Welcome to Inkbunny...
Allowed ratings
To view member-only content, create an account. ( Hide )
WinickLim

I am using New Discord now

Good day everyone.

I am using new discord now, whoever have my Previous discord please just block & report it to get vanish asap, thank you.

Remember to let your friend know about it too, don't wanna someone fall into any traps from that imposter.

Kindly check the profile, the Real one was : winick2468 ( my current discord )

Imposter / stolen / previous discord : winicklim
Viewed: 198 times
Added: 10 months ago
 
1Angelfluff1
10 months ago
Thanks for letting us know
TheRealMedley
10 months ago
Don't forget to use two factor authentication to keep this from happening again
Teisu
10 months ago
Last I recall (at least with discord) it can be bypassed
TheRealMedley
10 months ago
It has worked for me so far but I know discord has a POS security system
chronocryo
10 months ago
discords security flaws allow the authentication token to be stolen by several common bots or by redirected web links. this allows 2FA to be rendered useless, as the token thats stolen is already cleared by 2FA.

as for what bots... mee6 is one such bot that can log user auth keys without anyone learning of it. these go right to the bot's maker, and anyone who pays the bots creator can get these keys... that bot can do so much more too, such as ban a server owner and take control of the server so hard discord devs cant even get the server back
Teisu
10 months ago
Since when did Mr Meecreeps became so OP?


Oh well, goes to show how talented Rick is
chronocryo
10 months ago
mee6 has always has permissions to do things that cant be recovered from, and you cant tell what it does without datamining. and few even datamine discord bots without intent to replicate them.. its why i hate most discord bots. they get away with things that put the app at risk
TheRealMedley
10 months ago
So don't use other people's bots then? I didn't see the point of putting in bots that people legit didn't know the full function of in a server tbh, its kind of asking for trouble, if you want one that does that job make it yourself for security reasons. But then again in my personal server with friends we don't use any bots :u
chronocryo
10 months ago
any bot that needs admin level perms is risky. some, like music bots (as much as i hate those), RP bots (tupperbot... this one also violates discord tos as it can be used to bypass blocks and cant be blocked, and is used by many who harass), dice bots, ect are fine and safe.
TheRealMedley
10 months ago
The one bot I liked that was in another server that wasn't mine, dunno its privvies, is the pokeslot bot, its a fun mini game but again I dunno its primary privileges so I never got it for my own >_>
chronocryo
10 months ago
ah, that ones fine. same with poketwo. seen them both and had someone look into them.
alphamule
10 months ago
There was also the debacle with name changes, last year.  XD

2FA SIM is an oxymoron.  Hopefully, we'll eventually get SIM cards that let us put TOTP/U2F/etc. keys into some enclave.  Of course, then Android and iPhone would have to have a permission for that.  Interestingly, TOTP seems to be considered easier than other actually secure methods.  https://www.twilio.com/docs/glossary/totp

Right now, the fight is to make sure we don't get balkanized tower-of-babel walled gardens where you need Android app for Google's thing, Windows service pack/Edge (for PC) and Onedrive app (for phones) for Microsoft's thing, iPhone for Apple's thing, and other such non-sense.  Yubikeys are another option which is a USB version of the old smart card solution (i.e. like a credit card using a chip).  AFAIK, the US government made smart cards mandatory for secure networks in 2006 or so?

SIM cards are like the social security number of 2FA.  Not super secure against identity theft.  :facepalm:
TheRealMedley
10 months ago
I won't lie, none of this makes sense to me, and I won't pretend it does.
alphamule
10 months ago
Ah, OK.  Too technical.  In English:  It'll probably become common in 2 years that you won't be using a text message, but some app you install to verify you own the account.  We're fighting to be able to backup and load said proof (some numbers) so that you don't get locked to one company.  Because monopolies suck, and monopolies over something like this are even worse.

We also don't want it to be easy to steal said numbers, and cell phone numbers are insecure for that purpose.  Phone records are infamously insecure.
TheRealMedley
10 months ago
OH, I getcha now, I just use the goog auth app for mine tbh, not gonna give discord my number, I get enough spam risk already
alphamule
10 months ago
Spam callers hate me - I set my phone to default to silent 'ring tone', and then add one for each contact.  You used to be able to do this with groups but now you do it per contact.  Also, my area code is from my old state that hardly anyone I know lives there anymore.  So if I get calls from that area code with random prefixes... LOL, I'm sure they'll start using area codes of your known contacts one day.  Needless to say, it still is set to vibrate on all calls.  I wish they'd just let you have a whitelist of allowed-to-ring numbers.  :(

Have not gotten spoofed phone numbers, but one restricted that turned out to be unsolicited.  Only answered because I thought it was from someone I know in jail.  Turns out they make you setup an appointment for that, anyways, so we'd know ahead of time, once I looked it up.
TheRealMedley
10 months ago
Scammers that call me always show up as just "Spam Risk" and they are always bots, I just refuse to answer and i have disabled my voicemail box because of their 1-2 second static bullshit they leave there
alphamule
9 months, 4 weeks ago
Oh right, I forgot that there's that alternative as well.  Replacement phone app or phone company service?
IAmNotAFurry01
10 months ago
I sent a friend request. :)
DaxB01
10 months ago
Alright, thanks for let me know
I will add you again, and block your previous discord
New Comment:
Move reply box to top
Log in or create an account to comment.