• Please note that this section is for questions regarding the forum itself - it is not for fan game-related questions. If you have a question about a fan game, ask in the appropriate thread.

  • Ever thought it'd be cool to have your art, writing, or challenge runs featured on PokéCommunity? Click here for info - we'd love to spotlight your work!
  • Our weekly protagonist poll is now up! Vote for your favorite Conquest protagonist in the poll by clicking here.
  • Welcome to PokéCommunity! Register now and join one of the best fan communities on the 'net to talk Pokémon and more! We are not affiliated with The Pokémon Company or Nintendo.

Issue: Password expired?

  • 5
    Posts
    10
    Years
    • Age 32
    • Seen Jul 1, 2016
    Whenever I try to log into my normal account I get an error message saying that "Your password is 678 days old, and therefore has expired" and won't let me do anything else besides go to the change your password page.

    I didn't even think that password expiration was a thing? Is this part of the "yo shit's broken and we're fixing it" thing or is this a separate problem?
     
    forgive me if this is wrong, but to my understanding we're making everyone change their passwords because of the Site Breaking.
     
    It is part of the we're fixing it and you should be overly cautious thing.. Go ahead and change your password.. we all will be doing it - ya know.. just to be sure.
     
    Better play safe and change your password but I think that the user data weren't in danger because AnonCoders' motive was obviously just spreading message, they had replaced the front page with pro-muslim propaganda. The nature of that message makes it hard to believe that they're interested about the user data because they wouldn't benefit anything from it. You need to know that AnonCoders is an anti-Israeli hacker group who has done this kind of attacks before: https://www.itproportal.com/2015/04/08/exclusive-anoncoders-hits-100-sites-opisrael-campaign/

    Only thing I wonder in this attack is why they destroyed almost the entire forum when they would've got same result by just replacing the index.php file, maybe they wanted to make removing their message as hard as possible.
     
    Last edited:
    mmmm there we go
     
    Achromatic and I both had an issue where it made us change the password again, saying the password was a day old and already expired. Just a head's up.
     
    Fixed on my end, it seems. Thanks, guys! Unless it's a fluke...then I'll cry.
     
    I'm wary of touching anything until we can confirm how they got in and that the site is no longer compromised. :/

    I kinda get what you're saying but I don't understand why your wariness would stop you changing your password to something else. Strictly speaking, your password should be different for every website anyway. If worst comes to worst and the site is still compromised, then... what use is a unique password to anyone anyway?
     
    I changed my password last night and I haven't got the expired notification. Hopefully everything sorts itself out.
     
    I kinda get what you're saying but I don't understand why your wariness would stop you changing your password to something else. Strictly speaking, your password should be different for every website anyway. If worst comes to worst and the site is still compromised, then... what use is a unique password to anyone anyway?

    Strictly speaking, yes it should. I'd be willing to bet a lot of people's aren't though. ;) I find it best practice to find out more about the breach and if the site is no longer compromised before changing to a more-secure password, since if the site is still compromised the new password would simply be passed on along with any other changes we make. That said, I could change to a temporary password for the time being until we know more.
     
    Back
    Top