Jump to content
Wishing All Members a Safe and Happy Festive Season… Merry Christmas and Happy New Year from all of us at The Thaiger 🎄

[WARNING] - Apparently ThailandPass has suffered a Data Leak:


Recommended Posts

So, back in January when I returned from my Christmas trip in Europe, I had to apply a ThailandPass. 

Today, I received (an obviously phishing) email on the email address I had used for ThailandPass. 

Judging by the info they are asking for me, I can guess all they have managed to dump from ThailandPass' database are emails. 

Please, be very careful and don't even reply to them, they are not the Thai government, rather they are hackers with malicious intentions.

 

In my case, as I know what I'm doing, I'm gonna be trying to con them and as I am curious I want to find their whereabouts and see where they are based.

I will be updating this post as I find information about these cockroaches. 

 

Step 1(to "hacking" them back): Reply to their e-mail answering their questions (with fake data obviously): 

 

701360292_ScreenShot2022-02-27at3_55_00PM.thumb.png.1e16177e73857d20e8f84e26f8253ba5.png

 

 

 

Edited by Lyp14 [ctxa]
  • Like 1
  • Thanks 1

[UPDATE] - I SHUT 'EM DOWN

They replied to my previous email asking for a scanned copy of my passport. 

So I uploaded a picture of a passport I found on Google Images to imgurl, and made a link on my server redirecting it to imgurl, but in the mean time capturing stuff like their IP, etc....

... They're in.... wait for it.... India

 

 

221638392_ScreenShot2022-02-28at3_25_24AM.png.1e9c99287f65da4ac20cc4dc46c8dee7.png

Furthermore an analysis on their domain passinformationthailand.com shows they were using Titan Mail for their phishing email. I have already reported it to Titan Mail, and as of now their mail capabilities have been disabled. Meaning they can no longer send or receive emails. 

 

726407478_ScreenShot2022-02-28at3_31_07AM.thumb.png.25fdc02727fb42a386132f73c9b0fd59.png

 

Furthermore, their historic A records point to a server in Hostinger, which I have since reported for abuse and hope it will go down soon: 

1644640377_ScreenShot2022-02-28at3_31_47AM.thumb.png.e9bdb3b2e6168ad3cc97ec8504008cda.png

 

These "hackers" (scammers) won't bother anyone anymore, at least not with this domain. 

Good luck to you, and hope nobody will ever fall into the tricks, and also I hope others will also shut them down following my way. it's pretty easy.

 

 

 

Edited by Lyp14 [ctxa]
  • Like 1

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

By posting on Thaiger Talk you agree to the Terms of Use