![]() ![]() It is known that cyberattacks are on the rise, they increased in numbers because of this pandemic we are living. And the more you reconnect to soulseek the more usernames you get, the more connections are established, the more IP addresses are revealed. Why is this random activity? Why all of these connections between users that don't know each other, perhaps don't even have anything in common, don't even know about each other, and why do we have access to it? What's behind all this?Īnd by the way, I am not suggesting that any of these users is the hacker responsible for the network attacks, I am making the point that perhaps the hacker is finding soulseek users on the soulseek network this way, even the ones that have their shares hidden and don't enter soulseek rooms. Found req, accepted obfuscated indirect connection to user dirlei, connection type D Found req, accepted indirect connection to user Oblivion, connection type D Received first search request from parent candidate K. Attempting parent connection to Oblivion Attempting parent connection to wakey1955 Attempting parent connection to only4love Attempting parent connection to sector63 Attempting parent connection to hashable Remember that there is no reason to connect to everyone and their mother :) by sending responses to search queries, to user list users, to users in rooms, you name it, while connected ''privately'' without any interactions with other users, and yet you will notice lots of activity to and from users you even never heard of: Inside it two tabs are of interest to this matter, the tabs Distributed Network and Peer Messenger. A new tab will appear with the name diagnostics. Next you need to open soulseek, create a username, go to options, go to UI tab and enable the option Show diagnostics. Do this when you are not connected to soulseek! You can delete these folders permanently if you don't want to use your old username anymore, or keep the chat logs and your user list after this test, or you can just cut and past the folders to another directory while you are doing this test. It is advisable that you delete the folders inside SoulseekQT at the location Users/"your user name"/AppData/Local/SoulseekQT if you are using windows, before creating a new username. To check this you need to login as another user without any user list users (contacts) and without sharing any files you don't do searches, you don't enter rooms, you don't chat with anyone using soulseek. He or she forgot to mention that, apparently, you don't need to be sharing any files or send any search requests to be found by others. ![]() Six months ago, someone replied to a post of this subreddit about unauthorized access, by saying that "soulseek is continually connecting to everyone and their mother by sending responses to search queries." The credits of this funny reply go to user gertrude99 Īnd just to mention a few, the hackers have a lot of these at their disposal. The and are always originated from IP addresses actively engaged in abusive activities, as shown in. Network attack detected from 141.98.9.23 to local port 43389 Network packet 21-Sep-20 11:25 (scanning port 43389 status by sending a TCP packet) Network attack detected from 167.86.119.116 to local port 1144 Network packet 20-Sep-20 08:40 (scanning port 1144 status by sending a UDP packet) Network attack detectedĝoS. from 61.68.203.91 to local port 49505 Network packet 21-Sep-20 11:24 (port 49505 : soulseek obfuscated port) Network attack detectedĝoS. from 45.167.152.86 to local port 49504 Network packet 21-Sep-20 11:24 (port 49504 : soulseek listening port) I give you some examples of the attacks that were blocked: Last Tuesday, the 22nd, my network was hit with more than 400 attacks in just one second. and are meant to find an open port and a service running, with a vulnerability that can be exploited, so in the future the attacker can get remote access to the computer. ĭoS. is a DoS attack and its goal is to cause the target operating system to become unstable To be absolutely sure, I even formatted, and re-installed my operating system, kept it running connected to the internet for a few days with nothing else installed and nothing happened, the moment I installed soulseek the attacks began.įor the past months, my network experienced 3 types of attacks:, and. Second, one of the network attacks chooses always the soulseek listening and obfuscated ports. I first realized that these attacks had always one thing in common: soulseek! They all, without exception, originated while connected to it. At the beginning I was clueless about the origins of such attacks, and how hackers kept finding me, but after 3 months a pattern has been presented. As of late, since perhaps late June, I began to experience network attacks. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |