XAT ISSUESUpdate and Information About Data Breach.
Hello!
Many of you will have noticed the serious problems with the xat service over the last two days. It would appear that our hosting provider fell for a simple social engineering scam and briefly handed control of some of xat's servers to a third party.
It is likely that the third party was able to download the xat registered user database. This consists of registered usernames, email address, a hashed version of the password and ip address. We do not store real names, addresses, financial data, dates of birth or similar personal information.
The old servers have now been shut down for analysis. It is therefore necessary to replace them with new servers with a different provider and we are working on this as quickly as we can. We would appreciate your patience while we perform this task and return xat to normal operation. The database was rolled back to Nov 4 08:04 GMT so any trades you did after that but before the breach will have been reversed. Purchases made after that time will be re-credited.
We have always appreciated the loyal and committed users who have helped xat to grow into the fun place that it is. We are confident that we will have things back to normal and really appreciate your support during this difficult time.
Anyone with information about this attack or recent DDoS attempts can email it to info@xat.com with the subject: tipoff.
We look forward to chatting again with you soon.
The xat team
6 Nov 2015
Harrison | November 5, 2015 | xat Updates | 23 Comments
As you might have noticed, xat is currently experiencing some serious issues. Please be patient as the administrators fix the website.
Some issues include: chat resets (including manage and backup reset), main owners unable to edit their chats, trade downtime, bot downtime, xat.me downtime and connectivity issues.
Update 1: All passwords have been reset. Use http://xat.com/lostpass to change your password and then you will be able to log into your account again.
Update 2: The database has been rolled back to November 4th 08:04 GMT. This means that anything that has affected your account during that time (e.g creating an account, trading, transferring, buying powers, buying a short name etc) will be reversed.
Update 3: If you had authentication for your xat account enabled previously, disable it and re-enable it.
Update 4: xat has issued a statement regarding the data breach. You can read it here: http://xat.com/databreach.html
Update 5: many official chats are experiencing connectivity issues where users can’t access the chat using the direct link. To access a chat when the main link shows as “page not found” use http://xat.com/chat/room/CHATIDHERE/ or xat.com/xatCHATIDHERE (example: xat.com/chat/room/5 or xat.com/xat5).
Edit: This issue has been fixed.
Update 6: The “Extra Features” link for chats (i.e. when you click “Edit Your Chat” and then click on “Extra Features”) will not display any content until you do the following:
Click edit bottom right hand corner of the chat, enter the chat password, click submit and click on “Save changes”.
The extra features link should now work.
This was done for security reasons.