A computer hacker caused $4M of damage in cyber-attacks on Microsoft and Nintendo after he…
In total, defaulted subreddits are visited by tens of millions of people. Attack affected large communities, dedicated to the National Football League, Disneyland, many popular TV shows and films, and so on.
For example, the r/space and r/food communities alone have 17 and 19 million subscribers.
Reddit engineers reported that they are already investigating an incident and explained that the massive defacement of subreddits occurred due to the compromise of moderator’s accounts of popular communities.
“There is an ongoing incident with moderator accounts being compromised and used to vandalize subreddits. We’re working on locking down the bad actors and reverting the changes”, — write Reddit developers.
Currently, Reddit blocks hacked moderator accounts and returns control to their real owners. Most of the hacked communities have already returned to normal functioning or have been permanently banned.
It is not yet clear how exactly unknowns compromised such a number of moderators, but according to Reddit staff, none of the hacked accounts were protected by two-factor authentication.
On Twitter appeared and was banned an account, the authors of which claimed responsibility for hacks and defaces. However, no one has yet confirmed the reliability of these statements.
Interestingly, the massive deface of subreddits took place five weeks after the scandalous blocking of the r/The_Donald community of Donald Trump supporters.
Then the representatives of Reddit reported that the reason for the ban was multiple violations of the rules, as well as regular complaints from users about insults, bullying and threats of violence.
Reddit has issued a recommendation in case you are concerned about the security of your account:
Pbmsoultions.com is a domain that tries to trick you into clik to its browser notifications…
Prizestash.com is a site that tries to trick you into subscribing to its browser notifications…
Verifiedbreaking.com is a domain that tries to force you into subscribing to its browser notifications…
Themoneyminutes.com is a domain that tries to force you into subscribing to its browser notifications…
News-xcidizi.com is a domain that tries to trick you into clik to its browser notifications…
Everytraffic-flow.com is a domain that tries to trick you into subscribing to its browser notifications…