Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Old Freeper Accounts Hijacked?
Original Content | 03/16/2025 | By Laz A. Mataz

Posted on 03/16/2025 6:09:41 AM PDT by Lazamataz

I've noticed, over the years, that very old Free Republic accounts, accounts that have been inactive for months or years, suddenly reactivate.... but their politics are suddenly suspect.

Be they Zeeper-oriented (that is, super-favorable to Ukraine) or, conversely, super-favorable to Russia, or even suddenly-liberal... these accounts reactivate with a flurry of posts that are contrary to conservatism.

Are these real Freepers who have had a change of heart about their politics? Are these real Freepers who feel the need to jump on the forum with propaganda and support for one side or the other per the Ukraine/Russia war?

Or are these hijacked accounts?

People will recall some time back, quite a few accounts of active Freepers were hijacked. It created a bit of a problem. When all was said and done, the accounts were returned to their rightful owners, and the site owner (and his moderator crew) pointed out that their passwords were very easy to guess. He instructed people to have stronger passwords.

I also have a friend on Facebook who no longer participates in the forum, but still reads it, who has seen a Freeper posting who he happens to know has been dead for more than a decade.

The problem is, we have far too insecure a login process, and enemies of the forum have been exploiting that.

At the login page, you can attempted unlimited login attempts. This will allow simple brute-force password cracking.

Also, the Forget Password option sends an email with your password in clear text. Emails can easily be sniffed with the right techniques. Passwords can easily be cracked that way.

My suggestions to mitigate these critical security concerns are:

  1. -- Limit login attempts to five, after which the account is suspended until unlocked. What unlocking consists of can be anything. One suggestion is that the account is auto-disabled for a day. That means a hacker will only get five brute-force attempts in any given 24 hour period.
  2. -- Install two-factor authentication, in which a text number is sent to a phone the user possesses.
  3. -- Emails for Forget Password should not send the actual password, but instead, a link to a page on FR that allows a reset of the password.

These relatively-simple security changes will stop account-hijacking.


TOPICS: Chit/Chat; Conspiracy; Weird Stuff
KEYWORDS: bitchassstalker; comingafterustalker; cowardlystalker; diekeywordstalker; doxthestalker; freerepublic; hereiskeywordstalker; iwillfindustalker; karensunite; keywordstalker; keywordstalkerbitch; keywordstalkerpunk; keywordstalkers; nobodyshacked; papersplease; peoplegettignold; punkstalker; seeyourpapers; showyourselfstalker; stalkeriscoward; stupidvanity; yournextstalker
Navigation: use the links below to view more comments.
first previous 1-20 ... 161-180181-200201-220 ... 341-357 next last
To: Lazamataz

I’m still here.

Good thinking, though. Get with the times.


181 posted on 03/16/2025 8:33:00 AM PDT by CgarWarZ
[ Post Reply | Private Reply | To 1 | View Replies]

To: Big Red Badger

I think this will enter FR lexion.

You are a FANCIEST.

You embrace FANCIESTISM.


182 posted on 03/16/2025 8:35:18 AM PDT by Lazamataz (I'm so on fire that I feel the need to stop, drop, and roll!)
[ Post Reply | Private Reply | To 178 | View Replies]

To: Lazamataz

I took a multi-year time-out from posting on Freerepublic during the Covid years. Call it a mental-health sabbatical. I lurked, but didn’t engage in posting. I simply got tired of the food-fights. Today, I try to keep my posts brief and on-topic, and I seldom respond to criticism.


183 posted on 03/16/2025 8:36:31 AM PDT by Tallguy
[ Post Reply | Private Reply | To 1 | View Replies]

To: Big Red Badger

lol, yeah I saw that. there is no way to not know he is in the room... :)


184 posted on 03/16/2025 8:36:54 AM PDT by Openurmind
[ Post Reply | Private Reply | To 178 | View Replies]

To: Lazamataz

World mandatory credit card verification work?


185 posted on 03/16/2025 8:38:42 AM PDT by Jumper
[ Post Reply | Private Reply | To 1 | View Replies]

To: Lazamataz
I also have a friend on Facebook who no longer participates in the forum, but still reads it, who has seen a Freeper posting who he happens to know has been dead for more than a decade....we have far too insecure a login process, and enemies of the forum have been exploiting that.

Nice catch Laz. Years ago - 2004 - - I noticed a lot of new 'freepers' had the feel of undercover liberals. It was after Hillary made her comments about how the internet couldn't be ignored. Maybe requesting newcomers to sign a 'contract' when joining saying they " are conservative Americans and are NOT associated with the democrat party, George Soros or any of his organizations and never have been". Then if the fakes start sabotaging the site Jim can sue them...

186 posted on 03/16/2025 8:48:09 AM PDT by GOPJ
[ Post Reply | Private Reply | To 1 | View Replies]

To: Lazamataz

my passsword was previously “password” however after being warned it may be to easy,, I changed it to “notmypassword” and have never had an issue.


187 posted on 03/16/2025 8:56:21 AM PDT by Craftmore
[ Post Reply | Private Reply | To 1 | View Replies]

To: Lazamataz
Surely you cannot be against...

The mind boggles at the "AGAINST list" that could be generated by our fellow participant

188 posted on 03/16/2025 8:59:25 AM PDT by goo goo g'joob (When honest people say what's true, calmly and without embarrassment, they become powerful)
[ Post Reply | Private Reply | To 16 | View Replies]

To: crz

“The easiest way might be a yearly payment of say...50 bucks to become a member.

To do that, simply get rid of all accounts and start over.”

Sure. They could be like Yahoo... and “nudge” long time users that have been using Yahoo since Al Gore invented the internet to have to start paying for an email version that works, right? Instead of leaving it on a volunteer basis, force that donation. That’s a great way to repay loyalty of users. Make them customers or else. (obligatory sarc tag inserted here)


189 posted on 03/16/2025 9:01:03 AM PDT by Danie_2023
[ Post Reply | Private Reply | To 164 | View Replies]

To: Lazamataz

I agree with you. Protecting accounts better in this case leads to real free speech interactions, not garbage from dubious sources.

I will say though that you need to realize that most wealthy retirees are big time Democrats these days. I have a feeling there are some old accounts where the original positions taken 25 years ago have changed dramatically.


190 posted on 03/16/2025 9:26:06 AM PDT by Codeflier (Don't worry....be happy. )
[ Post Reply | Private Reply | To 16 | View Replies]

To: Codeflier

Anyone who goes from being a conservative to a liberal democrat must have their independence, agency, and autonomy removed, since it is clear they slipped into dementia.


191 posted on 03/16/2025 9:30:46 AM PDT by Lazamataz (I'm so on fire that I feel the need to stop, drop, and roll!)
[ Post Reply | Private Reply | To 190 | View Replies]

To: Lazamataz

Could explain some of it.
Just about don’t post anymore, place overrun with trolls and dupes of trolls.
Ain’t the old Free Republic from back in the day.
Such a shame.


192 posted on 03/16/2025 9:30:50 AM PDT by The Cajun
[ Post Reply | Private Reply | To 1 | View Replies]

To: The Cajun
Ain’t the old Free Republic from back in the day.

You could say that, comparing yesterday to today. Things are ever-changing.

But one thing you can ALWAYS count on, is that Laz would hit it.

193 posted on 03/16/2025 9:31:58 AM PDT by Lazamataz (I'm so on fire that I feel the need to stop, drop, and roll!)
[ Post Reply | Private Reply | To 192 | View Replies]

To: stars & stripes forever; Lazamataz
IMO, some “new old timer post are from Woke children who came upon their parent’s login info.

I think there's some of that going on, for sure. I remember when it was common for registered users' spouses or children to sometimes post without bothering to register a separate account (though usually they'd note it in the comment). Even if they forgot to post that "sub-user" identity, there was usually a different tone to those posts that readers would notice.

It might be wise to restrict posting privileges on accounts that have been dormant for a period of time - say, 90 days.

Trying to add dual authentication and other measures is a good idea for security, but our user base may not be receptive to that. It'll be tough to find middle ground.

194 posted on 03/16/2025 9:32:52 AM PDT by Charles Martel (Progressives are the crab grass in the lawn of life.)
[ Post Reply | Private Reply | To 9 | View Replies]

To: Danie_2023

Well. Got along for all those years without FR.
Will get along without it again.

Site will be lucky to survive much longer.


195 posted on 03/16/2025 9:35:40 AM PDT by crz
[ Post Reply | Private Reply | To 189 | View Replies]

To: Lazamataz
Logins should expire. Right now, once you are logged in, you stay logged in forever.

Agreed, that is a huge vulnerability. I'm lucky, if my daughter ever stumbled across this site and started posting for me, I think she's more rabidly conservative than I am.

196 posted on 03/16/2025 9:35:55 AM PDT by Not A Snowbird (The judgement has been lifted. Thank you, Lord. (@FeistyFed on TS) 🐝.)
[ Post Reply | Private Reply | To 13 | View Replies]

To: Charles Martel
Trying to add dual authentication and other measures is a good idea for security, but our user base may not be receptive to that. It'll be tough to find middle ground.

I have an idea: Biometric authentication based on DNA. All users must submit DNA samples every time they log in.

197 posted on 03/16/2025 9:36:08 AM PDT by Lazamataz (I'm so on fire that I feel the need to stop, drop, and roll!)
[ Post Reply | Private Reply | To 194 | View Replies]

To: Lazamataz
One and three I support.

Two is a no go for me. Make it an option that instead of a phone number you can choose to send a e-mail and I would be ok with it.

Yes, I am paranoid but I have some vulnerable people that live with me. And I would hate what I would have to do if someone hurt them. But I would do it any way.

198 posted on 03/16/2025 9:38:34 AM PDT by Harmless Teddy Bear ( Not my circus. Not my monkeys. But I can pick out the clowns at 100 yards.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Harmless Teddy Bear

Ok, I will alter #2. Instead of 2FA by phone, 2FA can be conducted by personal service by a bike courier.


199 posted on 03/16/2025 9:40:15 AM PDT by Lazamataz (I'm so on fire that I feel the need to stop, drop, and roll!)
[ Post Reply | Private Reply | To 198 | View Replies]

To: crz

“Site will be lucky to survive much longer.”

I disagree. I think the site is just fine the way it is and will be around as long as the owners want it to be around, some users’ opinions, notwithstanding.


200 posted on 03/16/2025 9:42:18 AM PDT by Danie_2023
[ Post Reply | Private Reply | To 195 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-20 ... 161-180181-200201-220 ... 341-357 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson