Mangatraders Hacked, and How it Affects MU

11 years ago
Posts: 2596
Since the list isn't and shouldn't be posted, here's a pretty nifty tool credits to Nuck from reddit: [url]http://anipasscheck.herokuapp.com/[/url]
Put in your email and check.
11 years ago
Posts: 267
well, how do you read an md5?
i downloaded an i assume full list because it has 905000~ accounts, and i see my email there
not going to bother changeing passwords because i just dont care, everything of importance uses its own set of passwords, and everything that i consider throwaway uses a different, but i want to see if i can get my own password from it so i know which of the throw away ones is compromised.

11 years ago
Posts: 315
Thank you 🙂
High above the tree tops.
11 years ago
Posts: 9
I have an account but don't know which e-mail (likely dead) or password I used. I guess I should go change the password on some sites that use the throwaway password including this one.
Why do I feel oddly conflicted about throwaway passwords... almost like a large portion of my life was spent on those sites.
11 years ago
Posts: 0
At least you can access your MU account. I had to make another (hopefully temporary) one because after changing the password it's asking me to verify my e-mail account via a non-existent e-mail. If I try to get the site to reset the e-mail to try and get another one sent it says the account doesn't exist -_-

11 years ago
Posts: 2596
That's weird. I changed my pw just now and it didn't ask for my verification. Have you contacted one of the admins?

11 years ago
Posts: 10862
Quote from chueisha
That's weird. I changed my pw just now and it didn't ask for my verification. Have you contacted one of the admins?
He tried to change his email at the same time as his password, and the email he input wasn't actually a correct email address, so he locked himself out of his own account
A just ruler amongst tyrants
11 years ago
Posts: 8
Thank you oh so very much. I see now, I filled in the e-mail thinking I had to type it in as well for the password change -_-

11 years ago
Posts: 3
Oh wow, I didn't even realise MT got hacked, after some googling I found the list and behold, my account and trusty old password was there. Now a mass password change begins.

11 years ago
Posts: 156
I'm so freakin' angry about this and even more angry at MT. I've been using MT as long as I've been using MU, if not longer. I had a pretty simple password that I used on MT that I've used on many, many other sites that I frequent for leisure (forums, manga websites etc.). Of course, I don't have the same password for important websites like email, banking, credit card etc (I have unique passwords for each of those). However, there's been plenty of other websites and forums that I've long abandoned for which I've used that same password.
Fortunately, I never updated my email for MT. The email address that I had registered for MT (which is showing up as one of those compromised) was hacked a long time ago and I've since stopped using it. I've only now just deleted it for safety's sake. I'm sooooo relieved that I never bothered updating my email info, though. After my old email got hacked, I went to my most frequented sites and updated all my email information. MT must have (thankfully) fallen through the cracks. I probably would have had an aneurysm if my current email had been the one compromised.
Ugh, consider it lesson learned. I'm not even going to use my normal email for any type of frivolous site. I've taken to registering for scanlator forums etc. with one of my throwaway emails every since the email hack.
I don't remember my Mangatraders pass, but I think the one I used there wasn't used in any other site.
This week's favorites:
ççççççç[Ô.Ô] tsutopodus© will eat your manga and steal your cats!
11 years ago
Posts: 397
well, how do you read an md5?
There are MD5 lookup tables online at this point.... It was designed as a cryptographic hash function, but there are obscure mathematical ways of breaking it now. It's not incredibly fast to do so yet, but so many have been done already and if someone really wanted your password, they could reverse-engineer either it or one that hashes to the same thing under unsalted MD5.

11 years ago
Posts: 402
There is some thread on reddit discussing the MT issue, and there are screenshots posted there that show admin access to MU and to MAL (with the assumption that admin account passwords were gained from the MT crack since some admin used the same password here and on MT). Sorry if this has already been discussed, I spent the time changing all my passwords before I went looking for info. 🙁
Anyway, if it is indeed the case, what kind of mischief can we expect from that? Wouldn't it be prudent to reset the passwords for all admins and mods?
11 years ago
Posts: 2
I checked mine here:
https://haveibeenpwned.com/
and the site you've mentioned above.... thankfully i'm in the safe zone... I hope they'll recover soon...

11 years ago
Posts: 2596
I think MU caught onto this and already took action. Someone probably cross listed the list with one of the admins and figured out the login.