BX19zqMXeRVN4zVtLdIFA=
-----END BITCOIN SIGNED MESSAGE-----
copper member
Activity: 257
Merit: 0
December 16, 2017, 04:21:06 AM
#8
Seems a lot of people got their account stolen :|
Mine was stolen yesterday, only just two weeks to become a full member.
I already reported mine to admin but I'm stupid, I submitted the wrong data.
Now I have to wait for another 24 hour to be able to send another pm.
newbie
Activity: 21
Merit: 0
December 16, 2017, 02:15:42 AM
#7
PM sent last night
newbie
Activity: 21
Merit: 0
December 14, 2017, 05:24:51 PM
#6
I did lock it and then checked the instructions for recovery (https://bitcointalksearch.org/topic/recovering-hacked-accounts-or-accounts-with-lost-passwords-497545). They require signing a bitcoin address or a PGP key that was previously mentioned and therefore is known to belong to the account holder.
The problem is I haven't publicly disclosed either so according to these instructions I can't recover my account.
I find this hard to believe.

Can you sign a message from this address?

1DUFbqqEf8PeH2ZpKf7ovLWpVLMh6urP63

https://web.archive.org/web/20140715150836/https://bitcointalk.org/index.php?action=profile;u=84992


YES!
This is the address I signed and sent the signed message to Cyrus and Theymos in PM.
I'll send it to you too (in about 6 minutes that I will be allowed to with this new account)
edit: it's 1 hour actually, not 6 minutes, so I'll send you the PM later.
edit2: there's another limit, of 2 PMs a day, so your PM with the signed message (that 4 other people including Theymos and Cyrus already have) will arrive later tonight.
legendary
Activity: 1789
Merit: 2535
Goonies never say die.
December 06, 2017, 12:40:50 PM
#5
I did lock it and then checked the instructions for recovery (https://bitcointalksearch.org/topic/recovering-hacked-accounts-or-accounts-with-lost-passwords-497545). They require signing a bitcoin address or a PGP key that was previously mentioned and therefore is known to belong to the account holder.
The problem is I haven't publicly disclosed either so according to these instructions I can't recover my account.
I find this hard to believe.

Can you sign a message from this address?

1DUFbqqEf8PeH2ZpKf7ovLWpVLMh6urP63

https://web.archive.org/web/20140715150836/https://bitcointalk.org/index.php?action=profile;u=84992
newbie
Activity: 52
Merit: 0
December 06, 2017, 12:10:33 PM
#4
Hello, I would like to know if my account on Bitkojntolk got hacked, how can I restore it? And do you need documents?)
KWH
legendary
Activity: 1904
Merit: 1045
In Collateral I Trust.
December 03, 2017, 01:41:57 PM
#3
Read the sticky in meta.
newbie
Activity: 26
Merit: 0
December 03, 2017, 01:13:28 PM
#2
I've had the same problem today.

Somebody can help me?

I've  lock the account with the option:

then you can visit the following link within 14 days in order to lock the account:

https://bitcointalk.org/index.php?action=seclock;u=368688;t=1512321576;o=Y2lnYXJyb3NleGlAZ21haWwuY29t;n=QlRDRGVlRGVlQHlhbmRleC5jb20%3D;c=PEdzKGXBuflStusl1gbGtl%2BTC%2B2MonPKm8tgQOHw02A%3D

newbie
Activity: 21
Merit: 0
November 23, 2017, 04:31:53 PM
#1
Earlier today I received an email saying that the email address of my bitcointalk account (theta) was changed, and then another one saying that my password was changed.
The only option available was to lock the account and then try to recover it.
I did lock it and then checked the instructions for recovery (https://bitcointalksearch.org/topic/recovering-hacked-accounts-or-accounts-with-lost-passwords-497545). They require signing a bitcoin address or a PGP key that was previously mentioned and therefore is known to belong to the account holder.
The problem is I haven't publicly disclosed either so according to these instructions I can't recover my account.
I find this hard to believe.
First of all, how come an email address change is allowed without confirmation or at the very least time-locking from the previous email address? And how come I can't recover it now, again by returning ownership to the original email address?
There must be another way to recover it. What shall I do?
Jump to: