• Our software update is now concluded. You will need to reset your password to log in. In order to do this, you will have to click "Log in" in the top right corner and then "Forgot your password?".
  • Welcome to PokéCommunity! Register now and join one of the best fan communities on the 'net to talk Pokémon and more! We are not affiliated with The Pokémon Company or Nintendo.

Issue: Password expired?

5
Posts
9
Years
    • Age 31
    • Seen Jul 1, 2016
    Whenever I try to log into my normal account I get an error message saying that "Your password is 678 days old, and therefore has expired" and won't let me do anything else besides go to the change your password page.

    I didn't even think that password expiration was a thing? Is this part of the "yo shit's broken and we're fixing it" thing or is this a separate problem?
     

    maccrash

    foggy notion
    3,583
    Posts
    10
    Years
  • forgive me if this is wrong, but to my understanding we're making everyone change their passwords because of the Site Breaking.
     

    Mewtwolover

    Mewtwo worshiper
    1,188
    Posts
    16
    Years
  • Better play safe and change your password but I think that the user data weren't in danger because AnonCoders' motive was obviously just spreading message, they had replaced the front page with pro-muslim propaganda. The nature of that message makes it hard to believe that they're interested about the user data because they wouldn't benefit anything from it. You need to know that AnonCoders is an anti-Israeli hacker group who has done this kind of attacks before: https://www.itproportal.com/2015/04/08/exclusive-anoncoders-hits-100-sites-opisrael-campaign/

    Only thing I wonder in this attack is why they destroyed almost the entire forum when they would've got same result by just replacing the index.php file, maybe they wanted to make removing their message as hard as possible.
     
    Last edited:

    Kip

    🔥 Fluffy Fire Fox
    928
    Posts
    16
    Years
    • Age 32
    • They/Them
    • UK
    • Seen May 1, 2024
    I'm wary of touching anything until we can confirm how they got in and that the site is no longer compromised. :/
     

    Sydian

    fake your death.
    33,379
    Posts
    16
    Years
  • Achromatic and I both had an issue where it made us change the password again, saying the password was a day old and already expired. Just a head's up.
     

    Pinkie-Dawn

    Vampire Waifu
    9,528
    Posts
    11
    Years
  • I didn't even get a thing stating that my password had expired when I logged in today. I manually went and changed it though to be safe.

    Same here, and I hesitated on changing my password until I read this thread. Now I changed it to prevent that pop-up from happening in the near future.
     

    Sydian

    fake your death.
    33,379
    Posts
    16
    Years
  • Fixed on my end, it seems. Thanks, guys! Unless it's a fluke...then I'll cry.
     

    Nihilego

    [color=#95b4d4]ユービーゼロイチ パラサイト[/color]
    8,875
    Posts
    13
    Years
  • I'm wary of touching anything until we can confirm how they got in and that the site is no longer compromised. :/

    I kinda get what you're saying but I don't understand why your wariness would stop you changing your password to something else. Strictly speaking, your password should be different for every website anyway. If worst comes to worst and the site is still compromised, then... what use is a unique password to anyone anyway?
     
    2,305
    Posts
    14
    Years
    • Seen Dec 16, 2022
    I changed my password last night and I haven't got the expired notification. Hopefully everything sorts itself out.
     

    Kip

    🔥 Fluffy Fire Fox
    928
    Posts
    16
    Years
    • Age 32
    • They/Them
    • UK
    • Seen May 1, 2024
    I kinda get what you're saying but I don't understand why your wariness would stop you changing your password to something else. Strictly speaking, your password should be different for every website anyway. If worst comes to worst and the site is still compromised, then... what use is a unique password to anyone anyway?

    Strictly speaking, yes it should. I'd be willing to bet a lot of people's aren't though. ;) I find it best practice to find out more about the breach and if the site is no longer compromised before changing to a more-secure password, since if the site is still compromised the new password would simply be passed on along with any other changes we make. That said, I could change to a temporary password for the time being until we know more.
     
    Back
    Top