Thread Tools Display Modes
11-22-13, 11:13 AM   #1
Rilgamon
Premium Member
 
Rilgamon's Avatar
Premium Member
AddOn Author - Click to view addons
Join Date: Sep 2009
Posts: 822
Change your github password

Warning to GITHUB users, Please reset your passwords now! Use best possible strong password. Recently many #Github accounts (with weak password) were compromised in a massive brute force attack from 40,000 IP addresses. DETAILS:
https://plus.google.com/112788764123...ts/JwDhf1JffWs
__________________
The cataclysm broke the world ... and the pandas could not fix it!
  Reply With Quote
11-22-13, 11:50 AM   #2
Haleth
This Space For Rent
 
Haleth's Avatar
Featured
Join Date: Sep 2008
Posts: 1,173
Affected users have had their passwords reset, but it's a good idea to change your password anyway.

I can see several failed login attempts on my GitHub account over the past couple of days, from Venezuela, China and Mexico.

Last edited by Haleth : 11-22-13 at 11:52 AM.
  Reply With Quote
11-22-13, 03:02 PM   #3
Resike
A Pyroguard Emberseer
AddOn Author - Click to view addons
Join Date: Mar 2010
Posts: 1,290
Well if you use weak passwords then you deserve it. A good password should not be able to be bruteforced over a year on an average PC.
  Reply With Quote
11-22-13, 09:31 PM   #4
Phanx
Cat.
 
Phanx's Avatar
AddOn Author - Click to view addons
Join Date: Mar 2006
Posts: 5,617
Better link:
https://github.com/blog/1698-weak-pa...s-brute-forced

No thanks on clicking through some annoying Google+ page just to get to some two-bit "social news" site's crappy page full of ads that spams me with a giant modal popup begging me to like them on Facebook, ugh. ಠ_ಠ

Anyway, GitHub says they sent out emails to the affected users, but with such an enormous breach, I'd rather they sent emails to all users. I didn't get an email, so apparently I wasn't "affected", but I changed my password anyway. Admittedly my GitHub password was pretty weak (same old easy-to-remember password I use for a bunch of random accounts that contains no personal info and nothing important) but apparently a short, all-lowercase-letters password that isn't a dictionary word was still "strong enough", lol.
__________________
Retired author of too many addons.
Message me if you're interested in taking over one of my addons.
Don’t message me about addon bugs or programming questions.

Last edited by Phanx : 11-22-13 at 09:34 PM.
  Reply With Quote
11-23-13, 04:58 AM   #5
Rilgamon
Premium Member
 
Rilgamon's Avatar
Premium Member
AddOn Author - Click to view addons
Join Date: Sep 2009
Posts: 822
Originally Posted by Phanx View Post
No thanks on clicking through some annoying Google+ page
While true I chose to link the source I got the information from to honour the act of sharing
__________________
The cataclysm broke the world ... and the pandas could not fix it!
  Reply With Quote
11-23-13, 07:37 AM   #6
Rainrider
A Firelord
AddOn Author - Click to view addons
Join Date: Nov 2008
Posts: 454
Github's advise: http://xkcd.com/936/
  Reply With Quote

WoWInterface » General Discussion » Chit-Chat » Change your github password


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off