Back to Epicmafia

Oracle is potential spyware

deletedabout 7 years

So I just downloaded Oracle and I performed a login on EM and looked under Chrome's network activity tab and this is what Oracle is doing.

https://imgur.com/a/z1JnL

If you look at the part that is boxed in red, you can see that EVERY time you log in, Oracle is automatically sending a GET request to the following ip address: http://45.63.17.67/

Included with that request are a few suspicious parameters. I believe the p parameter (circled in red) is a hashed version of your password.

So whats probably going on is...every time you log in...Oracle takes a copy of your password, sends it to 45.63.17.67 (a server that is "epicmafia.net" and saves it somewhere. So the extension is just building a database of usernames and passwords.

For reference..here is what a log on looks like without Oracle.

https://imgur.com/a/9K1ov

Notice how without Oracle there is just a simple login POST to epicmafia.

You can try this yourself with the following steps.

Install Oracle on the chrome web store

Log out of your account

Right click on your screen and click inspect element

Go to the Network tab

Perform a login

Then you'll see in the network tab that your browser is making a get request to an ip address owned by lailai and its sending a few hashed parameters

There is no reason why Oracle needs to make this request. Nothing about oracle's functionality requires it. It's very likely that it is just logging your password and saving it

about 7 years
This is his "analytics" script:



And here he sends your password to his server:
about 7 years
ToL is made by LaiLai Confirmed!
about 7 years

Dalypso says

can't imagine his future fortune 500 VC startup partners would be too pleased to hear about this


what company was he involved in?
about 7 years
Imagine me being admin on the next site LaiLai makes.
about 7 years
lailai company is actually throne of lies
about 7 years
Someone file a class action law suit here. Lets demand a BTC donation into an "Epicmafia User Fund." Let's get everyone some coin
about 7 years

xxerox says

If this is true, i suggest we let it do its job. A new better site is welcomed by me and everyone else that wants change.


IMAGINE lailai being the OWNER of the next site everyone migrates to
about 7 years
i wish i had sleeped to copy paste arcbell xxerox boo etc to this
deletedabout 7 years
Lailai is WAY funnier than I remember
about 7 years
my god lmao
about 7 years
IMAGINE downloading a plugin written by a teenager with various self diagnosed mental illnesses and a penchant for typing Liek dis xD. IMAGINE if lailai went on a holiday with Charley after stealing her EpicMafia password.
deletedabout 7 years
can't imagine his future fortune 500 VC startup partners would be too pleased to hear about this
about 7 years
is someone really gonna unironicly do the u have reported this to the fbi, that would be funny as fck
about 7 years
deletedabout 7 years
There was criminal attempt. Attempted murder. The victim? Epicmafia.com
about 7 years
lol imagining lailai getting arrested just cause he wanted the em passwords to snoop ppls dm's 4 nudes
about 7 years

shaGuar says

There's really no criminal intent here. Plus he's Australian. Feds won't care I bet


they would lol
about 7 years
There's really no crime here. Plus he's Australian. Feds won't care I bet
about 7 years
i just wanna know if he hacked me i was legit with him in the US wtf......
deletedabout 7 years
Hey maybe Lailai is the guy collection all of your linkedin passwords and he just got in on the epicmafia farm too
about 7 years
I'm checking the source code right now to confirm it.
deletedabout 7 years
lailai was the h4xx0r all aling
about 7 years
fuking lol
about 7 years
Well if he completely ignores this thread, yeah, we should
about 7 years
If this is true, i suggest we let it do its job. A new better site is welcomed by me and everyone else that wants change.