No.1199635
File: 1758555789794.jpg (7.56 KB, 219x230, 219:230, heavy_breathing.jpg) ImgOps Exif Google
There is a Discord hack going around. Asking you to review an indie game their friend is working on with a link that looks real.
Please be wary of anyone you haven't spoken to in years suddenly messaging you and sending you Discord links.
As far as I know, the following former and current users of Ponychan and Ponyville have been confirmed as hacked: Wheat, Manley, Esh, and Agiri
No.1199638
File: 1758561933955.png (55.25 KB, 219x187, 219:187, neeeat.png) ImgOps Google
Wheat and Manley are still active out there?
I mean, I hope they do recover from this thing.
No.1199652
Yeah, to give some more specifics, it's the "Test out this game I made" scam.
The scammer uses that to hack your account, then demands you pay them money to not sell your passwords to various accounts. They actually did send me screenshots of password lists, briefly wrote a message in the chat from my own account, and could see I had bought Steam Games.
I refused to bow to this, and soon after I was kicked off of my Discord profile and could not log back in or even recover the password, since they appear to have changed the recovery e-mail attached to the account.
The funny thing is they downright haggled with me. As in, demanded 200 Euros first, but gradually went down to 150 and 100 as I insisted I don't actually have that kind of cash and they hit a fairly broke target. So there are people behind it, cause they can respond to what you say. Not just bots.
I obviously ticketed Discord right away (and like a bunch of clowns they've sent a "Rate our performance in support!" email before even getting around to the problem), changed all major Google, PayPal ETC passwords, checked and uninstalled all apps installed that day, and so forth. Nothing else has happened yet, and I suspect it actually won't, as this appears to be more of a scare tactic to get you to pay.
After all, if they wanted money and could actually use all my passwords, they'd have just gone to PayPal and sent whatever they could to themselves instead of trying to haggle with me.
That said, it certainly was scary to realize that yes, they had indeed gotten access, if to nothing else, then to my actual Discord account and could write messages in my name.
So yeah. If anyone - and that goes for any friends you have who dabble in Game Dev, too - ask you to "test a game for a few minutes" and insist you do it soon, don't engage, report and tell the same story.
I honestly should have smelled the bait cause it was from someone I haven't talked to in a long time on Discord, but I was working on something else and am usually more than happy to help friends out for a second, so I got suckered right in.
No.1199664
File: 1758578821069.jpeg (38.39 KB, 640x400, 8:5, random_58.jpeg) ImgOps Google
Never run an executable of untrusted provenance outside of a sandbox (VM or at least a Docker container, or a wipeable 'burner' computer with no sensitive data).
No.1199753
File: 1758660233272.png (709.45 KB, 1200x671, 1200:671, 142864206208.png) ImgOps Google
>>1199744I did, as well. Haven't heard from him in probably months, stuck here wondering if he's even still alive, and now some hacker is puppeting his corpse. State of the world today, sheesh.
No.1199832
File: 1758751342294.png (37.56 KB, 826x601, 826:601, 4.png) ImgOps Google
>tfw working on a game and now if I ask people to test it, they'll immediately assume my account is hacked and I'm trying to scam them>>1199664This is good advice in general when it comes to computers. I thought people had already learned this years ago, but apparently not.
Also use MFA on every important account.
No.1200295
File: 1759573297843.gif (286.72 KB, 550x400, 11:8, dash147.gif) ImgOps Google
>>1200294Good it's back to normal.
No.1200296
>>1200295It's certainly nice to havei t back. I've done a little cleanup deleting the messages the hacker sent, apologized where it did happen, and of course let the few people that I had added on a temporary account now - and told them to just ask me any question they need to to confirm my identity.
Thankfully they don't seem to have contacted that many people, and didn't post in any servers I was in.
No.1200333
File: 1759613137360.png (323.73 KB, 532x718, 266:359, Capture _2021-12-08-22-01-….png) ImgOps Google
okay good time to unblock
No.1200353
File: 1759655718199.gif (1.76 MB, 640x426, 320:213, bweh.gif) ImgOps Google
Crazy shit: Discord ITSELF got hacked recently. Specifically Discord support got hacked, so all the people who went to Discord for help from getting hacked now have their information taken, maybe