• Re: Knock knock?

    From Ogg@700:100/16 to Nelgin on Wed Jun 30 08:45:53 2021
    On 2/16/2021 1:56 PM, between "Nelgin":

    Nelgin wrote:
    Nope, not a joke...but looking for a way into the darknet.

    This is mainly for research and not nefarious reasons.

    I get emails from my monitoring service to say that my information has been >> found "on the darkweb" but it doesn't give any indication as to what site or >> what credentials may have been stolen.

    If you can offer a way in, and would like to chat drop me a netmail or email.

    Thanks,

    I guess I'll just talk to myself then...

    Any progress into that realm of dark?
    --- SBBSecho 3.14-Linux
    * Origin: End Of The Line BBS - endofthelinebbs.com (700:100/16)
  • From Nelgin@700:100/16 to Ogg on Thu Jul 1 11:16:21 2021
    Ogg wrote:
    On 2/16/2021 1:56 PM, between "Nelgin":

    Nelgin wrote:
    Nope, not a joke...but looking for a way into the darknet.

    This is mainly for research and not nefarious reasons.

    I get emails from my monitoring service to say that my information has been >>> found "on the darkweb" but it doesn't give any indication as to what site or
    what credentials may have been stolen.

    If you can offer a way in, and would like to chat drop me a netmail or email.

    Thanks,

    I guess I'll just talk to myself then...

    Any progress into that realm of dark?

    Nope. This network is so very helpful.
    --- SBBSecho 3.14-Linux
    * Origin: End Of The Line BBS - endofthelinebbs.com (700:100/16)
  • From Ogg@700:100/16 to Nelgin on Thu Jul 1 20:56:26 2021
    On 7/1/2021 12:16 PM, between "Nelgin":

    ..my information has been
    found "on the darkweb" but it doesn't give any indication as to what site or
    what credentials may have been stolen.

    If you can offer a way in, and would like to chat drop me a netmail or email.

    I guess I'll just talk to myself then...

    Any progress into that realm of dark?

    Nope. This network is so very helpful.

    I would bet that those emails are bogus. Reminds me of the emails I'd get telling me that my webcam has captured me doing things ..and if I didn't cough up X-amount of bitcoin, the files will be released. So, maybe your email is just an empty threat too.

    Wrt darkweb.. I can't imagine that it would be too hard to get in. The sites/domains probably don't have typical names though. But even if you did get






















































































































    in, the files and data would probably be so obfuscated that you'd probably not find your specific data anyway.
    --- SBBSecho 3.14-Linux
    * Origin: End Of The Line BBS - endofthelinebbs.com (700:100/16)
  • From c0re@700:100/37 to Nelgin on Fri Dec 3 15:09:58 2021
    I get emails from my monitoring service to say that my information has >>> found "on the darkweb" but it doesn't give any indication as to what s or
    what credentials may have been stolen.

    I get those sometimes too. I know one of them for a fact was an old account I had on roll20.net, and my password was revealed. But since I use a different password for everything anyway, it wasn't a concern.

    Here's the deal though: a lot of times, what happens in these breaches is that someone gets a trove of data (usually in the GB or TB range) from a website that didn't secure their servers, and makes a post on a darkweb site (there are many onion sites for hacking and skimming) offering to sell the data to the highest bidder. They don't release anything to prove they have the data, or a sample to prove its actually useful for a buyer, but they usually post something along the lines of "five days ago, (enter some cheesy hacker name) (then follow up with a bunch of technical jargon ripped from a different cheesy 80s hacker film) and got this massive batch of several million users. 1 user for 100 BTC, 10 for 1000, etc." with whatever price they feel like setting.

    What actually is contained in those breaches is usually nothing more than usernames and hashes, maybe login time data, or some other metadata. Its very rare (but not impossible) to actually have your password exposed.

    If you really want to dig in, start by learning how to access onion sites, and then find an onion search engine or directory, it won't take more than a few minutes to find one of these sites and see for yourself. Every time I browse them, they just reek of 12-year-olds larping to each other. Its the darkweb version of mall ninjas.

    --- Mystic BBS v1.12 A47 2021/08/10 (Linux/64)
    * Origin: thE qUAntUm wOrmhOlE, rAmsgAtE, uK. bbs.erb.pw (700:100/37)