this post was submitted on 10 Jul 2023
51 points (96.4% liked)

Lemmy.world Support

3202 readers
1 users here now

Lemmy.world Support

Welcome to the official Lemmy.world Support community! Post your issues or questions about Lemmy.world here.

This community is for issues related to the Lemmy World instance only. For Lemmy software requests or bug reports, please go to the Lemmy github page.

This community is subject to the rules defined here for lemmy.world.

To open a support ticket Static Badge


You can also DM https://lemmy.world/u/lwreport or email [email protected] (PGP Supported) if you need to reach our directly to the admin team.


Follow us for server news ๐Ÿ˜

Outages ๐Ÿ”ฅ

https://status.lemmy.world



founded 1 year ago
MODERATORS
 

Hiw is this fediverse's opsec?

I was derping around and shifted to this instance, and when I was about to immediately ask here as to when other Lemmy instance would wipe all of my previous activity on their instance, i noticed that the Icon changed

cw: racist caption popup

When you hover on it, it shows a racist caption. When you click on it, it shows creepy old men doing each other.

Who has access to this specific instance and why people do this is idk anymore.

Pls ignore this post if it has bene fixed lol

Edit: the thing redirects to you page changed content, either something that shit posty or right wingy/rude/creepy. Someone needs to take a look at this lol

all 15 comments
sorted by: hot top controversial new old
[โ€“] nosut 19 points 1 year ago* (last edited 1 year ago) (1 children)

Admin account was hacked. They appear to be working on it:

EDIT: Looks like things are starting to resolve.

EDIT 2: MichelleG account admin was restored and she posted and update but shortly after the changes happened again. Her account is likely still compromised with someone else accessing things via it.

EDIT 3: lemmy.world back online. MichelleG has again been removed as admin. Most things appear to have been cleaned up. Blocked instances still need to be fixed however.

[โ€“] asunaspersonalasst 3 points 1 year ago (1 children)

Do we need to change our passwords after this?

[โ€“] nosut 4 points 1 year ago

I find it unlikely to be necessary because the MichelleG account shouldnt have needed database access and it appears the attack was troll related with basic XSS redirects. You can wait for an official response however it is always good policy for yourself to do so anyways.

[โ€“] mob 12 points 1 year ago* (last edited 1 year ago) (1 children)

Yeah, I came here to see if it was just me.

Also if I click on Israel, I get a weird picture/video of a dude with a cigar in his mouth and a caption that says "just raped a kid in the woods' or something close to that

[โ€“] Cyyy 1 points 1 year ago

it's a autoredirect that loads after a few secs. so no need for clicking.

[โ€“] nowwhatnapster 8 points 1 year ago

Hope ruud and his team are on this.

[โ€“] Xylinna 2 points 1 year ago

Admins are aware of the issue and are actively working on resolving.