You can find a list of sites below. Besides Humblebundle there's a lot and some other notable ones I know some people on here go to are ...League Of Legends, Curse(and sites connected with it like the mincraft forums), Penny Arcade, Gamedebate, Glassdoor, 4chan, zendesk, Uber, discord, bitpay.

The list is massive please look through the listing of all the sites.

http://gizmodo.com/cloudbleed-password-memory-leak-cloudflare-1792709635

https://github.com/pirate/sites-using-cloudflare

7 years ago*

Comment has been collapsed.

Ugh.

7 years ago
Permalink

Comment has been collapsed.

Yeah...

View attached image.
7 years ago
Permalink

Comment has been collapsed.

Humble needs e-mail confirmation when logging in from new browser, shouldn't be an issue. (Still changed it)

7 years ago
Permalink

Comment has been collapsed.

same here, also, there's only a Civ IV key on my acc, so that should be a big loss for me.

7 years ago
Permalink

Comment has been collapsed.

Just looked it up and bundlestars.com is also on the possibly affected list.

7 years ago
Permalink

Comment has been collapsed.

Yeah, it's massive.. I've listed some other notable sites I know some friends on here use. But people should definitely read the whole list.

7 years ago
Permalink

Comment has been collapsed.

Changing passwords for all those porn sites is going to be a nightmare.

(More seriously, there's a second thread about it where it's said that Bundle Stars and a few other sites might also be affected, though they don't appear in the github list.)

7 years ago
Permalink

Comment has been collapsed.

It does appear on the full list, takes notepad++ to open it as it's a huge one. The short list that is posted on the github is for the top alexa traffic sites only.

7 years ago*
Permalink

Comment has been collapsed.

It really wonder how those random porn sites can be more popular than Bundle Stars :/

7 years ago
Permalink

Comment has been collapsed.

Really?

7 years ago
Permalink

Comment has been collapsed.

Really. Keyword here is "random". Their urls look like something out of the early 2000s, back when people didn't know they could get free porn basically all over the internet.

7 years ago
Permalink

Comment has been collapsed.

7 years ago
Permalink

Comment has been collapsed.

Dear god, now i remember i've seen this video a decade ago.

A DECADE ago.

7 years ago
Permalink

Comment has been collapsed.

It really wonder how those random porn sites can be more popular than Bundle Stars :/

It's probably because they bundle porn stars, rather than games.

7 years ago
Permalink

Comment has been collapsed.

isnt that like 3 days old news ?

Other then that i use 1 password for everywhere for years and years ... still no one hacked me >.>
If they want my bank account , its theirs .. . there are like 2$ there at most ... and 0.03$ in paypal :D

7 years ago
Permalink

Comment has been collapsed.

No problems when you poor :D

7 years ago
Permalink

Comment has been collapsed.

You can't get robbed if you don't have any money

View attached image.
7 years ago*
Permalink

Comment has been collapsed.

This new meme is the best thing ever tbh , getting me every time :D

7 years ago
Permalink

Comment has been collapsed.

One phrase:

2-Factor Authentication

7 years ago
Permalink

Comment has been collapsed.

Deleted

This comment was deleted 4 years ago.

7 years ago
Permalink

Comment has been collapsed.

Ah, that is different. Sigh.

7 years ago
Permalink

Comment has been collapsed.

Also, I have no idea if it's relevant at all, but the app that Humble Bundle uses for its 2FA is Authy, and authy.com is in the list of compromised sites.

7 years ago
Permalink

Comment has been collapsed.

7 years ago
Permalink

Comment has been collapsed.

Ugh. Lots of job sites too. I'm going to need to change a bunch of passwords. Thanks for the heads up

7 years ago
Permalink

Comment has been collapsed.

They can't steal my identity if I haven't figured out who I am yet!!

7 years ago
Permalink

Comment has been collapsed.

Maybe they will figure it out for you.

7 years ago
Permalink

Comment has been collapsed.

Well, maybe these hackers aren't all bad if they can help me reach self actualization

7 years ago
Permalink

Comment has been collapsed.

Thanks for the heads up, changed my password and added a 2-Factor Authentication

7 years ago
Permalink

Comment has been collapsed.

welp, sms is not arriving.

7 years ago
Permalink

Comment has been collapsed.

In my case clicking the Send SMS link didn't do anything. I had to Tab into that links and press Enter for it to work.

7 years ago
Permalink

Comment has been collapsed.

uhg
*Edit: i dont see that humble uses cloudfare o.O

View attached image.
7 years ago*
Permalink

Comment has been collapsed.

About 4.3 million sites in that 68 MB .txt file.
I bet every single site we use is on that list.

If something is gonna happen, just hit me and don't tell me about it.

"Cloudflare, Inc. is a U.S. company that provides a content delivery network, Internet security services and distributed domain name server services......blah blah blah blah blah"

Data leakage since september 2016 ? It's like they wanted to happen.
The biggest companies fail so much.

7 years ago*
Permalink

Comment has been collapsed.

Bump for awareness.

7 years ago
Permalink

Comment has been collapsed.

Closed 5 years ago by FateOfOne.