Open Side Menu Go to the Top
Register
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans

09-09-2013 , 07:51 AM
Quote:
Originally Posted by Wilbury Twist
...
To Jens, I know it's still early in this saga (although it probably feels like an eternity for you) but any updates on the condition of your computer? Malware, Trojans, keyloggers, etc.? It may seem like a secondary concern right now, but it might shed some light on who is behind this.
...
What's really super important, too, is changing all your passwords (which I'm sure you've already done) and making sure they're SAFE passwords!

I'm no IT expert by any means but one thing I do know is what a safe password is. Playing poker online and at high stakes, as you guys do, you absolutely have to make sure you've got safe passwords everywhere: Poker site(s), email, Amazon, Skype etc.

- NEVER use a word that can be found in a dictionary in any language, even combining it with a number. Absolutely and totally unsafe!

- NEVER use a dictionary word spelled backwards. Totally unsafe.

- NEVER use a name (plus number). Ridiculously unsafe.

Create your passwords like this:

Come up with a sentence that you can remember. It helps if it's funny or weird in some way. If your native language doesn't use capital letters for nouns, include a name; if nouns are capitalized, include at least one noun. E.g.:

"Playing poker is fun and Ilari is the king."

Then create the password by using the first letter of each word: PpifaIitk

Then add a two digit number to that. So your final, SAFE password might be:

PpifaIitk85

Guys, seriously, change ALL your passwords into this type of password! And don't use the same one for every important site. Also, when you note down clues for your different passwords (into a document on your computer or on paper), never spell it out but just give yourself hints. In the above example, you might write:

Amazon = P... Ilari + n

meaning: P (beginning of your sentence) Ilari (so you can remember what sentence it was) plus n (plus number). If you use different double digit numbers for every site, you might include a clue as to what number it is but NEVER write it down.

Hope this helps. I think the issue gets ignored by too many people in general. My friends have all had to hear me preaching to them about this and now seems like the right time to share it with my fellow poker enthusiasts...

If all of you have been using this type of password anyway, sorry for the boring post and for wasting your time

Last edited by Pokarhontas; 09-09-2013 at 07:58 AM.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 08:12 AM
Better than all of that with passwords is to get a program like Keepass (free) and then create unique 20-30+ character passwords for each site, that include numbers, special characters, etc. Mine all look something like this:

Quote:
I&+l=7iQhne@ip$`NFtpN'[5_
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 08:16 AM
Quote:
Originally Posted by Acing
I think I understand the key logs now going with the theory that you can only have 2 keys active at once / room. I guess once the new key is created which ever of the first 2 keys is older becomes deactivated.
Ive been there the whole week and keys dont work like that.The key will work no matter if there are 2 or more.I had 2 at start,made one more on the third day and all of them were working fine.I still made 1 or 2 more during the week and i would say all were working.

One day my mate found the door opened with the locket on,and we are sure it wasnt us who did it.He told me and some more friends when it happened but we didnt give it too much importance in that moment.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 08:23 AM
Quote:
Originally Posted by Pokarhontas
What's really super important, too, is changing all your passwords (which I'm sure you've already done) and making sure they're SAFE passwords!

I'm no IT expert by any means but one thing I do know is what a safe password is. Playing poker online and at high stakes, as you guys do, you absolutely have to make sure you've got safe passwords everywhere: Poker site(s), email, Amazon, Skype etc.

- NEVER use a word that can be found in a dictionary in any language, even combining it with a number. Absolutely and totally unsafe!

- NEVER use a dictionary word spelled backwards. Totally unsafe.

- NEVER use a name (plus number). Ridiculously unsafe.

Create your passwords like this:

Come up with a sentence that you can remember. It helps if it's funny or weird in some way. If your native language doesn't use capital letters for nouns, include a name; if nouns are capitalized, include at least one noun. E.g.:

"Playing poker is fun and Ilari is the king."

Then create the password by using the first letter of each word: PpifaIitk

Then add a two digit number to that. So your final, SAFE password might be:

PpifaIitk85

Guys, seriously, change ALL your passwords into this type of password! And don't use the same one for every important site. Also, when you note down clues for your different passwords (into a document on your computer or on paper), never spell it out but just give yourself hints. In the above example, you might write:

Amazon = P... Ilari + n

meaning: P (beginning of your sentence) Ilari (so you can remember what sentence it was) plus n (plus number). If you use different double digit numbers for every site, you might include a clue as to what number it is but NEVER write it down.

Hope this helps. I think the issue gets ignored by too many people in general. My friends have all had to hear me preaching to them about this and now seems like the right time to share it with my fellow poker enthusiasts...

If all of you have been using this type of password anyway, sorry for the boring post and for wasting your time
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 08:26 AM
Quote:
Originally Posted by Bobo Fett
Better than all of that with passwords is to get a program like Keepass (free) and then create unique 20-30+ character passwords for each site, that include numbers, special characters, etc. Mine all look something like this:
In this case you case see your passwords on your screen, so if someone is able to see your screen (or take screenshots remotely) then he will have all of your passwords?
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 08:30 AM
Quote:
Originally Posted by Bobo Fett
Better than all of that with passwords is to get a program like Keepass (free) and then create unique 20-30+ character passwords for each site, that include numbers, special characters, etc. Mine all look something like this:
the biggest problems are the users, or the 'safety vs. comfort' problem. Sure you can have huge password strings, but most ppl can't remember them. so they copy & past from desktop or have a sheet w/ pws.

i guess jeans i using tokens anyway (if possible) and a good medium length pw (eg. with 15-20 characters) is safe enough when it comes to brute force. if a keylogger is installed, even a 100-character pw wouldn't help. so actually pokerhontas tip is quite good, imo.

another problem with pws that are 'too good' is, that not every site allows all special characters.

btw token: a good (but definitely not perfect) protection is a security token for your laptop (i don't use one, so i can't name a good product).


kinda late OT:

@ 'PS should provide locks/chains for the laptops of players'-sayer:

serious? do you really think, that someone, who gains access to the hotel room and professionally install a trojan could be stopped by simple lock?


@ all the 'make a virus check' folks (read it several times itt):

this whole story reads like a professional job, so the hackers/gangster are probably using some advanced malware program. chances are slim that a non-expert will find it, and chances are even smaller that you can remove it. so a complete new OS is a must.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 08:32 AM
Bobo: Yeah, well, I prefer to be independent and to actually KNOW my passwords. Also, I'm sure there are ways to hack a programme generating passwords. Finally, the fact that the programme you mention is free, isn't particularly trust inspiring either, LOL. But each to their own...

The method I described is as brain-based as possible, with as little technical (i.e. hackable) interference as possible.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 08:34 AM
Quote:
Originally Posted by archii
snip
How is the second part relevant to this story? The part where bartender got fired?
Since you asked, I only referenced it to support how these reviews are often influential.
In this case the guy claimed innocence, there was no proof but still got fired. He was in the process of buying a home, lost his health insurance etc, and so the purported $20 bribe solicitation while risking his job is obviously and massively -EV. He suspects a disgruntled fellow employee may have planted that review.

here's the story as reported by NBCnews.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 09:01 AM
Quote:
Originally Posted by birs320
In this case you case see your passwords on your screen, so if someone is able to see your screen (or take screenshots remotely) then he will have all of your passwords?
They just show up as black dots.

Keepass is free and people should use it. I am pretty sure the new OSX coming out is going to have something like that built in as well.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 09:15 AM
Quote:
Originally Posted by joeschmoe
Since you asked, I only referenced it to support how these reviews are often influential.
In this case the guy claimed innocence, there was no proof but still got fired. He was in the process of buying a home, lost his health insurance etc, and so the purported $20 bribe solicitation while risking his job is obviously and massively -EV. He suspects a disgruntled fellow employee may have planted that review.

here's the story as reported by NBCnews.
But it's irrelevant to the power of tripadvisor, it could have happened on any website or even a facebook post
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 09:29 AM
Happy to see those spaniards posting aswell as the retweets.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 10:16 AM
From what I believe this is the main hotel for ept Barcalona. There has clearly been a breach of security and from the sounds of it, it very well could be an inside job!
Disgusting
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 10:32 AM
Not sure if posted already but wouldnt hurt to post it on there FB pages :

Ritz carlton page :
https://www.facebook.com/ritzcarlton?ref=ts&fref=ts

Arts Hotel page : ( one person posted a link to PN article)
https://www.facebook.com/HotelArts?ref=ts&fref=ts

Looks like they are a bit more responsive on fb instead of twitter...

Should get much more attention imo
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 10:35 AM
Quote:
Originally Posted by joeschmoe
At worst, if slandering the hotel costs them money and they can prove damages, a court might try to collect from someone or something.
[ ] Slandering

You meant libeling. Your speculation is neither informative, nor useful.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 10:52 AM
And is this the first time?

God knows how long this has being happening, many years, many tournaments and not maybe just besides tournaments (other kind of hacking tries) ?

Maybe this is just the first time they get caught...

Really SICK!

I hope PokerStars and authority wont sweep this under the carpet and this gets resolved fully!
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 10:52 AM
Inside job involving top name pros, EPT staff and a number of hotel employees over many European countries.

I suggest any pro's who have had weird downswings and just chalked it up to variance take a second look at those sessions...
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 11:20 AM
i would say there is over 50% chance this is not the first time they doing this on ept stops. high stakes players should take a look at their game data for 2012-2013 at least, if they have used their laptops for poker.

lol...btw, what are the chances you bring home an infected laptop, and the trojan spreads in your home network to your main pc ? any it-experts ?
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 11:42 AM
Quote:
Originally Posted by Hansu Hanhi
lol...btw, what are the chances you bring home an infected laptop, and the trojan spreads in your home network to your main pc ? any it-experts ?
Theoretically it's possible, but the chances are slim that some random thieves had access to something so sophisticated. You would need to invest hundreds of thousands of dollars to develop something 1. undetectable 2. highly contagious.

I wouldn't worry about this.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 11:47 AM
Quote:
Originally Posted by 46&2
I would think, in a serious instance like this, you will be better served taking some time out of your party schedule and actually participate in some of the suggestions being offerd.

You seriously need to think about your decisions moving forward at this point.

Not only are you helping yourself in this matter, you need to understand you will be directly helping others that may be vulnerable to attack in the future.

Im sorry this happened to you, I truly am. But you have a rather large opportunity (&platform in 2+2) to benefit this community as well as the poker community in general IMHO.

Its honestly not only all about you at this point given the situation IMHO. Think about the others you can help. Go big or go home.

For yours,mine, and the communities sake, please do not quit on this one... take the time and do what needs to be done.

When this is over with the happy ending that it deserves, I buy you a 5th and help you finish it.

Regards,
Jonathan
Quote:
Originally Posted by Jeans
I just sent Ritz-Carlton a message about this situation and linked them to this thread. I now feel I've done pretty much everything there is to be done about this case and now all we can do is wait. My tweet has now been shared over 100 times but it certainly won't hurt if more people share it so do that and tell your friends as well.

Good stuff Jeans...

Im hoping you didnt take offense to my post earlier. It was not indended to do so. Im in this thread because 1) your story is interesting... and disconcerting at the same time...2) I see this horrible, yet interesting story as a catalyst in the evolution of safety proceedures/programs for alltravelers... not just poker dudes/dudettes.

Im just here to keep this fresh and to help with understanding the magnitude of this situation... Aside from the people highjacking with paragraphs of their experiences, the goofball children dismissing your fiasco as a "non-crime", and basic trolls ITT, the reality is... you/someone else could have been severely attacked, physically and/or financially. This thread is a weapon in its own right and should be used as such...there is a wealth of info to be gained ITT.

That said, I feel you have an acceptional opportunity (what some would/could argue an "obligation") here to take the time while its fresh and steamroll forward until the community gets reasonable answers/actions (or things move forward positively at least) from the powers that be.

Quote:
Originally Posted by Hansu Hanhi
jeans, it takes day or a couple to google notice your newly created twitter account. im sure in a couple of days the story is widely shared in twitter etc.
This is also a reason why I seemed a bit pushy in my OP. Not that I knew of this type setback, but just that there would be setbacks moving forward. Keeping timely, continuous pressure on key players in this fiasco is the way to proceed in this situation IMHO.
Quote:
Originally Posted by adventurer
Retweeted & linked to a spanish forum.Best of luck.
Good stuff ads
Quote:
Originally Posted by sensorpoker88
Hey Jeans, you should see if your friend who runs the travel blog will tweet this incident out to the ritz, he/she has 16k twitter followers
Im insta-reshuvin here with this btw... 4 way anyway ( EPT,Stars, Ritz, Hero)... its like QQ no trups (~DEEP)
Spoiler:
fold equity FTW

Quote:
Originally Posted by shaywh
Apparently some Spanish fellow with over 70k followers retweeted the story. Can someone here provide more info who he is/ how influential is he?

hmmm ‏@javimoya 38m
@RealJeans89 hi! I'm from Spain. Your story is now very popular here (appeared in ‘meneame’ -our extremely popular reddit-)


(Yeah I know this is other tweet not the RT)
This is better than good.. now we rollin'

Last edited by 46&2; 09-09-2013 at 12:06 PM.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 12:00 PM
Quote:
Originally Posted by luckysox
Hi Jeans,
I read your case and I am shocked about the Arts, love that place and the service has always been unforgettable. Now I will not trust any hotel again.

I live in Barcelona and have few local connections with the Police (a friend's husband works as a detective), few lawyers and other connected locals that could possibly help.
Let me know if there is any way I can help from the "ground zero".

You have to get to the bottom of this, do not let them wear you out.
Cheers!
This is also well worth looking into. This seems a possible invaluable tool moving forward. Not that I would post any "inside info" gained from this avenue ITT, but it seems a good "secret weapon"... provided source is legit (no offense Mr. Source )
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 12:07 PM
Jeans,
I took the time this morning to read through this thread, in particular your postings. This story is very unsettling.
I really think contacting a lawyer is your next move. I write this with your best interests in mind.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 12:50 PM
It amazes me how insecure high stakes pros laptops seem to be, its like walking around with a massive target on your back. If you don't have your laptop encrypted and bios locked you're just asking for trouble. Considering the amount of money you guys gamble for you should really take better care of your workspace!!

A mid level office managers laptop has probably ten times the security that someone who gambles daily for 100's of thousands of dollars has.

Safeboot(or whatever software you like) your laptop today.........
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 12:55 PM
Sick beat, for sure !
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 01:40 PM
I feel you Jeans... Arts Barcelona jinxed me too. I vacationed in that hotel last year and after that it's like everyone can see my cards!
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote
09-09-2013 , 01:52 PM
Quote:
Originally Posted by Bobo Fett
Better than all of that with passwords is to get a program like Keepass (free) and then create unique 20-30+ character passwords for each site, that include numbers, special characters, etc. Mine all look something like this:
Keepass is an outstanding piece of kit, was going to mention it if no-one else had.
My unbelievable EPT Barcelona story. Hotel rooms in arts barcelona broken into to plant trojans Quote

      
m