mirror of
https://github.com/ngosang/trackerslist.git
synced 2026-04-25 17:35:57 +03:00
[GH-ISSUE #408] Compromised trackers #348
Labels
No labels
bug
enhancement
help wanted
pull-request
question
waiting
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/trackerslist-ngosang#348
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @Noobgamer0111 on GitHub (Nov 9, 2022).
Original GitHub issue: https://github.com/ngosang/trackerslist/issues/408
Hello all,
TL;DR: My qBittorrent has been compromised by a Python script attack from some compromised public trackers.
See: https://www.reddit.com/r/Piracy/comments/yq3fus/i_think_my_qbittorrent_has_been_compromised/
Here's a list of IPs that were used by these trackers that Malwarebytes has detected. I'm removed the offending torrents for now.
@ckcr4lyf commented on GitHub (Nov 9, 2022):
It's a bold assumption to say "the public tracker is compromised"
Trackers don't "push content" as you mention in your reddit post, rather they give you connection details of peers that have the content you (your bittorrent client) asks for.
If a peer maliciously sends bad data, it would most likely (likely since SHA-1 is technically considered weak now) fail the hash check against the
.torrentfile you downloaded.These trackers are just doing their job, which is linking you to peers that have the file you ask for. It's kinda like this:
Seems the problem is on your end, an executable or script you obtained has caused your client to try and download malware, and it's just using the trackers to find peers. Most trackers don't discriminate on content, they don't even know what the content is.
Source: I've written and operate public trackers
@wefalltomorrow commented on GitHub (Nov 11, 2022):
The cause was figured out and (obviously) had nothing to do with trackers.
https://www.reddit.com/r/Piracy/comments/yq3fus/-/ivof8hc