what a strange Habra-phishing with rc.habratest.net?

It's a strange letter that I have the badge "veteran", which actually came to me in January.

Links from emails are not on Habr, and rc.habratest.net — nginx on this website then asks for the HTTP authentication.

Domain habratest.net was on habrahabr llc, with the address and phones "thematic media" as well as administrators of Denis CL and Vadim Rybalko. (which looks very authentic and much more whois-info of other domains "thematic media")

Names habratest.net rc.habratest.net it is known servers habradns.net and resolved in 127.0.0.1 and 212.158.163.148, the latter belongs to a caravan-Telecom and is serving habrahabr.

The letter was sent rc.habralab.ru from the local user and sent via the www server relay.habramail.net

Left the username and password do not fit.

This was a strange phishing.
Well, or this is a bug with the database of abrusio that suddenly crashed for three months, and restored from backup incorrectly configured.

WTF?
October 8th 19 at 01:58
6 answers
October 8th 19 at 02:00
Yes, today I wrote a topic about this phishing, the topic has gained as much as +60, and the administration removed him in drafts, as if that shows how paranoid I am
October 8th 19 at 02:02
Also got the letter. In support of Habra responded that this error is a test server and there is no reason for concern.
And login not tried? :) - madyson90 commented on October 8th 19 at 02:05
No :) - vicente_Willms20 commented on October 8th 19 at 02:08
October 8th 19 at 02:04
Yeah, today was the topic:

The Old-Timer — Habrahabr: Home / Saharienne

by kefirux on Mar 17, 2012 3:41 AM
Hubs: Habrahabr, Information security

This email
Welcome kefirux!

Congratulations! Now you see the icon "old-timer". You can see it in your profile.

With best wishes, Habrahabr.

Link profile leads to a rc.habratest.net which asks for a password-modal dialogue
not bothering to even samitivate profile page.

p.s.: the post does not claim to be pros, and the main exit, is just a small signalom for a possible mass hijacking of accounts, those who were inattentive
October 8th 19 at 02:06
I wonder on what basis you give the badge "veteran"? I'm six months "staroselie" the author of the question, but don't give me a badge :)
This is in the help. Need 3 or 4 years and karma more than a certain urovne (type 15) - madyson90 commented on October 8th 19 at 02:09
The old-timers. The user registered more than 3 years ago (at the time of the calculation), with more than 50 karma. - vicente_Willms20 commented on October 8th 19 at 02:12
I've looked in help, did not exist before this information. More precisely, there was no requirement for karma for the old-timers. - Garnet.Fahey commented on October 8th 19 at 02:15
October 8th 19 at 02:08
Today I slipped a post about this and the fact that it's phishing. But unfortunately now I can't find the link. Please contact our technical support with the full headers of the received email so that they took adequate operational measures to prevent.
The fishers gave only what's themed media another domain :)
Judging by the fact that the post is already deleted — was not phishing.
Well, as it really is incredibly most likely a fake source, and incredibly stupid forgery of the site. - madyson90 commented on October 8th 19 at 02:11
October 8th 19 at 02:10
Also got the letter. Login did not. Some even dare? :)
if it fails the test server, then authorization is hardly there on the main database of users. - madyson90 commented on October 8th 19 at 02:13

Find more questions by tags Phishing