PSA: DO NOT ATTEMPT TO ACCESS LEMMY.WORLD, THERE MIGHT BE MALWARE

Lemmy.world member here. I created this account after .world started redirecting me to porn sites and odd mp3 files. We might want to defederate to limit the potential impact. Also, SJW might be affected by the same vulnerabilities as .world, so maybe the admins here should look at that.

Edit: Situation seems to have stabilized. Some site icons aren’t loading, but otherwise everything seems stable. Read Edit2

Edit2: HOLY SHIT ITS BACK Read Edit3

Edit3: lemmy.world is now down as of 10:56 PM CST (USA) Read Edit4

Edit4: lemmy.world is now up, but serving an error as of 11:03 CST (USA) See a screenshot of this error. I also got logged out, hopefully it doesn’t mean they just wiped the databases lol.

Edit5: Edit4 still applies, but I can now access lemmy.world via Memmy on my phone. Wefwef (Voyager now) does not work, however. Timestamp: 11:34 PM CST (USA)

Edit6: lemmy.world restored. Compromised admin account said something in a weird post. I’m going to bed now, my brain is play-dough rn. Will update you guys tomorrow morning.

  • ChronicEd@kbin.social
    link
    fedilink
    arrow-up
    8
    arrow-down
    1
    ·
    1 year ago

    About 10:38 pm CST I had just opened it on my browser and it flashed a “Reddit has taken over this site for copyright infringement”. And the icon at the top was changed for Israel with the words about raping a child on it. Definitely something wonky going on, but I haven’t seen any redirects to anything off site. Definitely not going back from my computer (sounds like the app is safe, but only will check for an update).

    • SimplePhysics@sh.itjust.worksOP
      link
      fedilink
      English
      arrow-up
      4
      arrow-down
      1
      ·
      1 year ago

      Yeah, I get that too, minus the Reddit part. However, during the ten minute span where the attack was resolved (then restarted), a mod/admin account reported that it was caused by a compromised admin account, so not Reddit taking over the site via copyright law. They removed the account, but the issue seems to be back now.

      • ChronicEd@kbin.social
        link
        fedilink
        arrow-up
        2
        ·
        1 year ago

        Yeah! Considering being repeatedly attempted (and succeeding)…I’m guessing it may take a little while to deal with.