They been redirecting to lemon party and some weird video. Do not go to the website. This is the admin that been hacked:

EDIT: lemmy.blahaj.zone also compromised!

  • @[email protected]
    link
    fedilink
    English
    32 years ago

    Looks like it’s gonna be a bit really put a lid on this, but I guess another sign why this is a good system?

  • solarzones
    link
    fedilink
    72 years ago

    I am glad I’m on programming.dev for lemmy, but this could’ve happened to anyone. Hope nothing catastrophic happens

  • V699
    link
    fedilink
    22 years ago

    I logged on and was like wtf because the site still works. Thought my phone was hacked heh

  • bioemerl
    link
    fedilink
    102 years ago

    And this is why you use a password manager whenever you make new accounts on the internet.

    If you had an account on the Lemmy.world website you need to change your password.

  • mintiefresh
    link
    fedilink
    English
    22 years ago

    Yeah… I caught all that. Glad to see that they fixed it already though. Rough day for Rudd.

  • @[email protected]
    link
    fedilink
    English
    -42 years ago

    Guys, the new Israel lemmy instance has a lot of content I like, but some images I don’t agree with. should we defederate?

    • elscallr
      link
      fedilink
      22 years ago

      I don’t think you realize what happened. The entire instance got fucked, it wasn’t just some posts someone didn’t like.

  • Tugboater203
    link
    fedilink
    92 years ago

    It’s still compromised, right now it’s showing text that says site seized by reddit for copyright infringement. Lol. Jerboa is just showing Lemmy World heads

  • @[email protected]
    link
    fedilink
    English
    22 years ago

    Is there a way to not do email verification but still using 2FA? That way, even if a user’s account is somehow phished/compromised, it won’t compromise their other accounts.

    • elscallr
      link
      fedilink
      12 years ago

      Absolutely you can do no phone/email and MFA. It’s a TOTP thing like Google or Microsoft authenticator. The service doing the authentication has no idea how it’s done on the other side, it just makes sure the codes match.

    • @[email protected]M
      link
      fedilink
      English
      32 years ago

      I just successfully set up 2FA for an account on another instance that doesn’t have a verified email without any issues, so there’s no need to have done email verification to use 2FA.

  • @[email protected]
    link
    fedilink
    English
    82 years ago

    The page redirects is named Israel and it redirects to blank page with “This site was seized by Reddit for copyright infringement”. So no, they don’t have control yet.