Back to Epicmafia

Oracle is COMPROMISED, UNINSTALL

about 7 years

Approximately half an hour ago, I became aware that the version of Oracle distributed on the Chrome Web Store contained code that logged usernames and passwords on login, at the very least. (I’m not near a laptop and haven’t done a full code diff).

Oracle has been unpublished so it should be disappearing, but uninstall it NOW.

This code isn’t present on GitHub or v0.1.8, the last update I pushed out. The current compromised version is “v0.1.9” and Chrome Webstore says it was pushed on 10/3/17.

If you have used Oracle since then, you need to CHANGE YOUR PASSWORD NOW. If you have used this password on another site, you need to change it as well.

The extension is permissions wise scoped to Epicmafia.com, so any activity on any other site should not be affected.

At this moment I do not know how my account was breached and the compromised extension uploaded, nor do I know how access to Epicmafia.net was accessed (if at all). I will update in this thread as I further investigate.

about 7 years

yoyo200900 says


sky says

Wait is this saying I hacked his account


Looks like a bus, they're in on this together.

sky says

To then hack my own account.. mate I already knew my password


Forced interactions.

deletedabout 7 years
Dont worry everyone my dad owns microsoft I can delete his minecraft account within 2 minutes xd f****** fool doesnt know who hes messing with lmao he better run or im gonna have to cancel my invite to him for my birthday party >:) Good luck, f*****.
deletedabout 7 years

lailai says


Miki says


lailai says

but something from early October probably wouldn’t appear now).


it would


Do you have a source? That would narrow it down. Then that means one of my devices was compromised, and not the account details itself


Compromised this, compromised that. Just admit to your sh1t and call it a day. Either you did it or you were stupid enough to let someone have access to all this "high value" information. End result, you are to blame.
deletedabout 7 years

Bebop says

WHITEPIMP IS A FALL GUY DONT TRUST THE MEDIA, DONT BELIEVE HIS LIES


STAND WITH WHITEPIMP!
deletedabout 7 years

Jeff says

So the hacker had all the info you have, and then happened to know you and charley were drunk fighting in a bar in Texas? LMFAOOOO sit down you sneaky little fu’cker.


How was this f*cker even allowed into a bar? He's like 18...?
deletedabout 7 years
I mean what's his endgoal here? Didn't he quit because he had narcissistic personality disorder or something. What's he doing wasting his time on small potatoes like epicmafia when twitter is just down the street?
deletedabout 7 years
He never was much of a mafia player
deletedabout 7 years

lailai says

I have my list of suspects on who would’ve been able to pull off this attack, would have access to epicmafia.net (the analytics server), and would have reason to, i.e. the former oracle contributor who I demodded when I was admin.

I’m actively investigating and will update here with more details.


please, let us know the inner workings of your investigation so we can all contribute.
about 7 years
For anyone interested
about 7 years
[6:42:20 PM] Jordan B: Yeah, I always thought it was weird that lailai wouldn't link the GitHub to the Google extension.
[6:42:48 PM] Jordan B: He insisted on making the actual published extension separate and uploading it to the Google store himself.
[6:43:05 PM] Jordan B: I didn't care since I always compiled my own.
[6:44:07 PM] William: is it okay if i post what you just said
[6:44:56 PM] Jordan B: Oh yeah, go for it.
[6:45:22 PM] Jordan B: >hacked
[6:45:38 PM] Jordan B: The chrome extension is published through his Google account LMFAO
about 7 years
Solid drama
about 7 years
Crock of shįt lol
about 7 years
If "someone" hacked lailai's account and changed the script, then why would they record passwords to lailai's server instead of their own? It doesn't add up
about 7 years
apology for poor english

when were you when denny lieli dies?

i was sat at home making meme when charliy call

‘lie lie is kill’

‘no’
deletedabout 7 years

Bebop says

You suspended all the accounts linked to user 12939!
No reasons yet.
sky • 7 minutes

You forced a logout for user 12939.
No reasons yet.
sky • 7 minutes





incoming oracle update
about 7 years
You suspended all the accounts linked to user 12939!
No reasons yet.
sky • 7 minutes

You forced a logout for user 12939.
No reasons yet.
sky • 7 minutes

about 7 years

The says

hack me lailai


Nice wifom
about 7 years

shaGuar says

lailai:Uninstall oracle
lailai:https://epicmafia.com/topic/87339
robertgray:didnt you make oracle


What a slip
about 7 years

Recidivism says

Approximately half an hour ago, I became aware that the version of Oracle distributed on the Chrome Web Store contained code that logged usernames and passwords on login, at the very least. (I’m not near a laptop and haven’t done a full code diff).

This reads like he wrote out what his alibi was going to be and then copy and pasted it as the first paragraph


Are you saying that he copied and pasted his report
deletedabout 7 years
Approximately half an hour ago, I became aware that the version of Oracle distributed on the Chrome Web Store contained code that logged usernames and passwords on login, at the very least. (I’m not near a laptop and haven’t done a full code diff).

This reads like he wrote out what his alibi was going to be and then copy and pasted it as the first paragraph
about 7 years
lailai:Uninstall oracle
lailai:https://epicmafia.com/topic/87339
robertgray:didnt you make oracle
about 7 years
hack me lailai
about 7 years
about 7 years
cant believe i missed an opportunity to post one of my favourite reaction images at the start of this thread

deletedabout 7 years
Detective Vilden is on the case, son! He's gonna deduce the SH*T out of you, Lailai!