Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


PSA: Cloudie Networks breached - Page 2
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

PSA: Cloudie Networks breached

2456789

Comments

  • AdvinAdvin Member, Patron Provider

    @HostSlick said:
    All in all Sounds not that good but

    200USD.... Thats Sounds fair. Many Hackers i have Seen demand thousands to not leak it.

    I would probably Just have paid that bucks to lower any damage when your company is already small. Its not like it will break your wallet.

    The price is indeed alright, but you will have to have some faith in the hacker to not ask for more money in the future and/or keep the data safe or deleted. It could buy you some time, but it's just not a guarantee that customer data would stay safe in the future, just that it probably won't be leaked immediately. Maybe you could pay it, but you should still inform clients of the breach.

    Thanked by 1nick_
  • HostSlickHostSlick Member, Patron Provider
    edited December 2023

    @Mustafa said:

    @HostSlick said:
    All in all Sounds not that good but

    200USD.... Thats Sounds fair. Many Hackers i have Seen demand thousands to not leak it.

    I would probably Just have paid that bucks to lower any damage when your company is already small. Its not like it will break your wallet.

    Thing is, you have no guarantee they will not leak it, they make take your money and still do all the shit to you. I wouldn't trust them, especially when they seem like a total retards trying to extort one-man operations.

    Yea no guarantee. But you can Chat with your counterparty before and If your a bit into psychology you will find Out how they tick and decide upon that. Social skills.

    I dont see full conversation but seeing cloudie Response might have gotten the attacker angry to finally Release The Data it seeems.

    Its basically saying "idc"

    That could have been Handled different

  • edited December 2023

    @Mustafa said:

    @HostSlick said:
    All in all Sounds not that good but

    200USD.... Thats Sounds fair. Many Hackers i have Seen demand thousands to not leak it.

    I would probably Just have paid that bucks to lower any damage when your company is already small. Its not like it will break your wallet.

    Thing is, you have no guarantee they will not leak it, they make take your money and still do all the shit to you. I wouldn't trust them, especially when they seem like a total retards trying to extort one-man operations.

    Those who pay are probably the same people that think they are going to get a decryption key for their files once they've instructed WU or sent Bitcoin. All they are likely going to get is a remark next to their name saying "profitable" and another message...

  • MustafaMustafa Member
    edited December 2023

    @totally_not_banned said:

    @Mustafa said:

    @HostSlick said:
    All in all Sounds not that good but

    200USD.... Thats Sounds fair. Many Hackers i have Seen demand thousands to not leak it.

    I would probably Just have paid that bucks to lower any damage when your company is already small. Its not like it will break your wallet.

    Thing is, you have no guarantee they will not leak it, they make take your money and still do all the shit to you. I wouldn't trust them, especially when they seem like a total retards trying to extort one-man operations.

    Those who pay are probably the same people that think they are going to get a decryption key for their files once they've instructed WU or sent Bitcoin. All they are likely going to get is a remark next to their name saying "profitable" and another message...

    If anything, it would make more like to go after them than paying. Especially when they seem this dumb, but maybe that's just me. I wouldn't let anyone attack my business and get away with it.

    Thanked by 1crunchbits
  • @Mustafa said:

    @totally_not_banned said:

    @Mustafa said:

    @HostSlick said:
    All in all Sounds not that good but

    200USD.... Thats Sounds fair. Many Hackers i have Seen demand thousands to not leak it.

    I would probably Just have paid that bucks to lower any damage when your company is already small. Its not like it will break your wallet.

    Thing is, you have no guarantee they will not leak it, they make take your money and still do all the shit to you. I wouldn't trust them, especially when they seem like a total retards trying to extort one-man operations.

    Those who pay are probably the same people that think they are going to get a decryption key for their files once they've instructed WU or sent Bitcoin. All they are likely going to get is a remark next to their name saying "profitable" and another message...

    If anything, it would make more like to go after them than paying. Especially when they seem this dumb, but maybe that's just me. I wouldn't let anyone attack my business and get away with it.

    Yeah and like i've said, giving in to demands is basically encouragement.

  • @HostSlick said:

    @Mustafa said:

    @HostSlick said:
    All in all Sounds not that good but

    200USD.... Thats Sounds fair. Many Hackers i have Seen demand thousands to not leak it.

    I would probably Just have paid that bucks to lower any damage when your company is already small. Its not like it will break your wallet.

    Thing is, you have no guarantee they will not leak it, they make take your money and still do all the shit to you. I wouldn't trust them, especially when they seem like a total retards trying to extort one-man operations.

    Yea no guarantee. But you can Chat with your counterparty before and If your a bit into psychology you will find Out how they tick and decide upon that. Social skills.

    I dont see full conversation but seeing cloudie Response might have gotten the attacker angry to finally Release The Data it seeems.

    Its basically saying "idc"

    That could have been Handled different

    It's not like saying "ic" will make things go differently. It's all about money, I am pretty sure they will sell the database dump regardless cloudie paying them or not.

    Thanked by 1totally_not_banned
  • @Mustafa said: Thing is, you have no guarantee they will not leak it, they make take your money and still do all the shit to you. I wouldn't trust them, especially when they seem like a total retards trying to extort one-man operations.

    There is a good chance if they maintained to their racketeering they would never release it. I also don't think its good to say 'i dont care' when you're a one man band. But, honestly what do you do?
    Damned if you do, damne if you dont.

    Thanked by 1HostSlick
  • @Advin said: The price is indeed alright, but you will have to have some faith in the hacker to not ask for more money in the future

    They will definitely ask for more in the future. The targets in these cases, if they pay, will become a pay pig.

    Thanked by 1totally_not_banned
  • Well seems like I can't login on my vps now from cloudie.

  • I will gift you a copy of wirusbuster latest version.

  • @jcolideles said:
    Well seems like I can't login on my vps now from cloudie.

    Might be in leaked db who knows 🙀

  • @totally_not_banned said: Yeah and like i've said, giving in to demands is basically encouragement.

    companies should put a page putting a price on bounty so that they can pay with right reason and not succumbing to demands as encouragement

    Thanked by 1totally_not_banned
  • MannDudeMannDude Host Rep, Veteran

    Has @Cloudie informed customers of this yet?

  • @MannDude said:
    Has @Cloudie informed customers of this yet?

    Nope, nada, nothing at all, looks like he really doesn't care now.

    Thanked by 1sillycat
  • @MannDude said:
    Has @Cloudie informed customers of this yet?

    Mods of his discord are deleting discussions of the breach, so technically the opposite.

  • MannDudeMannDude Host Rep, Veteran

    @fluffernutter said:

    @MannDude said:
    Has @Cloudie informed customers of this yet?

    Mods of his discord are deleting discussions of the breach, so technically the opposite.

    Jesus.

  • edited December 2023

    @fluffernutter said:

    @MannDude said:
    Has @Cloudie informed customers of this yet?

    Mods of his discord are deleting discussions of the breach, so technically the opposite.

    Does not surprise me that much to be honest. @Cloudie seems to be one of those companies that think disclosing their physical location is optional (or it's really well hidden / i'm blind once again) aka does not want serious business anyways.

    Thanked by 1sillycat
  • @totally_not_banned said: those companies that think disclosing their physical location is optional

    They are indeed one of those companies. There is no address listed on their website. They have a postal forwarding facility address on their ASN website, and the address listed in the Whois is a lawyer's office.

  • So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

  • @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Yup.

    Thanked by 1Maelstrom36
  • Extortion is extortion. No matter the justification. They are having fun and making money on the side. They have zero ethical high ground. Zero.

    The customers data is the equivalent of human shields in a conflict.

    Thanked by 1PulsedMedia
  • @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Unless someone decides to sue for GDPR breach :wink:

    Thanked by 1Mustafa
  • MustafaMustafa Member
    edited December 2023

    @fluffernutter said:

    @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Unless someone decides to sue for GDPR breach :wink:

    I've seen spicy shit in emails in this dump, ID scan links etc.
    They appear to do KYC in-house.

  • @Mustafa said:

    @fluffernutter said:

    @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Unless someone decides to sue for GDPR breach :wink:

    I've seen spicy shit in emails in this dump, ID scan links etc.

    Yeah I'm not impacted so I'll leave the lawsuits for someone else, but someone could probably get something out of it.

  • @fluffernutter said:

    @Mustafa said:

    @fluffernutter said:

    @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Unless someone decides to sue for GDPR breach :wink:

    I've seen spicy shit in emails in this dump, ID scan links etc.

    Yeah I'm not impacted so I'll leave the lawsuits for someone else, but someone could probably get something out of it.

    Condolences to their customers.

    Thanked by 1fluffernutter
  • @HostSlick said:
    All in all Sounds not that good but

    200USD.... Thats Sounds fair. Many Hackers i have Seen demand thousands to not leak it.

    I would probably Just have paid that bucks And demand a fix and how they got in to prevent in Future to lower any damage.

    Especially in Cloudie Case when your company is already small. Its not like it will break your wallet.

    That's the wrong way to go about this. They will always, I repeat, always come back for more and still end up extorting your clients anyways. Beside, saying you'll pay means you're the kind of "client" they're looking for.

  • MannDudeMannDude Host Rep, Veteran

    @Maelstrom36 said:

    @fluffernutter said:

    @Mustafa said:

    @fluffernutter said:

    @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Unless someone decides to sue for GDPR breach :wink:

    I've seen spicy shit in emails in this dump, ID scan links etc.

    Yeah I'm not impacted so I'll leave the lawsuits for someone else, but someone could probably get something out of it.

    Condolences to their customers.

    I'm sure Quadranet will be emailing them soon with some specials, so it's okay. /s

  • @fluffernutter said:

    @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Unless someone decides to sue for GDPR breach :wink:

    That's basically why i wanted to see where they are located. I'd guess it isn't Europe though as then they probably wouldn't be playing to no-physical-address game anyways. If they aren't located in Europe GDPR is bogus since as much as the EU would love to have extraterritorial jurisdiction they still don't have any.

  • @MannDude said:

    @Maelstrom36 said:

    @fluffernutter said:

    @Mustafa said:

    @fluffernutter said:

    @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Unless someone decides to sue for GDPR breach :wink:

    I've seen spicy shit in emails in this dump, ID scan links etc.

    Yeah I'm not impacted so I'll leave the lawsuits for someone else, but someone could probably get something out of it.

    Condolences to their customers.

    I'm sure Quadranet will be emailing them soon with some specials, so it's okay. /s

    Or maybe special refugee offers from a Romanian provider. /s

  • @Mustafa said:

    @fluffernutter said:

    @Maelstrom36 said:
    So the provider that was breached is just going to sweep this under the rug? When at the same time the dump is being passed around?

    Unless someone decides to sue for GDPR breach :wink:

    I've seen spicy shit in emails in this dump, ID scan links etc.
    They appear to do KYC in-house.

    This is why I tell providers who ask me to submit an ID to cancel my services. I’ll just go host stuff at AWS / Oracle.
    My government does a fine job of leaking my ID already lol

    Thanked by 1tentor
Sign In or Register to comment.