Bandwidth theft - procedure and contacts to solve

Dude you wasting your time n00b dude, what u need to do, is change your isp password, and your router password ever so often (remember knocking out your power, defaults the router - so check that too), as this will prevent anyone from logging in, ive been hacked, had bw stolen, no use crying over spilt milk.

The way they do it, is they scan the telkom ip range (wont give it out :D) from .1 to .254, use some netscan proggy/app , from there they connect to the router ip, then once on their (via web interface) they get router interface, use standard user/names password - generally admin:admin, connect to your router, from their they get your user name, then they save the web file, and open in a web editor (dreamweaver or whatever) and low and behold the password is not protected - and now the person has both username and password.

But fear not, I hear that telkom has now combined with the police to monitor their DSLAMS (l33t apps) for high bandwidth usage from different address (think thats how ninja torrents got owned) couple of users on their are a bit dodge :D

but ya, hope this helps.
so I think their closing in on bandwidth thefts.
 
[i am dealing with a person charged with fraud in this manner at the moment - will update as and when]


....charges withdrawn without explanation
it is not easy to get a conviction in a magistrate's co on a technical/IT matter
 
I think it is unfair for ISPs to push this risk onto the customer. I was recently hacked and spoke to the management of Axxess (my ISP) and argued that with an internet security breach, Banks take on the loss on behalf of the client. They do not push this risk onto the consumer. Why should ISP be different. He said that it was my fault because it was my router that was hacked and not their system. I then said that the router comes standard with remote access and the public does not know this and as a service provider they should make the public aware or disable this feature. They said this information is available on their website, which I can not find.

They refuse to refund me the bandwidth and the bottom line is that I think the ISP should take on this risk and not push on to the consumer.
 
I think it is unfair for ISPs to push this risk onto the customer. I was recently hacked and spoke to the management of Axxess (my ISP) and argued that with an internet security breach, Banks take on the loss on behalf of the client. They do not push this risk onto the consumer. Why should ISP be different. He said that it was my fault because it was my router that was hacked and not their system. I then said that the router comes standard with remote access and the public does not know this and as a service provider they should make the public aware or disable this feature. They said this information is available on their website, which I can not find.

They refuse to refund me the bandwidth and the bottom line is that I think the ISP should take on this risk and not push on to the consumer.

What router was it?
 
Have Some Patience With The Non It Peeps!!!!!!

So if I dont lock my house, it serves me right if I am robbed blind? .... You arrogrant ass.... Just 'cos not everyone KNOWS HOW to lock down the router makes them targets for your dumbass attitude and theft?

There are ALOT of non IT people on ADSL who rely on Telkom or their IT friends to set their routers up... so you say "If the locksmith doesnt know what he is doing - then the home-owner deserves to be robbed"

I hope the cops get your port number someday and visit :mad:


:D :D :D :D :D SO TRUEEEEEEEEEEEE!!!!!
 
My work's ordered extra ADSL lines for support work from home (especially after-hours).

I will strongly suggest that we look at an ISP whose accounts can be "locked" to prevent bandwidth theft. So they can still hack the router, but won't be able to use the account... :D

Things are hectic and expensive enough as is...
 
Telkom & Marconi Responsible??

I recently discovered that three ports other than my own have been using one of my unshaped accounts.

Now I change my Router passwords as soon as I get them, I disable remote access to the routers, my Machines all run Zone Alarm Firewalls, and I'm very computer literate.

The only possible security risk is that I have had to replace the modem twice, which entails returning the router to telkom and collecting a new one. this means that I couldn't access the routers to change the setting on them. since they are non functional.

this leaves two possibilities.

1. Either a Telkom Technician or a Marconi Technician got the modem and decided that the account details are fair game.

2. Telkom gave the modem to another customer as is without clearing any data after repairing it.
 
Scared

I have been reading this forum and now im a lil worried as its so so easy to do. I have changed my Router Username and password but how do i know that someone has not got it allready. I have a WA Shaped 3g account and An Unshaped Account. I change between the accounts if I play games online Eg Baattlenet for Warcraft. I do this Via my Router as my bro usually wants to play too. I also have ports forwarded in order for me to host games on the reason server.

How can i find out if im safe lol. Is it easier to use bridge mode or safer should i say.

I know they pretty noob questions but when it comes to this whole router mac bla bla bla stuff im a no0b:) Also i connect through Wifi on my laptop and Pc is on Ethernet cable.

Thanks guys.
Cheers
 
I have been reading this forum and now im a lil worried as its so so easy to do. I have changed my Router Username and password but how do i know that someone has not got it allready. I have a WA Shaped 3g account and An Unshaped Account. I change between the accounts if I play games online Eg Baattlenet for Warcraft. I do this Via my Router as my bro usually wants to play too. I also have ports forwarded in order for me to host games on the reason server.

How can i find out if im safe lol. Is it easier to use bridge mode or safer should i say.

I know they pretty noob questions but when it comes to this whole router mac bla bla bla stuff im a no0b:) Also i connect through Wifi on my laptop and Pc is on Ethernet cable.

Thanks guys.
Cheers


The guys who steal your account details do it by getting into your router mostly. Once in, they get your ISP passwords. If you have changed the router password, they can no longer get in, but might already have your ISP passwords. So you must change your account passwords with your ISP - their helpdesk can tell you how. Once changed, change them on your router so you can still access your accounts. It is also best to configure the router to allow only local machines to access the config page.

On the wifi side, you need to run some kind of encryption if you fear that a neighbour will steal your bandwidth by accessing your setup via wifi.
 
Aight, I got a question. I know four people now that are using these "hacked accounts" for internet right.

2 of the 4 that I am certain of using these accounts are using them as their primary accounts, meaning they bought the line for ADSL and never considered buying an ISP before they even received the line.

I have mentioned my concerns of using these accounts, and the moral side of things as well, but they just say its too expensive to buy bandwidth AND the ADSL line rental... their parents wont pay for an account plus the DSL line. These people are all below 18 years of age might I add.

Opinions? What can really be done?
 
I change my details monthly and im using Bridged Mode.. im not worried bout my security at all, im just worried bout people that are being stolen from by people I talk to daily <.<
 
Aight, I got a question. I know four people now that are using these "hacked accounts" for internet right.

2 of the 4 that I am certain of using these accounts are using them as their primary accounts, meaning they bought the line for ADSL and never considered buying an ISP before they even received the line.

I have mentioned my concerns of using these accounts, and the moral side of things as well, but they just say its too expensive to buy bandwidth AND the ADSL line rental... their parents wont pay for an account plus the DSL line. These people are all below 18 years of age might I add.

Opinions? What can really be done?

Ask your ISP to lock your account to your port.
Then you can paste your isp username and password on these forums, and noone but you will be able to use them.
 
yea, sniffing open ports (21, 80) is very easy, and once into the router, getting the username and password is as easy as reading html source.
if you are worried about your details being stolen, change the password monthly, change the default username and password on your router, and dont allow (disable) remote access on routers.
If you do all that, hackers wont bother trying to get your details, because there are a thousand other people who have no clue whats going on and leave their routers set as default.
I believe telkom and other router manufacturers are to blame. They should allow such relaxed security on new routers.
 
Hacking accounts is wrong

As for SAPS agree but difficult to implement unless they have a special unit who are PC literate, similar to old commercial crimes unit. My 2c.

You will be surprised as to how much the police know, not all police stand behind a desk and are stoooopid :eek: they now have specialised pc literate IT guys that know what they are doing.

As for you guys who think that encrypting your drives will help you with you hacked accounts, think again :mad: they know and have the resouces that un encrypt your stuff with ease.

If you are hacking accounts or have accounts that dont belong to you STOP ! :mad: they might be watching you.

If they come and knock on your door and accuse you of doing it, dont deny it, face the consequence and work with them.

I know someone in the commercial crimes unit, if you carry on, they will catch you, if your parents refuse to purchase an account but are willing to pay for the line, GET A JOB !!! :eek: and buy an account or 2 or 10, if you are too lazy to do that, well then you dont deserve to have inernet. :sick:

Rather do that, than be embarresed because they will come into your house and take away anything to do with a pc, and I am sure your parents will be pissed off with you :mad: if their pc gets converscated because of YOUR problem.
 
jeinnor30, so far all I can see is in this thread is every single member standing unified in saying bandwidth theft is wrong!

TonyA never said he steals passwords or bandwidth, so please lay off with the accusations.

I bet you now, every single member that has internet access on this forum will never EVER steal another persons account. We are saying that passwords should be changed, even the default ISP passwords, because thieves are lurking everywhere, the citizens of MyADSL don't qualify as thieves in my book however ;)
 
Top
Sign up to the MyBroadband newsletter
X