Attention - Password and Security Update - Home Theater Forum and Systems - HomeTheaterShack.com

 13Likes
Reply
 
Thread Tools
post #1 of 53 Old 06-14-16, 10:17 AM Thread Starter
Administrator
 
Admin VS's Avatar
 
Join Date: Apr 2014
Posts: 461
Attention - Password and Security Update

Hello all,

Over the next few days we will be implementing some changes to our forum password strength and password expiration policies. To make sure you continue having the best experience possible on the community, we regularly monitor the site and the Internet to keep everyone's account information safe. We've recently become aware of a potential risk to some accounts coming from outside of this community. Just to be safe, we are implementing the following changes to improve security even further:

1) We are asking everyone to change their passwords (and will force a one time reset). Along with every user on the forum, new passwords will need to be more complex, and can't be simple words (sorry, you can't have "fluffy" as your password anymore!). Please use a password unique to this community. Reusing passwords can expose your account indirectly when other websites (Twitter, Linkedin, Badoo, etc) are compromised; and

2) Your passwords will expire on a 365 day basis. When you login on the 366th day, you will have to change it.

We'll also be sending out an email to users to let them know about the changes, in upcoming weeks.

Thanks all,

Helena

Community Management

If you need Admin support please post here:

To view links or images in signatures your post count must be 10 or greater. You currently have 0 signatures.
Admin VS is offline  
Sponsored Links
Advertisement
 
post #2 of 53 Old 06-15-16, 07:31 PM
Elite Shackster
Charlie
 
Join Date: Jan 2011
Location: Dallas, TX
Posts: 2,539
My System
Participating in a home theater forum should not require password resets or expirations.
While I have enjoyed my time here when my password expires that's it for me.
I want all the great members here to know how much I have enjoyed participating in this forum with you.
Many thanks to each and every one of you.
chashint is offline  
post #3 of 53 Old 06-15-16, 08:02 PM
Elite Shackster
 
JBrax's Avatar
Jeff
 
Join Date: Oct 2011
Location: Kansas City, MO
Posts: 4,363
My System
I would like further explanation of what the "potential risks" are?
JBrax is offline  
 
post #4 of 53 Old 06-15-16, 09:04 PM
Plain ole user
 
lcaillo's Avatar
Tech Guru
 
Join Date: May 2006
Location: Gainesville, FL, USA
Posts: 11,121
Send a message via AIM to lcaillo
Re: Attention - Password and Security Update

I just got the email notifying me of my password reset at AVS. I feel the same way as Charlie. I am done with both forums if I have to deal with password resets. It is nonsense to require this of users. Staff, who may have access to administrative areas is another matter, but for public users it is silly.

I am also very disappointed that we were not notified that the forums may have been compromised and not given any real information about potential threats.

I am sorry to say that after 10 years here, and longer at AVS, I will not be back at either if a password reset is required.

Adios.



ellisr63 and theJman like this.

Looking for me, just google my username. I have used the same one for most sites for many years.
lcaillo is offline  
post #5 of 53 Old 06-15-16, 09:22 PM
Elite Shackster
Kal
 
Join Date: Aug 2006
Location: NYC + CT
Posts: 1,835
Re: Attention - Password and Security Update

Quote:
chashint wrote: View Post
Participating in a home theater forum should not require password resets or expirations.
While I have enjoyed my time here when my password expires that's it for me.
Yup. I will be gone, too. This has been fun.

Kal Rubinson
__________________________________
"Music in the Round"
Senior Contributing Editor, Stereophile
Kal Rubinson is offline  
post #6 of 53 Old 06-16-16, 10:25 AM
Senior Shackster
 
selden's Avatar
selden
 
Join Date: Nov 2009
Location: Upstate NY
Posts: 384
My System
Re: Attention - Password and Security Update

The reason for the password resets at AVS and here is that VerticalScope was compromised. VerticalScope owns both forums. More than 45 million accounts and passwords were leaked.

See http://www.securityweek.com/45-milli...icalscope-hack

Selden
selden is offline  
post #7 of 53 Old 06-16-16, 10:31 AM
Elite Shackster
 
JBrax's Avatar
Jeff
 
Join Date: Oct 2011
Location: Kansas City, MO
Posts: 4,363
My System
Quote:
selden wrote: View Post
The reason for the password resets at AVS and here is that VerticalScope was compromised. VerticalScope owns both forums. More than 45 million accounts and passwords were leaked. See http://www.securityweek.com/45-milli...icalscope-hack
What does that mean to me as a member? What can they do with the information and what exactly did they obtain?
JBrax is offline  
post #8 of 53 Old 06-16-16, 10:38 AM
Senior Shackster
 
selden's Avatar
selden
 
Join Date: Nov 2009
Location: Upstate NY
Posts: 384
My System
Re: Attention - Password and Security Update

Quote:
JBrax wrote: View Post
What does that mean to me as a member? What can they do with the information and what exactly did they obtain?
It means that they can login using your userid and password, making posts in your name.

Many people use the same password on many different sites, including financial sites. Password theft exposes those people to very serious problems -- like theft of all their savings, redirection of direct deposits, etc.

For a detailed discussion of what happened to VerticalScope, see the article that I linked to above.

Selden
selden is offline  
post #9 of 53 Old 06-16-16, 10:43 AM
Elite Shackster
 
JBrax's Avatar
Jeff
 
Join Date: Oct 2011
Location: Kansas City, MO
Posts: 4,363
My System
Ok, my next question would be was my info compromised?
JBrax is offline  
post #10 of 53 Old 06-16-16, 10:49 AM
Senior Shackster
 
selden's Avatar
selden
 
Join Date: Nov 2009
Location: Upstate NY
Posts: 384
My System
Re: Attention - Password and Security Update

Quote:
JBrax wrote: View Post
Ok, my next question would be was my info compromised?
*Everybody's* account info was compromised.

Selden
selden is offline  
Reply

Bookmarks

Tags
attention , password , security , update

Quick Reply
Message:
Options

Register Now




PLEASE COMPLETE ALL REQUIRED FIELDS BELOW... THANKS!

REQUIRED FIELDS ON THIS PAGE
YOU MUST COMPLETE ALL OF THESE

Username
Password
Confirm Password
Email Address
Confirm Email Address
Random Question
Random Question #2




User Name:
Password
Please enter a password for your user account. Note that passwords are case-sensitive.

Password:


Confirm Password:
Email Address
PLEASE READ BELOW PRIOR TO ENTERING AN EMAIL ADDRESS!

ATTENTION!

YOU MUST ACTIVATE YOUR ACCOUNT!

Activation requires you reply to an email we will send you after you register... if you do not reply to this email, you will not be able to view certain areas of the forum or certain images... nor will you be able download software.

AN INVALID EMAIL ADDRESS WILL CAUSE YOUR ACCOUNT TO BE DELETED!

See our banned email list here: Banned Email List

We DO NOT respond to spamcop, boxtrapper and spamblocker emails... please add @hometheatershack DOT com to your whitelist prior to registering or you will get nowhere on your registration.


Email Address:
OR

Log-in










Thread Tools
Show Printable Version Show Printable Version
Email this Page Email this Page



Posting Rules  
You may post new threads
You may post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML is not allowed!
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

 


For the best viewing experience please update your browser to Google Chrome