My discord is no longer hacked!
4 years ago
Active here and on:
◄DeviantART - YouTube - Picarto.tv - Eka-Portal - Tumblr - Twitter►
Update: I'm BACK, I got my account back
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Copied from pocket's journal:
hey guys there is a hacker out there gaining control of people's discord DO NOT TEST ANY GAME YOUR FRIENDS ASK YOU TO ESPECIALLY IF THE FILE IS CALLED "DEATHSTICK"
https://www.furaffinity.net/journal/10028762/
Feedfancier already got hacked and I downloaded the game as well so even if you get a message from me about a game don't accept it, don't click suspicious files
I seem to still have access to my discord for now, changed my password and all but be careful everyone!
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Copied from pocket's journal:
hey guys there is a hacker out there gaining control of people's discord DO NOT TEST ANY GAME YOUR FRIENDS ASK YOU TO ESPECIALLY IF THE FILE IS CALLED "DEATHSTICK"
https://www.furaffinity.net/journal/10028762/
Feedfancier already got hacked and I downloaded the game as well so even if you get a message from me about a game don't accept it, don't click suspicious files
I seem to still have access to my discord for now, changed my password and all but be careful everyone!
Lhiaans-of-Lhiardikaz
~lhiaans-of-lhiardikaz
That is terrible! Hope they catch the guy doing this!
Mircea
~mircea
This is happening so often now, countless people are reporting it. It's beyond me how Discord is this incapable of doing anything about it. I hear it happens when you click suspicious spam links sent by other hacked accounts, be careful what you click on.
nereidalbel
~nereidalbel
Clicking the link the bot sends you steals your authentication token, meaning two-factor doesn't even save your account. And the only thing Discord could do to prevent it is disable sending links entirely and, well, that would just kill the platform.
Mircea
~mircea
Yeah definitely not disable links. But can't they disable that token, or add something to the client to prevent it being automatically sent to another website through a bot? There are so many chat clients and I've never heard of those things happening on any other. Wish everyone moved to Matrix or XMPP or Tox, till then we're stuck with the insecure Discord.
nereidalbel
~nereidalbel
Resetting your password disables your token. And it's not so much a Discord vulnerability as having it open Discord in your browser, and intercepting the token as you connect. Browsers are actually more at fault for it working than Discord, unfortunately.
Mircea
~mircea
Oh: Does it happen only in the web client, or also the application running on the desktop? I rarely use web since Discord for Linux works well for me and at least they maintain that accordingly. IIRC it can be a danger on either still.
nereidalbel
~nereidalbel
The link sent on the desktop client opens the web client, specifically so they can route it through an insecure connection to yoink your token.
PocketJabari
~pocketjabari
wait, that wasn't you talking to me about the game? they it caused discord to crash and then they wanted me to install a team viewer type thing but i refused as it all seemed sketchy, luckily I have two factor authentication
PocketJabari
~pocketjabari
we did a call but they refused to get on voice

What a limp dick Weiner that guy is.
Char Eschantz
~char89
*sighs* Not again.
testsubject6
~testsubject6
Thank God it's back, was about to make a journal warning people about it

you should. to remind people about this shit.
testsubject6
~testsubject6
You're right, I could turn it into a PSA post so people will know what to avoid.
AzureSun30
~azuresun30
it happened to me a month ago and it even ahcked into my YT account and got it deleted because of spam :(

I'm sorry this happened to you. All these whimpers can really suck.
FA+