Author Topic: How is it possible  (Read 1909 times)

0 Members and 0 Guests are viewing this topic.

Offline Minnie_Monster

  • Poster
  • **
  • Posts: 73
  • windows xp
  • Location: N.C. 28311
How is it possible
« on: March 29, 2012, 12:59:50 pm »
I am sitting in chat room on an alisis id. Here is a guy that can pull up the main account id and put it in the room and ever alisis id attaced to the main account id and your name your phone number and adress and the kicker is I have my profile set on private and I have all my setting in my profile edited so that no one can see.How in the hell is this guy doing this and its not just with me its anyone in the room and he is able to access your e-mail and read them. WTF is he hacking. I am using YTK.
1) Operating System Windows XP PRO
2) Default Browser (MSN, Bing)...IE
3) Build Yahoo! Messenger - 11.5.0.228
 Beta
4) Build YTK...2.6 Build 108 beta
5) Antivirals ...Avast
6) Firewall ...Avast
 Internet connection type : ( Broadband High Speed Road Runner )... TWC

Share on Bluesky Share on Facebook


SomeGuyFromCanada

  • Guest
Re: How is it possible
« Reply #1 on: March 29, 2012, 05:18:36 pm »
It could be an exploit. I haven't heard of it though.

Might have something to do with the request contact details packet.
« Last Edit: March 29, 2012, 05:50:03 pm by SomeGuyFromCanada »

Offline Thomas

  • Enhanced User
  • Loaded
  • *****
  • Posts: 435
  • Location: Lafayette, Tennessee
Re: How is it possible
« Reply #2 on: March 29, 2012, 06:40:47 pm »
It could be an exploit. I haven't heard of it though.

Might have something to do with the request contact details packet.

i hope adam and brock can patch this in ytk
Windows 7 Home Premium Service Pack 1 (64 Bit)
Yahoo! Messenger Version 11.5.0 Build 228
YTK Enhanced Version 2.6 Build 108
Mozilla Firefox Version 17.0 (Beta)
Internet Explorer Version 9.0.8112.16421
TrojanHunter Version 5.5 Build 1002
HijackThis Version 2.0 Build 4
Wireless
Malwarebytes' Anti-Malware
SUPERAntiSpyware Free Edition

Offline Minnie_Monster

  • Poster
  • **
  • Posts: 73
  • windows xp
  • Location: N.C. 28311
Re: How is it possible
« Reply #3 on: March 29, 2012, 07:54:51 pm »
This guy and his wife are able to do this in room bbw6 their ids are: <removed> & <removed> these two are the ppl that can do this to ppl. He said a program he runs is a scan on an alisis ID and pulls up all alisis ids that are attached to main id and he put my main ID in the room and he did another girl main id off of her alisis and one girl said he read an e-mail she just sent a few mins ago. Could it be from an open ID source vaneriability. I don't know but it scarey he can do this from an alisis id.Somebody needs to check this out.

*Edit - Removed user ID's - SGFC
« Last Edit: March 29, 2012, 09:27:08 pm by SomeGuyFromCanada »
1) Operating System Windows XP PRO
2) Default Browser (MSN, Bing)...IE
3) Build Yahoo! Messenger - 11.5.0.228
 Beta
4) Build YTK...2.6 Build 108 beta
5) Antivirals ...Avast
6) Firewall ...Avast
 Internet connection type : ( Broadband High Speed Road Runner )... TWC

SomeGuyFromCanada

  • Guest
Re: How is it possible
« Reply #4 on: March 29, 2012, 09:26:12 pm »
i hope adam and brock can patch this in ytk

Doubtful, this is probably something Yahoo! would need to patch.

This guy and his wife are able to do this in room bbw6 their ids are: <removed> & <removed> these two are the ppl that can do this to ppl. He said a program he runs is a scan on an alisis ID and pulls up all alisis ids that are attached to main id and he put my main ID in the room and he did another girl main id off of her alisis and one girl said he read an e-mail she just sent a few mins ago. Could it be from an open ID source vaneriability. I don't know but it scarey he can do this from an alisis id.Somebody needs to check this out.

Sounds like he actually has access to the account. Not that he is actually scanning the ID. Because he can read emails and also knows the account info.

Offline jerseyguy56

  • Registered User
  • *
  • Posts: 45
  • Location: New Jersey
Re: How is it possible
« Reply #5 on: March 29, 2012, 10:03:20 pm »
When running yahoo messenger these days my Microsoft Security Essentials has been detecting
a trojan called PSW: Win32/Tibia.AB

This software is for capturing passwords.

Generally, the only time it's detected is when Yahoo Messenger is running.

This might be a way for these people to access your information.
OS: Microsoft Windows XP
Service Pack: 3
Root Drive: C:
Physical Memory: 1504 MB
CPU Speed: ~2404 MHz
CPU Count: 1
Default Browser Name: Google Chrome
Default Browser Path: C:\Program Files\GoogleChrome
Yahoo Messenger Ver: 10.1270
Administrative Rights: True
YTK Pro 499d
YTK Enhanced v.2.6.0.108
Microsoft Security Essentials
Windows Firewall

Offline Minnie_Monster

  • Poster
  • **
  • Posts: 73
  • windows xp
  • Location: N.C. 28311
Re: How is it possible
« Reply #6 on: March 29, 2012, 10:26:29 pm »
He can do anyone in the room from an alisis that your on at the time. And how can he do this ?
I just meet the guy and I use YTK all the time And I have got my setup locked down pretty good and he still did it on any account with and alisis id. When you sign into My Account IFO ok on that page go down and click Manage/create your openID then you will see your Your OpenID identifiers: I remember him saying something about HTTPS scanner and that what he is doing is public info. Then he he to abot and scanned it and he put something that looked like this in the room>>HuRkPzEgkJ8yzaRbUDOnF3RAShbIKdnEU
« Last Edit: March 29, 2012, 10:42:15 pm by Minnie_Monster »
1) Operating System Windows XP PRO
2) Default Browser (MSN, Bing)...IE
3) Build Yahoo! Messenger - 11.5.0.228
 Beta
4) Build YTK...2.6 Build 108 beta
5) Antivirals ...Avast
6) Firewall ...Avast
 Internet connection type : ( Broadband High Speed Road Runner )... TWC

Clusterphuck

  • Guest
Re: How is it possible
« Reply #7 on: March 29, 2012, 10:47:07 pm »
There's an exploit (it's a link actually) being used that reveals a person's main ID thus rendering Gawd Mode completely useless if an attacker were to use it. Just wait for it to get patched by Yahoo, if ever.

Offline Minnie_Monster

  • Poster
  • **
  • Posts: 73
  • windows xp
  • Location: N.C. 28311
Re: How is it possible
« Reply #8 on: March 30, 2012, 12:59:22 am »
I knew it had to be some type of exploit. Ok guy's just thought I would make some of us aware of this exploit.
1) Operating System Windows XP PRO
2) Default Browser (MSN, Bing)...IE
3) Build Yahoo! Messenger - 11.5.0.228
 Beta
4) Build YTK...2.6 Build 108 beta
5) Antivirals ...Avast
6) Firewall ...Avast
 Internet connection type : ( Broadband High Speed Road Runner )... TWC

SomeGuyFromCanada

  • Guest
Re: How is it possible
« Reply #9 on: March 30, 2012, 01:55:29 am »
The exploit mentioned above wouldn't reveal every single alias or contact info. Or even email.

Offline Minnie_Monster

  • Poster
  • **
  • Posts: 73
  • windows xp
  • Location: N.C. 28311
Re: How is it possible
« Reply #10 on: March 30, 2012, 05:53:17 pm »
ok last night this same guy was in the room and I was chatting with afriend and all of a sudden he pmed me and said thats one of his accounts that just came in the room. Then it left and I told him to see if he could sign into it and he could then that wizard say to a girl in the room that he took her ids but he would give them back so this guy is hacking accounts in bbw6. What ever he is using its getting into your account.
1) Operating System Windows XP PRO
2) Default Browser (MSN, Bing)...IE
3) Build Yahoo! Messenger - 11.5.0.228
 Beta
4) Build YTK...2.6 Build 108 beta
5) Antivirals ...Avast
6) Firewall ...Avast
 Internet connection type : ( Broadband High Speed Road Runner )... TWC

SomeGuyFromCanada

  • Guest
Re: How is it possible
« Reply #11 on: March 30, 2012, 06:17:37 pm »
One interesting thing is if you look into your conversation history (stored on Yahoo! server). It shows an email address if you hover over the user's name/ID. For the most part the email it shows is accurate.

Offline Thomas

  • Enhanced User
  • Loaded
  • *****
  • Posts: 435
  • Location: Lafayette, Tennessee
Re: How is it possible
« Reply #12 on: March 31, 2012, 01:35:59 am »
this program need be patch and we all know that yahoo takes there sweet time in patching stuff that is a high risk unless somebody tell them what to look for then it patch fast
Windows 7 Home Premium Service Pack 1 (64 Bit)
Yahoo! Messenger Version 11.5.0 Build 228
YTK Enhanced Version 2.6 Build 108
Mozilla Firefox Version 17.0 (Beta)
Internet Explorer Version 9.0.8112.16421
TrojanHunter Version 5.5 Build 1002
HijackThis Version 2.0 Build 4
Wireless
Malwarebytes' Anti-Malware
SUPERAntiSpyware Free Edition

Offline James

  • Unbootable
  • *****
  • Posts: 525
  • Location: Burlington, N.C.
Re: How is it possible
« Reply #13 on: March 31, 2012, 04:16:46 pm »
haha stay away from the bbw and pick up bar rooms
Dell Inspiron 1564
Intel Core i3 M 330 2.13GHz
Windows 7 Home Premium 64bit
Kaspersky Internet Security 2010
Google Chrome (newest)
YTK Enhanced (newest)
Vc Sync (newest)
Yahoo Messenger (newest)
At&t dsl 6mbps

Offline Adam X

  • Developer
  • Administrator
  • 1337
  • *
  • Posts: I am a geek!!
  • "I can hit a target through a telescope!"
  • Location: Ohio
Re: How is it possible
« Reply #14 on: April 01, 2012, 04:19:40 am »
There's been at least one way to grab the main id of an account for a very long time (which I still have working). This is why I recommend going into chat on the main id and not the alias. When they check your name they'll just see the main id and won't have any of the aliases you may have on your account in their possession. It's easier to boot a person when they have aliases that are known because the chat servers treat them as separate target recipients (more flooding can be done before bans occur).

As far as posting address info, phone numbers, etc, I can do this as well. The way I'm able to do it is not through Yahoo! at all, it's through a survey site that you can use to reveal the information for any e-mail address (if they're in the database). Scary stuff but this has always been possible. Your "hidden" display pics can be viewed as well. More than 2 years ago I discovered a way to do this which still works and two more ways over the years which also still work. I haven't seen this being used by anybody to do anything other than peep on people's hidden pictures. I can turn their display pic/avatar off/on as well which is what I discovered a couple years back. There's a lot of stuff that can still be done, some of it I'll be reporting to Yahoo! when it becomes public, some without waiting.

Maybe I'll pay a visit to this room sometime and see what they can do to me. They're likely using something similar to what I have to "drop docs" (term for grabbing and revealing a person's personal information). If a Yahoo! production server (web server etc) has been compromised then they can get this information there too, but this may not be limited to just within Yahoo!'s own realm. The way I do it isn't limited to just Yahoo!/Yahoo! Chat.