Hey there fellow hivers,
I knew it happened to many unsuspecting, unfortunate, victims here on hive and elsewhere online, but I never thought it would happen to me.
I thought I was very careful and would never fall for those spammy links and other ploys, but they got me and stole my hive that I had just deposited in my wallet.
Here are the faces I went through..
That was when I first saw the transaction I 'made' (the hacker swiftly sent themself my hive that I just transferred into my hive wallet. They even took what little bit of HBD I had lying around.
I quickly took a look at this hive account and could see that it was just a dummy scammer setup.
sad to say that they stole from some other hivers too,
Looks like they are still at it.
So after my pity party for myself, I got busy trying to get some help. I turned to discord as I knew there are usually knowledgeable people on there who would know to do next.
I was already a member of the OCD discord, so I posted about what happened and asked for advice..
(I was just about to put the link here, but that would be something a hacker might do)
just search for it on discord or in a search engine.
The One Love discord server is the one I was directed to from someone on the OCD server and they immediately instructed me..
to CHANGE MY KEYS. (goto Account actions on your peakd profile, the click on Keys & Permissions)
The hacker that stole my hive was only interested in a quick grab of any loose hive or HBD that I had in my wallet. A more sinister hacker might actually take the time to change your keys and maybe power your account down.. but that takes time and effort.. NOT things most hackers have or are willing to do.
If the hacker did already change your keys, then the only recourse would be to recover your account. Oh, IF you are like me and an old steemit person, chances are you still have steemit as your recovery account. I don't know if they (steemit) will help us hivers now, so make sure you change that to hive.recovery. Just search how to do that.
OK, so I changed my keys then after a chat on discord with
GuiltyParties [.com] from the HiveWatchers discord server, there were a few more important things for me to take care of. I'll save that for the next post..
Oh, and I did feel sad and a bit angry, and the whole situation really sucked, but I am glad it wasn't any worse. I hope that hacker had a party with my money and bought lots of diapers for their baby and food for their family..
Hive on!
in what particular way the hacker got hold of your private keys?
that's what am also wondering 🤔
the only time i put my key (copied and pasted it), outside of peakd and NOT using hive kaychain (this was it I think, I had a slight feeling of, why is it asking for my key and not logging in with keychain.. shoulda known better)
was when I upvoted 2 intro posts.. supposedly from ecency. The hacker probably copied some legit intro posts, but modified it to include a capture thing..
:(
You clicked a link, and it prompted you to log in with one of the Hive keys that allows sending transactions from your Hive wallet, is that what happened?
Hi there. well yes and no.. it didn't look like a link, it was a pop up window that asked for my info as i was trying to upvote a supposed intro on a ecency page. I never used ecency so thought it was cool. I guess the lesson is to NEVER copy your keys info to anywhere, except for hive keychain.
oh no, am so sorry this happened to you. Yes, we have always be mindful of where we input our Hive keys. Will make sure to remind my team about this.
should still paste the link with a clause that states clearly it is a scam. so dummies like me does not click on it, then again I may just click on it after seeing it LOL.
:P unfortunately I don't know for sure exactly which one it was.. I only logged in to upvote a few intro posts and I remember them being from ecency. i bet the hacker cloned those legit posts, but then somehow copied any logins. just don't put your keys into ANY place other than hive keychaines.
This ecency posts, you found it on Hive.blog or peakd.com?
neither, they were links i found on #introductions channel in OCD server
dang.
I got scammed recently by @crypttolayer. I thought everything was secure, the wierd think he created his hive account aproximetly a month ago, and that make me think he got my account keys from my computer. The lesson here is never let your sensitive information in a computer with internet