You are viewing a single comment's thread.

view the rest of the comments →

MadWorld ago

Relevant submission: https://voat.co/v/ProtectGoats/3319514

This user has also indirectly admitted to using stolen credentials to send out emails.

[–] thewebofslime [S] 1 points (+1|-0) 7 days ago

I've been slowly waging an email campaign for about two years, where 500 emails per day per gmail account are sent to people in government and media.

This is one such list that I work from; this is every cnn.com email address phished and submitted to the tor web collection. It includes passwords, which can be useful to take control of an account to send from all their contacts, but I generally just email everyone from my own accounts.

[–] think- 0 points (+0|-0) 7 days ago

Sorry if I'm a bit slow today, lol.

So these are the email handles you are sending the info to? Right? Or email handles you use for sending the info out?

What is the tor web collection? It - ahem - sounds illegal. ;-)

[–] thewebofslime [S] 0 points (+0|-0) 7 days ago

I can use my email address to send out emails like ones that link to my site: https://webofslime.com/tgc

If I am feeling I have too much time on my hands, I might try to see which of these I could use to send more than my own email limit. Some passwords are still good, just not for the hotmail.com, gmail.com, and other obvious ones.

The tor collection is perfectly legal and is merely a research tool for security oriented firms and projects. Obviously, it can be used for bad, but using it to raise awareness for legitimate topics is just as fine as using it for advertising firms to spam you with their stupid products.

He also thinks that your passwords are public info.

[–] followthemoney 0 points (+0|-0) 48 minutes ago

You realize that everyone's usernames and passwords across all platforms are basically public information, right?

He also claimed to hold a lot of dox on Voat users:

...

@Crensch said I was all talk.. or something to that effect. Again, as I've been saying for months, I have a lot of doxx on a lot of people. I have more criminal histories, as well. (Of Voat users)

...

In addition to all that, he has claimed to database everything and query on anyone, using terabytes of info he has collected.

If you add these examples together, the intent is clear.

heygeorge ago

Mad. I dug what you’re throwing out, but don’t you think some of this is a touch flimsy/hyperbole? I guess he’s a bit of an odd one, but is it not disingenuous to willfully misinterpret what he means about passwords being ‘basically

public information’?

MadWorld ago

How are passwords public info? Even if a site's database was leaked/hacked and dumped, it still does not make that info public. Sure, you can find or buy it in dark places, it is still a stolen credential, not public info for everyone to freely access.

I was informed last month or so, that TWOS was credited for hacking certain websites:

https://archive.fo/rXKqa

  • 2019-03-30(Thewebofslime): qinetiq-na.com, caci.com
  • 2019-03-24(Thewebofslime): clintonfoundation.org
  • 2019-03-23(Thewebofslime): cnn.com, gov.il
  • 2019-03-22(Thewebofslime): ic.fbi.gov, and Various (Hacker Database)
  • 2019-03-21(Thewebofslime): Various (Hacker Database)
  • 2019-02-14(Thewebofslime): foxrothschild.com
  • 2019-01-23(Thewebofslime): Various (Hacker Database)
  • 2019-01-22(Thewebofslime): jpmchase.com, and Various (Hacker Database)
  • 2018-02-06(Webofslime): ic.fbi.gov, USA Govt. emails

And he does not see any issue with using stolen credentials to his benefit. If I remember correctly, there were moments where he encouraged other users to verify that those accounts were indeed authentic.

There was another coincidence where a Voat user's IP, that was doxxed to him, showed up during recent ddos attack. I am hoping to find out if there is any common denominator to those IPs exposed to him.

heygeorge ago

2019-01-22(Thewebofslime): jpmchase.com, and Various (Hacker Database)

2018-02-06(Webofslime): ic.fbi.gov, USA Govt. emails

Where is this information from?

Edit: Not specifically just those two, but all of that info