Simple. By having a shitty password. There sure is somewhere a list of the most commonly used passwords, and if you go through them, you'll find the one for the most people.
In the worst case, there is no limitation to attempts to try to login. This way it could be automated and it would increase the chances of figuring it out.
It takes real subversive faggots with a will to destroy the website to do that.
Lesson: login tied to keypair verification instead of common email / 2step verification. Bypasses IP Whitelist / logs. Requires owner store private key on device.
No one does this because lazy. Convenience > security.
Downside: Owner has to disable cloud backup and watch for update enabled cloud backup.
So consumeproduct.win is still there and functioning, they just replaced the style sheet with something that hides everything, and adds their gay background image.
Right click somewhere and "Inspect Element." On pretty much any element, you should be able to see the Styles and find the style derived from the <html> tag. It looks like this:
html * {
visibility: hidden;
}
This makes every element underneath the <html> tag (which is every element) invisible. In my browser, you can just uncheck this and bam, the page is back.
You can also go to the .css stylesheet where this style comes from: https://img.consumeproduct.win/consumeproduct/community/style-zpyxBFemlE9i.css
Which also changes the background of the html element to show that image.
I don't know enough about how operating a .win site works to know why all they've done is replace one .css file.
I saw JosephGoebbels5 or whatever say there was a domain purchase. I haven't looked into it not that I care to. It's obviously possible.
I just know sketchy things are indeed sketchy. Just like after the election and fuck shit happened with the domain name. C's responses to me read like public relations duplicity.
Prior brigading by drama. Community creation opens up and coincidentally this happens. Then coincidentally they manage to fuck up our board in the time I was asleep and then some vague explanation. The same way after the election one Donald user got a visit from them Bois for being too edgy about election fuckery and then the domain changed to patriots.
For me it appears the floor is indeed made of floor.
Unsurprisingly ConPro clowned on him until he went and 41%'d and rdrama clearly managed to guess the master admin password.
I'm guessing it will be like this until u/C gets off his fucking arse and restores it.
In the worst case, there is no limitation to attempts to try to login. This way it could be automated and it would increase the chances of figuring it out.
It takes real subversive faggots with a will to destroy the website to do that.
No one does this because lazy. Convenience > security.
Downside: Owner has to disable cloud backup and watch for update enabled cloud backup.
Typical, they only get the job 41% done.