Dragon Ordnance - INT/US PEDs, Raws, & Turkish Pharmacy

Damn. If Ironvet got hacked, maybe we are all hacked!
[THIS ACCOUNT HAS BEEN COMPROMISED BY A THIRD-PARTY. IT HAS BEEN TEMPORARILY SUSPENDED.]

Yeah, you're all hacked. But I won't do anything with it if PurplePandaLabs pays 0.5BTC.

If not, yeah, emails have been dumped a while back. Other shops paid 2500$ or 5000$. Not a single user was hacked nor information leaked. They choose to lie to you all and now they're paying.
 
Well fuck you you low life piece of shit.

[THIS ACCOUNT HAS BEEN COMPROMISED BY A THIRD-PARTY. IT HAS BEEN TEMPORARILY SUSPENDED.]

I'm a criminal. Yes. But I keep my word and I tried to get everything solved without doing any of this shit.

Also, read his posts and those of PurplePanda. They lied to all of you, took no ownership of their mistakes, and now they and their customers are paying for it. I make no excuses for myself but they should be ashamed of the service they provide.
 
Hey boys as you've heard shit went down quickly but as panda said in his thread, we brought a security breach analyst into our fold and said we had nothing to worry about. a SQL injection vulnerability on our site for all these years would've resulted in tons of data breaches, so thats impossible.

Most of these passwords and emails are a result of other accounts on BoP and whatever other steroid forum was mentioned in Baker's thread.

I highly urge anyone who has an account on these sites to change them on mine. With that said, it is business as usual here.
 
Most but not all. So for those who aren’t even on BoP and who got hacked on here, please explain.

Yeah, i'm perplexed. Both PPL and DO say they weren't hacked and not everyone that was compromised visits BoP.

There has to be a common denominator in all of this, but i'm not seeing it yet.

( i think it was @WeMadeItToAndromeda ) said that the hacker posted personal information in DO's thread. By the time i got there, Millard had already removed it.

What exactly was that personal information? Just some emails from a hacked account or customer information from one of the two sites?
 
Yeah, i'm perplexed. Both PPL and DO say they weren't hacked and not everyone that was compromised visits BoP.

There has to be a common denominator in all of this, but i'm not seeing it yet.

( i think it was @WeMadeItToAndromeda ) said that the hacker posted personal information in DO's thread. By the time i got there, Millard had already removed it.

What exactly was that personal information? Just some emails from a hacked account or customer information from one of the two sites?
Actual names and addresses, not just email addresses.
 
Well I mean, that’s what happens when you make an account on a website. Your information stays there until you delete your account lol. Everyone who had their name on that list should have been aware of that fact prior to ordering. I mean, do you think these guys delete users accounts? No, you signed up for an account, and your info stays in their database until it’s either deleted or you email them and request it to be deleted.

Imagine going to make an order and you see “account does not exist/wrong information”. It’s not logical at all for them to delete user accounts. If you care about your information being deleted once your order has arrived, you either need to order via email, or order and make sure your information is deleted afterwards.
 
Last edited:
Did anyone save this list? Man I’d feel a lot better knowing I wasn’t on it...

So if it’s just names, addresses, and emails... that’s just your user account info. Nothing tying the names to actual orders?
 
Did anyone save this list? Man I’d feel a lot better knowing I wasn’t on it...

So if it’s just names, addresses, and emails... that’s just your user account info. Nothing tying the names to actual orders?
My guess would be those were sources that were posted, but it was in a pastebin and I’m sure af not visiting that site to copy it.
 
I cannot log into my DO account.

Now I know something is up because my pw was saved.

I've entered it manually and it does not take my pw.
 
Well I mean, that’s what happens when you make an account on a website. Your information stays there until you delete your account lol. Everyone who had their name on that list should have been aware of that fact prior to ordering. I mean, do you think these guys delete users accounts? No, you signed up for an account, and your info stays in their database until it’s either deleted or you email them and request it to be deleted.

Imagine going to make an order and you see “account does not exist/wrong information”. It’s not logical at all for them to delete user accounts. If you care about your information being deleted once your order has arrived, you either need to order via email, or order and make sure your information is deleted afterwards.

We do an annual wipe of all accounts every year, which so happened to be this July. All customers also have a button which says "delete account" on their account page if they so wish, wiping all the data.

Most but not all. So for those who aren’t even on BoP and who got hacked on here, please explain.

I can't really comment on it as I just don't know. We brought a security breach analyst a month ago when it this happened in August, who told us our site is safe from entry level attacks such as an SQL injection. There are zero traces of anything obtained from our website. As many as you know, panda and I share the same developer, so for the "hacker" to obtain more data from mine but less from his is nonsense. But the fact does stand, nothing was obtained here, and BoP was taken down, with the other forums mentioned.

If you want to speak to my security breach guy in more technical details, I can point you in his direction if you have discord.
 
We do an annual wipe of all accounts every year, which so happened to be this July. All customers also have a button which says "delete account" on their account page if they so wish, wiping all the data

Thank you, this was basically exactly what my point was. I don’t see anything wrong with it. I know you have stated from the beginning that customers are able to delete their accounts/information themselves with a click of a button, but people don’t ever read, instead they just order and then complain later if something happens.
 
Back
Top