PDA

View Full Version : J River Hacked.



Spectral Morn
21-09-2018, 08:09
So I got this email message from JRiver today.

'Good Day,
I'm sorry to report that JRiver's servers were recently attacked and partially compromised. No credit card information was lost (we don't save any), but e-mail addresses probably were, and possibly passwords, although these were heavily encrypted. You should change your password for the forum here: Profile > Account Settings License passwords can be changed if you purchase in the future -- they are only used for changing your e-mail address. You can read more on Interact.

We have spent the last few weeks recovering from this catastrophic event. If you have experienced problems with Media Network, cover art lookup, CD ripping, or other functions that use our servers, this break-in is probably the reason. All problems are fixed now.

We're also sorry if you experienced a failure when you tried to purchase a new license or upgrade an old one. If you're willing to try again, here is a coupon that will save you $10 on a new or upgrade license during September: MEACULPA ($10 Coupon). Enter the coupon during purchase and confirm that the price is correct.

We offer our sincere apologies. It was our fault, and we're embarrassed about it. You can be sure that we are much better prepared to defend our servers now.

That's the bad news.'


Not good.

Lawrence001
21-09-2018, 08:13
They should have notified users straight away not waited so long.

Sent from my BLN-L21 using Tapatalk

walpurgis
21-09-2018, 08:18
Is it a genuine notification? Any link provided for changing passwords etc should be regarded with suspicion. Most companies ask you to visit their site to do this.

struth
21-09-2018, 08:36
its genuine

mightymonoped
21-09-2018, 08:42
its genuine

+1

Primalsea
21-09-2018, 10:56
These days it seems to be more of a question as to when something will be hacked, rather than if. Hopefully there will remain some things that are stored the old way - in a vault deep underground guarded by men with big sticks and dragons. That way if people want to take something they have to go there and not just do it from their chair halfway around the world.

Spectral Morn
21-09-2018, 11:08
Is it a genuine notification? Any link provided for changing passwords etc should be regarded with suspicion. Most companies ask you to visit their site to do this.

I am pretty sure its legit, but I never click on links in emails anyway, and I agree the hack info should have come out much sooner.

Spectral Morn
21-09-2018, 11:09
These days it seems to be more of a question as to when something will be hacked, rather than if. Hopefully there will remain some things that are stored the old way - in a vault deep underground guarded by men with big sticks and dragons. That way if people want to take something they have to go there and not just do it from their chair halfway around the world.

Agreed.

struth
21-09-2018, 11:30
it is genuine. im a forum member.. i changed my password

mightymonoped
21-09-2018, 11:31
These days it seems to be more of a question as to when something will be hacked, rather than if. Hopefully there will remain some things that are stored the old way - in a vault deep underground guarded by men with big sticks and dragons. That way if people want to take something they have to go there and not just do it from their chair halfway around the world.

Ever tried getting some money back off the HMRC using the Government Gateway? It makes underground vaults and dragons seem like the painless option. If you want to know what the follow up to Terry Gilliam's "Brazil" might have been, try claiming a £22.58 tax refund back using the 'quick and easy' option of the Government Gateway. A truly representative example of a bad IT Project from every perspective.

Barry
21-09-2018, 12:02
Ever tried getting some money back off the HMRC using the Government Gateway? It makes underground vaults and dragons seem like the painless option. If you want to know what the follow up to Terry Gilliam's "Brazil" might have been, try claiming a £22.58 tax refund back using the 'quick and easy' option of the Government Gateway. A truly representative example of a bad IT Project from every perspective.

The government Gateway portal doesn't work for anything I've tried. I couldn't use it to claim my state pension: the software just looped around back to the home page - so I phoned up the DWP first thing in the morning in order to speak to a human being to sort it all out.

Regarding overpayment of tax - every year I pay too much tax, and each year I get a letter from HMRC giving me a refund.

Rosewind
21-09-2018, 14:48
I did not trust it to be genuine.

There wasn't a thing about this to be read on their main home page. But I logged in on their website (not via the link) and changed the password anyway. But how on earth am I to check whether or not this is a genuine email if there is no mention of the security breach on the JRiver webpage? I need to have things like these verified before I follow any links to where I know not.

OK. found it in the forum - https://yabb.jriver.com/interact/index.php/topic,117123.msg810255.html

The passwords were probably protected well enough, they write.

superbike999
22-09-2018, 20:57
I did not trust it to be genuine.

There wasn't a thing about this to be read on their main home page. But I logged in on their website (not via the link) and changed the password anyway. But how on earth am I to check whether or not this is a genuine email if there is no mention of the security breach on the JRiver webpage? I need to have things like these verified before I follow any links to where I know not.

OK. found it in the forum - https://yabb.jriver.com/interact/index.php/topic,117123.msg810255.html

The passwords were probably protected well enough, they write.

I received a personalised email from them setting out what had happened. I have also changed my password.

There is a link at the top of the home page, headed IMPORTANT SERVER INFORMATION: