Hacked whilst on Holiday

Slightly off topic but which MSC ship were you on and what did you think of MSC?

Group of 6 of us going on a 4 nighter with them next year (dirt cheap) on Fantasia, I understand they don't have too many Brits and attract a mostly younger clientele. Should be a good laugh if nothing else.
 
Yesterday was the first email from e-bay confirming the item was listed.We got back late Saturday night so we were at home.
It could be a few things then sadly. Personally my money is on credentials being "sniffed" on the ship. The data is also satellite based transmissions. Back in the day these were very very easy to hack and network owners basically didn't give a hoot if one of their connections were utilized for nefarious purposes.

Looking at it from a naughty bad hacker pov i would absolutely poison the routers on a cruise ship if i wanted to harvest details. I don't, but i do know how some attack vectors work in detail. It is an environment where people let their guard down for a start.

One flag to me is that it was listed on the day you were back, so to possibly disguise details being taken whilst on the ship. Alternately an attacker may log stuff to a usb stick and grabs it when it comes to home port again. This would make it harder to detect as a hack via a network audit as no dodgy data was sent over a network with logging active.

Do you have important files on your laptop? back them up right now if i were you to an offline source, usb key etc. I can spare 20mins tomorrow to check your registry, mbr etc if you like to make sure you have no nasties on your devices. I would assume, if i were you, that you do have keyloggers of one sort or another installed and work from that.
 
Safest way to use any public WiFi network is with a VPN, it keeps all your traffic encrypted.

If you think you have been hacked the only 100% foolproof way of removing any virus/malware is formatting and rebuilding the device, absolute pain in the arse but there’s no other guaranteed way of doing it. All the AV’s in the world are still susceptible to day 1 viruses or dormant viruses reactivating after a certain timeframe. I’ve done several ethical hacking courses for my job and public WiFi is the perfect place to target anyone and everyone, whether it’s specific or random attacks.

Make sure you’re never using an administrator account to browse the internet or work in general, yes it’s a pain in the arse tapping the password in but it should only be very infrequent activity once the device is configured. Make sure you backup any important data on a regular basis, however long you’re happy to take a risk really, on to an external encrypted hard drive and if it’s that important a second external hard drive as well.

Use a password safe and random generator to create your passwords too (remember to back that up as well, very important), that way you just have to copy and paste passwords and they’re very difficult to brute force/guess if you’ve got important accounts (e.g. online banking). Changing really important account passwords on a regular basis, 10-15 minutes every few months is better than the clean up operation of bank details and money going missing.
 
It could be a few things then sadly. Personally my money is on credentials being "sniffed" on the ship. The data is also satellite based transmissions. Back in the day these were very very easy to hack and network owners basically didn't give a hoot if one of their connections were utilized for nefarious purposes.

Looking at it from a naughty bad hacker pov i would absolutely poison the routers on a cruise ship if i wanted to harvest details. I don't, but i do know how some attack vectors work in detail. It is an environment where people let their guard down for a start.

One flag to me is that it was listed on the day you were back, so to possibly disguise details being taken whilst on the ship. Alternately an attacker may log stuff to a usb stick and grabs it when it comes to home port again. This would make it harder to detect as a hack via a network audit as no dodgy data was sent over a network with logging active.

Do you have important files on your laptop? back them up right now if i were you to an offline source, usb key etc. I can spare 20mins tomorrow to check your registry, mbr etc if you like to make sure you have no nasties on your devices. I would assume, if i were you, that you do have keyloggers of one sort or another installed and work from that.

I appreciate all the info TCIB. We only had iPads and android phones on the ship and any files are stored on Dropbox - we don’t store anything important on the device itself.
 
Slightly off topic but which MSC ship were you on and what did you think of MSC?

Group of 6 of us going on a 4 nighter with them next year (dirt cheap) on Fantasia, I understand they don't have too many Brits and attract a mostly younger clientele. Should be a good laugh if nothing else.

If you’re looking for a piss up and you have their premium drinks package then you’ll have a good few days. Food was mediocre and the ship was far too Italian based which obviously effects food choices, entertainment etc. Despite the fact they advertise that English is the first language on their ships it’s not true. Ironically there were very few Brits - I met more Irish and Americans with the vast majority being Italians.
We were on the Musica which is a lovely ship - had everything you’d expect such as casino, gym, about 10 bars. Hope you have a great time
 

Don't have an account? Register now and see fewer ads!

SIGN UP
Back
Top
  AdBlock Detected
Bluemoon relies on advertising to pay our hosting fees. Please support the site by disabling your ad blocking software to help keep the forum sustainable. Thanks.