DreamPi hacked... some questions.

Online games, how to get online, and anything involving Dreamcast online can be discussed here.
User avatar
dcnigma
lithium
Posts: 38
Dreamcast Games you play Online: A lot.
Location: Belgium
Contact:

DreamPi hacked... some questions.

Post by dcnigma »

I think my Dreampi was hacked.

Yesterday night I openend DMZ for my PI and left the default password :roll: open..
this morning i tried ssh to it but it refused the password.
tried this link https://howtoraspberrypi.com/recover-pa ... pberry-pi/ to get back in it.
No luck, already back online flashed a new SD card, a 2GB card now as the 16GB that got hacked,
( 16GB is overkill for DreamPi :P )
And changed the default password after first boot....

:!: Did expect that my Pi would be hacked that quick its been online for like 8 hours or less.

:?: But still want to know if there is something to check if i am really hack and not corrupt sd card...
I can write to the card so i think i can rule out corrupt SD card. But are there things I can check?
Check out my website http://dcnigma.eu5.org just a personal blog/website.
To keep track of my projects, Arcade Cabinets, Dreamcast mods, Raspberry Pi mods, Software, Design,
Homebrew Games, Rom Hacks, 3D prints, Strange things and many more :D :D :D

kazade
Developer
Posts: 264
Dreamcast Games you play Online: Lots!

Re: DreamPi hacked... some questions.

Post by kazade »

Ouch this didn't even occur to me. Dreampi has a default pi username and password and SSH enabled!!!

Which is fine, as long as you don't expose port 22 to the outside world! Which presumably DMZ does!

**Everyone change the default password or do not expose port 22 via your router!!**

User avatar
pcwzrd13
Seen Any Sailors?
Posts: 7311
Dreamcast Games you play Online: All of them! I'm able to connect with dial-up or broadband.
Location: USA
Contact:

Re: DreamPi hacked... some questions.

Post by pcwzrd13 »

Well this is easily avoided if you don't open ports to your Pi. There's no reason to do that. When you set up port forwarding / DMZ, you want to do it to the Dreamcast's IP address, not the Pi's.
PSO Characters:
Teal'c - lvl 119 HUcast - GC# 11666
Alto - lvl 39 FOnewm - GC# 12964

YouTube Channel : Dreamcast Live

User avatar
HuntrRose
Vagabond
Posts: 727
Dreamcast Games you play Online: Maximum Pool
PSO
Alien Front Online
Q3A
WSB 2K2
POD
Ooga Booga
4x4 Evo
ChuChu Rocket
NBA 2K1
NFL 2K1

Re: DreamPi hacked... some questions.

Post by HuntrRose »

never go full pi dmz...

User avatar
ERVOSCV
Anarki
Posts: 92
Dreamcast Games you play Online: JGR, IGP, Max Pool, Q3, 4x4, Gundam, ChuChu, PSO... anything that does not require DMZ =/

Re: DreamPi hacked... some questions.

Post by ERVOSCV »

I have never done anything with my DreamPi other than the intructions that came with it. Will I be ok?

Also, PC - are you a Stargate fan? "Teal'c - lvl 119 HUcast - GC# 11666"?

User avatar
mistamontiel
Shark Patrol
Posts: 2162
Dreamcast Games you play Online: Errythan except Tetris o.0
Location: Miami, FL, CUBA
Contact:

Re: DreamPi hacked... some questions.

Post by mistamontiel »

If you're unsure what address is assigned to your Dreamcast, connect to Quake 3 briefly tells you it

DMZ onto that, not the Pi!

User avatar
pcwzrd13
Seen Any Sailors?
Posts: 7311
Dreamcast Games you play Online: All of them! I'm able to connect with dial-up or broadband.
Location: USA
Contact:

Re: DreamPi hacked... some questions.

Post by pcwzrd13 »

ERVOSCV wrote:I have never done anything with my DreamPi other than the intructions that came with it. Will I be ok?
You're fine as long as you don't DMZ to the Pi's IP address.
ERVOSCV wrote: Also, PC - are you a Stargate fan? "Teal'c - lvl 119 HUcast - GC# 11666"?
Yep! Well with the exception of Stargate Universe. I like to forget that existed. lol
PSO Characters:
Teal'c - lvl 119 HUcast - GC# 11666
Alto - lvl 39 FOnewm - GC# 12964

YouTube Channel : Dreamcast Live

User avatar
ERVOSCV
Anarki
Posts: 92
Dreamcast Games you play Online: JGR, IGP, Max Pool, Q3, 4x4, Gundam, ChuChu, PSO... anything that does not require DMZ =/

Re: DreamPi hacked... some questions.

Post by ERVOSCV »

pcwzrd13 wrote:Yep! Well with the exception of Stargate Universe. I like to forget that existed. lol
Thats cool. I just finished watching SG-1, Ark of Truth, and Atlantis for the 1st time. I'm a big scifi guy, just never bothered with it when it was on TV, but thats neither here nor there in this Pi hacking thread, but I had to ask lol.

User avatar
dcnigma
lithium
Posts: 38
Dreamcast Games you play Online: A lot.
Location: Belgium
Contact:

Re: DreamPi hacked... some questions.

Post by dcnigma »

Yeah it was stupid to go full DMZ and not to change the default password.. :lol:
But did't think it would happen that quick... :)
But then again its was Saturday night :roll:
Based on the mac address they could see that it was a Raspberry. All berry's start with this mac address b8:27:eb:XX:XX:XX

It's freaky that it happend so quick. My first modem was in bridge modes and I remember that one day I was lazy to check the ip of my xbox.
So I did a lan scan my pc was connected directly so the result was not what I expected. Because it returned also everybody that was on the same node as I was. That day I installed a Router/firewall because I needed a home network. And seeing all those different IP's made me scary that someone could get in to my pc.

So I am not surprised that it happend, only that it happend so quick.
And I want to know if there is away to get in to the log . I am just curious to find out what is been done, our how did it :lol: :D

:idea: Also one strange thing to note: my ISP blocks all in coming connection below 1024 for security reasons :shock:
So yes, port 22 is below 1024 so in theory this could not happen.
Maybe policies have changed after I left them 3 years ago. And DMZ is wide open now.
Back when I was working for that ISP I needed to change many ports above 1024 to make servers/services work.
Check out my website http://dcnigma.eu5.org just a personal blog/website.
To keep track of my projects, Arcade Cabinets, Dreamcast mods, Raspberry Pi mods, Software, Design,
Homebrew Games, Rom Hacks, 3D prints, Strange things and many more :D :D :D

User avatar
dcnigma
lithium
Posts: 38
Dreamcast Games you play Online: A lot.
Location: Belgium
Contact:

Re: DreamPi hacked... some questions.

Post by dcnigma »

pcwzrd13 wrote:Well this is easily avoided if you don't open ports to your Pi. There's no reason to do that. When you set up port forwarding / DMZ, you want to do it to the Dreamcast's IP address, not the Pi's.
Oops I over looked this part of the info. I thought the PI needed DMZ, but makes sense now I think about it that the dreamcast would need the DMZ.. :P Whoops lets fix that :oops:
Check out my website http://dcnigma.eu5.org just a personal blog/website.
To keep track of my projects, Arcade Cabinets, Dreamcast mods, Raspberry Pi mods, Software, Design,
Homebrew Games, Rom Hacks, 3D prints, Strange things and many more :D :D :D

  • Similar Topics
    Replies
    Views
    Last post