Users browsing this thread: 2 Guest(s)
Don't go on Imgur right now. Its been compromised.
#1
https://www.reddit.com/r/4chan/comments/...creencaps/
(duplicate link from a separate subreddit because the first one has been downed once but is back)
https://www.reddit.com/r/KotakuInAction/...ith_4chan/
https://archive.is/6uBZ0

To sum things up, someone found an exploit in Imgur that makes it to where certain images affect your local storage and make you part of a bot net, assuming I understand this correctly. Its currently being used to screw with 8chan, but that doesn't necessarily mean that is all it will be doing.

I'd put this in a different thread, but it really needs to be seen.

Edit: This has primarily affected posts from /r/4chan. These get to the frontpage of imgur quite frequently, so it is advised to stay off of imgur. My sig and profile picture come from imgur. They're fine.

(09-22-2015, 07:23 AM)Kosheh Wrote: ONCE AGAIN: OUR SIGNATURES AREN'T GOING TO INFECT YOU WITH SPOOKY TROJANS. visiting the page they're on in imgur MIGHT

Basically, in english, there's an ongoing JavaScript issue where a link to imgur would open a few hundred pages to 8chan with an attempt to get people to "unknowingly" DDoS the site. The exploit's tucked away in the header of imgur pages IIRC, so items that are linked atm shouldn't impact your browsing experience today! Just stay vigilant today and the best suggestion is to just not browse imgur this morning. If you're braver, just disable Javascript and Flash loading on imgur.


If you're super lazy, just disable Flash in Chrome.
[Image: k0OsVum.png][Image: NXpkf1V.gif][Image: psychicspacecow.png]
Reply
Thanked by: Kriven
#2
(09-22-2015, 05:07 AM)psychospacecow Wrote: https://www.reddit.com/r/4chan/comments/...creencaps/
(duplicate link from a separate subreddit because the first one has been downed once but is back)
https://www.reddit.com/r/KotakuInAction/...ith_4chan/
https://archive.is/6uBZ0

To sum things up, someone found an exploit in Imgur that makes it to where certain images affect your local storage and make you part of a bot net, assuming I understand this correctly. Its currently being used to screw with 8chan, but that doesn't necessarily mean that is all it will be doing.

I'd put this in a different thread, but it really needs to be seen.

Apparently though from what I'm reading, it only seems to be affecting images linked from /r/4chan (the subreddit), so our images that we've uploaded ourselves in the past shouldn't be affected.

So, in conclusion, definitely don't visit /r/4chan (why are you visiting reddit anyway) and maaaaybbeee don't visit the imgur mainpage. In the meantime try to find an alternative image uploading site today until the issue subsides.

(any suggestions for something as convenient as Imgur?)
[Image: 57d2BGH.png]
! ! ! ! ! ! ! ! ! ! ! ! ! ! ! refs
shoutouts to cutesu for the new av!
Reply
Thanked by: psychospacecow
#3
Moved to General Discussion.
[Image: ndsMEF0.gif][Image: sig.gif]
Reply
Thanked by: psychospacecow
#4
I use reddit for lots of gaming communities.
Forgot to mention the /r/4chan part on this post. My bad. My avatar and signature are all on imgur.
[Image: k0OsVum.png][Image: NXpkf1V.gif][Image: psychicspacecow.png]
Reply
Thanked by:
#5
https://www.reddit.com/r/technology/comm..._and_ddos/
Better link than KIA.
[Image: k0OsVum.png][Image: NXpkf1V.gif][Image: psychicspacecow.png]
Reply
Thanked by:
#6
(09-22-2015, 06:13 AM)Vipershark Wrote: Moved to General Discussion.

yeah I was wondering what business this had in real life

imgur is in cyberspace. i don't talk to imgur in meatspace

(09-22-2015, 06:14 AM)psychospacecow Wrote: I use reddit for lots of gaming communities.
Forgot to mention the /r/4chan part on this post. My bad. My avatar and signature are all on imgur.

Well no one's really paid attention to the topic as of yet, but you might want to go back and mention that in the OP instead of scaring half of us to death because a good handful of us are people like you who upload everything on imgur.
ONCE AGAIN: OUR SIGNATURES AREN'T GOING TO INFECT YOU WITH SPOOKY TROJANS. visiting the page they're on in imgur MIGHT

Basically, in english, there's an ongoing JavaScript issue where a link to imgur would open a few hundred pages to 8chan with an attempt to get people to "unknowingly" DDoS the site. The exploit's tucked away in the header of imgur pages IIRC, so items that are linked atm shouldn't impact your browsing experience today! Just stay vigilant today and the best suggestion is to just not browse imgur this morning. If you're braver, just disable Javascript and Flash loading on imgur.


If you're super lazy, just disable Flash in Chrome.
[Image: 57d2BGH.png]
! ! ! ! ! ! ! ! ! ! ! ! ! ! ! refs
shoutouts to cutesu for the new av!
Reply
Thanked by: psychospacecow
#7
Fixed.

(09-22-2015, 07:23 AM)Kosheh Wrote:
(09-22-2015, 06:13 AM)Vipershark Wrote: Moved to General Discussion.

yeah I was wondering what business this had in real life

imgur is in cyberspace. i don't talk to imgur in meatspace

(09-22-2015, 06:14 AM)psychospacecow Wrote: I use reddit for lots of gaming communities.
Forgot to mention the /r/4chan part on this post. My bad. My avatar and signature are all on imgur.

Well no one's really paid attention to the topic as of yet, but you might want to go back and mention that in the OP instead of scaring half of us to death because a good handful of us are people like you who upload everything on imgur.
ONCE AGAIN: OUR SIGNATURES AREN'T GOING TO INFECT YOU WITH SPOOKY TROJANS. visiting the page they're on in imgur MIGHT

Basically, in english, there's an ongoing JavaScript issue where a link to imgur would open a few hundred pages to 8chan with an attempt to get people to "unknowingly" DDoS the site. The exploit's tucked away in the header of imgur pages IIRC, so items that are linked atm shouldn't impact your browsing experience today! Just stay vigilant today and the best suggestion is to just not browse imgur this morning. If you're braver, just disable Javascript and Flash loading on imgur.


If you're super lazy, just disable Flash in Chrome.

My bad in regards to that. Its early in the morning for me. Embarassed
[Image: k0OsVum.png][Image: NXpkf1V.gif][Image: psychicspacecow.png]
Reply
Thanked by:
#8
just when i start using imgur for my image hosting

crap

(09-22-2015, 06:03 AM)Kosheh Wrote: (any suggestions for something as convenient as Imgur?)

Until this is fixed, Minus is a decent enough website for hosting your images, if you can put up with the interface. I switched away from it after they made the only viewing option for galleries (i.e. albums) the worst possible style, but for a temporary thing it's not bad. It does allow drag-and-drop to add images like Imgur does, which is of course handy.
You may have a fresh start any moment you choose, for this thing that we call "failure" is not the falling down, but the staying down. -Mary Pickford
Reply
Thanked by:
#9
From what I've read, if you block 4cdns.org in hosts (or just use NoScript as you should be) the issue won't affect you.

Anyway, Minus is absolute crap now.
I use Abload.de when I don't use imgur. It's all in german but it's easy to use and won't compress large images.
[Image: ndsMEF0.gif][Image: sig.gif]
Reply
Thanked by:
#10
Apparently, this has been patched. See here: https://imgur.com/blog/2015/09/22/imgur-...y-patched/
Reply
#11
Now that it's over, who the hell goes on /r/4chan instead of the actual site?

[Image: 2014-11-19_1823.png]
Reply
Thanked by:
#12
(09-23-2015, 09:28 AM)Pik Wrote: Now that it's over, who the hell goes on /r/4chan instead of the actual site?

From my experience, people who find some things on there funny but don't want to skim through all the 4chan to get to it, and people that don't mind doing that, but really like reddit karma.
[Image: k0OsVum.png][Image: NXpkf1V.gif][Image: psychicspacecow.png]
Reply
Thanked by:


Forum Jump: