|
|
|
Oh dear., or: a wikipedian's worse dream come true? |
|
|
CrazyGameOfPoker |
|
Senior Member
Group: Regulars
Posts: 332
Joined:
Member No.: 58
|
It seems like either some admins have gone rouge rogue, or even worse someone's cracking into their accounts. First it was AndyZ who made a very "special" deletions, and another special block before finally being caught and desysopped. As people were trying to figure out what exactly happened (Dmdevit apparently posted AndyZ's IP address as part of checkuser on AN/I, but I can't find the diff), a more sinister plot was brewing... Apparently the devious cracker (or perhaps a copycat), found another account to get into. Apparently he decided to one up the main page image vandal, by replacing those lovely sitenotices that are on every page with Goatse. (Well he also blocked Jimbo and deleted the Main Page again, but that's small fish) In order to calm the populace, it seems that Brion's going to run a cracker in order to find admins with weak passwords. Meanwhile one has to wonder if this particular reign of terror is going to continue. (IMG: smilys0b23ax56/default/ph34r.gif)
|
|
|
|
Somey |
|
Can't actually moderate (or even post)
Group: Moderators
Posts: 11,816
Joined:
From: Dreamland
Member No.: 275
|
And as usual, Cyde isn't very forgiving. QUOTE(User:Cyde @ 14:16, 7 May 2007 UTC) Why should we trust you to be an admin again? Your failure to take adequate security measures already got us a Tubgirl on the top of every page on Wikipedia. I and many others no longer trust you to have access to the bit anyway. Well, I'd just like to say that I myself trust Jiang implicitly, and not only with the bit, but also the halter, the stirrups, and possibly even the lead rope. I heard a rumor that his password was actually "jiang"...
|
|
|
|
Somey |
|
Can't actually moderate (or even post)
Group: Moderators
Posts: 11,816
Joined:
From: Dreamland
Member No.: 275
|
What was he doing, just blocking people at random? I mean, if the guy can program a bot to guess passwords, can't he program one to block all the other admins in under 60 seconds, so they don't have time to react? Or something?C'mon, whoever you are! Can't you just save one account to do something really useful with, like start a huge wheel war with JoshuaZ, or maybe just mass-revert everything Jayjg and SlimVirgin have done since, well, Day One? Not that he's likely to be reading this... (IMG: smilys0b23ax56/default/sad.gif) Come to think of it, this is starting to reach media-attention proportions, isn't it?
|
|
|
|
Rootology |
|
Fat Cat
Group: Regulars
Posts: 1,489
Joined:
Member No.: 877
|
|
|
|
|
Unrepentant Vandal |
|
Ãœber Member
Group: Regulars
Posts: 866
Joined:
Member No.: 394
|
Well chaps, I must admit that when this story broke I was very amused, and quickly got someone even less gainfully employed than myself to write a program to test these things. I can now report that the ten most inactive admins (from the list of wikipedian admins) do not have any of the 760 most commonly used passwords which I found on the net somewhere. None of them had any of these passwords, unfortunately.
If the person *is* reading this, please change the password of any remaining compromised accounts to aardvark, it would make these searches a lot quicker.
Note that there is nothing that Wikipedia can do about this, in the long term, without substantial redesign. They can brute force the current admins and enforce password change. It would be almost impossible to do this for all current users. An intelligent cracker will be looking for future admins to try. Even if number of logins is restricted, just try 5 logins for each user. Restrict it by IP and distributed computing is your friend. Remember to monitor new users, and keep a database of those whose passwords you obtain for future use, etc etc.
I'm not sure whether I should post the program or not, but at the moment I'm leading towards no.
|
|
|
|
Somey |
|
Can't actually moderate (or even post)
Group: Moderators
Posts: 11,816
Joined:
From: Dreamland
Member No.: 275
|
QUOTE(The Joy @ Mon 7th May 2007, 2:45pm) What is this person's agenda? My guess is he's upset about the supposedly "NPOV" coverage of Sony's PlayStation_3 sixth-generation videogame console. One can hardly blame him... QUOTE Is he a disgruntled former Wikipedian or something? Or some crazed prankster? Well, he's indef-blocked Jimbo twice now, so he at least knows that much about what's going on... In fact, this makes four times for ol' Jimbo. Pretty soon he's going to be branded a "recurring bannee." This is the most fun we've had in months!
|
|
|
|
|
|
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:
| |