Is your NATS hacked ?
Collapse
X
-
-
The TMM login name seems pretty generic and long. AFAIK, there isn't one master access user/pass that accesses all installs.
John said in another thread that it "fully appears to be a compromised password list", so I guess the TMM passwords all got out somehow.
Looks like that's all closed now as he also stated "We have changed our policy so that we no longer maintain ANY passwords to ensure this does not happen via us ever in the future"
For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)
All models are wrong, but some are useful. George E.P. Box. p202Comment
-
So, to summarise, since John's last post has gotten buried in a lot of FUD
It looks like a password list has gotten out so NATS owners should contact TMM to see if their customer data has been compromised. OC3 ([email protected]) have also said they can help people with this.
TMM have or are in the process of changing all TMM passwords throughout their client base.
TMM have now taken additional security measures by not storing all passes on their end to prevent this happening again.
TMM are adding additional security measures (1-way encrypted passes) in future NATS releases.
So, if I'm not mistaken, any current NATS owners should now be secured (or over the next day or two) from further compromise via this route.
But, in all, everyone, nomatter what software you use, should take database security very seriously and daily audit any accounts (ssh/mysql/web-based) that have privilege access.
Looks like this issue has come to resolution, so I'm off to enjoy my holidays

For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)
All models are wrong, but some are useful. George E.P. Box. p202Comment
-
Comment
-
NATS haters unite..lol. TMM is awesome and unliKe most other companies in the industry are on the problems before or as they happen. Its funny you see the shady programs come in here to bash nats when they are the most suspect. Your stats scare the shit out of me....0/10ooo+.
DO NOT TRUST PROGRAMS THAT HAVE CUSTOM BACKENDS. THEY ARE THE ONES TO WATCH FOR.No doubt one may quote history to support any cause, as the devil quotes scripture.
-- Learned Hand
http://www.bjpenn.comComment
-
thats funny because they were aware of this problem many moons ago and yet instead of fixing the problem they put the blame on their customers. meanwhile MY personal information was stolen.. that doesnt sound like being "on the problem" this issue has been going on for MONTHS.
you must be the "exception" to the rule , i have never seen any sponsors "bashing" nats , and i think any long term webmaster has noticed non-nats sponsors perform better as a whole.
like nastydollars and bangbros , industry leaders ?hatisblack at yahoo.comComment
-
p.s. i should also mention at this point that one of the only sponsors i have heard from that WASN'T hacked was mayors money, and this is because THEY went thru extra security measures above and beyond.
big props to mayors money, your info is securehatisblack at yahoo.comComment
-
hatisblack at yahoo.comComment
-
http://www.mayorsmoney.com/
http://www.score-group.com/
http://www.evilgneiuscash.com/
http://www.dukedollars.com/
I haven't checked everyone and as I do have updated - corrected them. Thus far, these 4 programs do not have any logins from that IP.
This is a short list of the SEVERAL that use the NATS built in security features that protect your members, webmasters, and admin data.
NATS has the security features already - question is which sponsors are using them?Last edited by TheDoc; 12-22-2007, 07:46 AM.
~TheDoc - ICQ7765825
It's all disambiguation
Comment
-
Comment
-

For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)
All models are wrong, but some are useful. George E.P. Box. p202Comment
-
~TheDoc - ICQ7765825
It's all disambiguation
Comment
-
Comment
-
i would find it very unlikely they "only" grabbing emails of members.
the bot is likely used to maintain the list thats why it accesses so often but the affiliate info would likely only be grabbed once making it alot harder to spot amongst the hundreds of email grabs
hatisblack at yahoo.comComment
-
i would find it very unlikely they "only" grabbing emails of members.
the bot is likely used to maintain the list thats why it accesses so often but the affiliate info would likely only be grabbed once making it alot harder to spot amongst the hundreds of email grabs
True since they full access they probably collected much more... I just posted what we discovered back in October 2007
http://www.gfy.com/showthread.php?t=794159QuadraNET - ICQ:2222 15312 - milan [nosp@m] QuadraNET.com
24/7 "REALLY ON-SITE" Support - Completely Premium Network
Public & Private Network, Remote Reboot, Private VLANs
99.99% Guaranteed Network Uptime / BGP4 Multihomed
24/7 LIVE CHAT, Phone and Ticket Support
1-888-5-QUADRAComment
-
Perhaps I'm misremembering, but I coulda sworn that affiliate passwords were displayed... is the encryption something that's changed in the last eighteen months?No, members passes are cleartext by default. Affiliate passwords are two-way encrypted. What I don't understand is why the need for two-way encryption? To reset an affiliates pass if they forgot it in the backend is nothing, so 1-way encryption would have been far better. John posted in another thread that this is to be included in NATS4. Shame it wasn't sooner IMPO.
And even if passwords are not available, I do, certainly, remember the 'become reseller' option... can affiliates examine their own password via their account's interface, or no? If "no," maybe the case is that I've misremembered, and would appreciate confirmation on that.
Been awhile, and I don't have an updated version of NATs in front of me to play around with.-D.
ICQ: 202-96-31Comment
-
Add TastyDollars to that list.http://www.mayorsmoney.com/
http://www.score-group.com/
http://www.evilgneiuscash.com/
http://www.dukedollars.com/
I haven't checked everyone and as I do have updated - corrected them. Thus far, these 4 programs do not have any logins from that IP.
This is a short list of the SEVERAL that use the NATS built in security features that protect your members, webmasters, and admin data.
NATS has the security features already - question is which sponsors are using them?
We had 1 login from that NATS admin account and the date matched on the day they were doing some work for us.
We have also deleted that account just to extra carefull.
RayComment
-
I wonder if anyone tried to warn people a long time ago that they had serious security issues but was bashed by all the guys John bought drinks for.TPF 2010 "They are eating our sausages!"Comment
-
Yes, this is true. Both affiliate (including admin users who are stored as affiliates) and members (surfer joins) are stored in plaintext.Comment
-

For coding work - hit me up on andy // borkedcoder // com
(consider figuring out the email as test #1)
All models are wrong, but some are useful. George E.P. Box. p202Comment
-
You're a fucking moronNATS haters unite..lol. TMM is awesome and unliKe most other companies in the industry are on the problems before or as they happen. Its funny you see the shady programs come in here to bash nats when they are the most suspect. Your stats scare the shit out of me....0/10ooo+.
DO NOT TRUST PROGRAMS THAT HAVE CUSTOM BACKENDS. THEY ARE THE ONES TO WATCH FOR.
Comment
-
Comment
-
hatisblack at yahoo.comComment
-


NAKED HOSTING FTW!11 I'm On The INSANE PLAN $9.95/mo!
| The Alien Blog Adult News Worth Reading Updated Daily
| Content For Sale! 641 PICS 216 MINUTES OF VIDEO $350.00 |ICQ: 78943384 |Comment
-
Comment
-
No doubt one may quote history to support any cause, as the devil quotes scripture.
-- Learned Hand
http://www.bjpenn.comComment
-
As mentioned in this thread previously by Uno, our 'version' of nats, has been 'customized' to such extent, we no longer recieve updates from NATS(TMM). This also means we have been taking measures to prevent issues such as this one, via additional security measures that were taken almost 2 years ago.
In a nutshell: Our information is safe.
This is a constant struggle for all of us and we're doing our best to make sure our systems and sites are as safe as they can be, on a continuous basis.
I am sorry to see others have problems, but it is definately not the case for us.
°°panchodog.com°°
°°100+ paysites!!°°
°°katiefey°°°felicityfey°°
°°kristinafey°°°& Andi Pink!°°Comment
-
Search in the history dumb bitch.
I have long stood against NATS/Porngraph for quite some time.

NAKED HOSTING FTW!11 I'm On The INSANE PLAN $9.95/mo!
| The Alien Blog Adult News Worth Reading Updated Daily
| Content For Sale! 641 PICS 216 MINUTES OF VIDEO $350.00 |ICQ: 78943384 |Comment
-
So technically you're not really "with NATS" then ...As mentioned in this thread previously by Uno, our 'version' of nats, has been 'customized' to such extent, we no longer recieve updates from NATS(TMM). This also means we have been taking measures to prevent issues such as this one, via additional security measures that were taken almost 2 years ago.
In a nutshell: Our information is safe.
This is a constant struggle for all of us and we're doing our best to make sure our systems and sites are as safe as they can be, on a continuous basis.
I am sorry to see others have problems, but it is definately not the case for us.What name is pr0 / Untouched Markets using these days? Untouched Markets - pr0 - Refund My Money Now
Someone owes me $2,000 because they didn't do any work that was paid for *pointing at pr0 / William / UntouchedMarkets*
See http://www.gfy.com/showthread.php?p=16744521 and for more detailed see http://www.gfy.com/showthread.php?t=948645Comment
-
maybe so, but they certainly don't fail when it comes to compromising users PC's, or allowing 'rogue' affiliates to steal content from other programs and promote Quickbuck join pages, or using other malware to pop your join pages over other programs join pages.Comment
-

°°panchodog.com°°
°°100+ paysites!!°°
°°katiefey°°°felicityfey°°
°°kristinafey°°°& Andi Pink!°°Comment
-
more like industry cheaters
aren't these the same guys that only show 1 out of every 100 hits that end up in their system?
yeah, you may have 1:100 ratios, but they are only counting 10% of your traffic, hahahaboom chicka wah wahComment
-
Comment
-
Kind sir, would you be interested in some swampland and a couple of bridges I have for sale?NATS haters unite..lol. TMM is awesome and unliKe most other companies in the industry are on the problems before or as they happen. Its funny you see the shady programs come in here to bash nats when they are the most suspect. Your stats scare the shit out of me....0/10ooo+.
DO NOT TRUST PROGRAMS THAT HAVE CUSTOM BACKENDS. THEY ARE THE ONES TO WATCH FOR.Whitehat is for chumps
If you don't do it, somebody else will - true story!Comment
-
No doubt one may quote history to support any cause, as the devil quotes scripture.
-- Learned Hand
http://www.bjpenn.comComment
-
Comment
-
and could you please explain the the world what exactly i am gullible about?
If you got some dirty secret about how Ron Paul voted a certain way, did cocaine in college, cheated on two wives, voted for the war, voted for bigger goverment, voted for preemptive invasions of nations that have no chance of hurting us, PLEASE FILL ME IN.
ps. please provide facts with your assumptions.No doubt one may quote history to support any cause, as the devil quotes scripture.
-- Learned Hand
http://www.bjpenn.comComment
-
yes it does.
You should also stop dippin' into your supply
Aliens a moron, but even a broken clocks right 2 times a day.Comment
-
no you have the wrong sponsor, nastydollars and bangbros have pretty close stats , your thinking of sponsors like realitycash .hatisblack at yahoo.comComment
-
Comment
-
at least realitycash says they count "qualified hits" or whatever
bangbros just doesn't count hits...AT ALL
I sent them at least 10,000 hits a while back and saw maybe 100-200 in their admin
i believe there were a few more affiliates that posted on gfy about the same problem....they sent a bunch of hits and maybe saw 10-20% showed up in the admin
the fact is, the adult industry STINKS to high heaven these days, cheaters and scammers have run wild for years now, and that seems to be all that is left
hell, even a few of the largest program owners have been publicly OUTED for scamming or cheating affiliates, and they still get high fives!!!!boom chicka wah wahComment
-
Everything is hackable, every program, every server, every host, at some point, some software, something can have an sql, apache, unix, nats, email from - ect related.. Very common.Originally posted by pornopeteI thought NATS was supposed to be an inpentrable fortress enabling affiliates to feel confident that the program owners aren't cheating them.
Lets not forget the thread last year that revealed the fact that NATs has a built in feature that allows program owners to approve/disapprove an affiliates sale.
NATS has never had a way to approve/disapprove an affiliates sale, ever. Please get your facts straight before posting such slander.
~TheDoc - ICQ7765825
It's all disambiguation
Comment
-
so does bangbros
i don't disagree there , i have noticed similar things with bangbros but there are lots of other factors such as a qualified hit may be a "unique" ip not a "unique" hit for your ref codebangbros just doesn't count hits...AT ALL
I sent them at least 10,000 hits a while back and saw maybe 100-200 in their admin
i believe there were a few more affiliates that posted on gfy about the same problem....they sent a bunch of hits and maybe saw 10-20% showed up in the admin
nastydollars counts hits perfect
but hey you are arguing a moot point , i think most webmasters have noticed nats sponsors don't convert as well whatever the stats say. , all my top sponsors use custom backends.
can't argue with that for the most part
the fact is, the adult industry STINKS to high heaven these days, cheaters and scammers have run wild for years now, and that seems to be all that is left
hell, even a few of the largest program owners have been publicly OUTED for scamming or cheating affiliates, and they still get high fives!!!!
hatisblack at yahoo.comComment






Comment