Jump to content

Why there is no support for Telugu producers and stars in Ibomma Issue?


Recommended Posts

Posted
51 minutes ago, kevinUsa said:

same question too 

 

36 minutes ago, halwafan said:

you can lol later, but do you know how data theft happened? 

okka sari ee kinda prompts GPT lo motto chudandi bro

Can data theft occur without a website requesting a cookie?

If a website does not request cookies, does that mean it cannot have cookies stored on my device?
 

  • Haha 1
Posted
39 minutes ago, halwafan said:

you can lol later, but do you know how data theft happened? 

Short answer:

ibomma (the piracy site) didn’t “hack” users directly—users leaked their own data indirectly because piracy sites often use malicious ads, phishing scripts, rogue SDKs, and click-redirect chains that silently capture info. Let me break it down cleanly.

 

 

---

 

How sites like ibomma.site steal or harvest user data

 

Piracy/illegal streaming websites commonly use the following techniques:

 

 

---

 

1. Malicious Ad Networks (Adware & Spyware)

 

These sites don’t earn from legitimate ads.

They inject third-party ad scripts that can:

 

Track your IP

 

Read your browser fingerprint

 

Inject cookies

 

Redirect you to scam/phishing sites

 

Install malware through fake “Allow to Continue” or “Download” buttons

 

 

These scripts can collect:

 

✔ Device type

✔ Location

✔ Browser & OS

✔ Installed fonts & plugins

✔ Page history from referrer information

 

This alone can identify a user uniquely (browser fingerprinting).

 

 

---

 

2. Fake App Downloads

 

ibomma and clones often push:

 

Fake APKs for Android

 

“ibomma app” download pages

 

 

These APKs typically contain:

 

Keyloggers

 

SMS scrapers

 

Browsing history extractors

 

Contacts access

 

Permissions to read storage

 

 

People install them because the website makes it look official.

 

This is the #1 way user data is stolen.

 

 

---

 

3. Script-based Phishing (JS Injection)

 

A lot of these sites embed obfuscated JavaScript from:

 

“rotating ad servers”

 

unknown CDNs

 

redirect chains

 

 

These scripts can:

 

✔ Capture form data

 

Even if you don’t fill anything, they can log:

 

keystrokes

 

taps

 

clipboard contents (on Android WebView)

 

 

✔ Force login pop-ups

 

Some clones show fake “Google login” prompts that harvest credentials.

 

 

---

 

4. Push Notification Hijacking

 

They show pop-ups like:

 

> “Click Allow to Play Movie”

 

 

 

Users click ALLOW →

They start receiving:

 

phishing notifications

 

install prompts

 

crypto scams

 

spyware ads

 

 

The notification system itself sends your unique browser token, which is identifiable.

 

 

---

 

5. Cookie & Session Harvesting

 

Even if no account is created, the website can access:

 

persistent cookies

 

session system info

 

localStorage items

 

device unique ID (for apps)

 

 

Through fingerprinting they can follow you across:

 

ads

 

other websites

 

social media sessions

 

 

 

---

 

6. MITM Attacks on Fake Domains

 

Many clones run without HTTPS.

 

When HTTP is used:

 

ISP

 

Public WiFi

 

Malware in your phone

 

The server owner

 

 

…can intercept:

 

IP

 

pages visited

 

data typed

 

injected scripts

 

 

Some ibomma clones are even intentionally configured without SSL.

 

 

---

 

7. Data Selling to 3rd-Party Brokers

 

These sites often sell collected data to:

 

fraud networks

 

gambling networks

 

porn ad networks

 

malware distributors

 

 

This is why you suddenly start seeing:

 

spam SMS

 

spam WhatsApp messages

 

random browser notifications

 

targeted “adult” ads

 

 

This is literally their business model.

 

 

---

 

💀 Summary: What the Owner Actually “Steals”

 

From visiting ibomma or installing its app, the owner (or affiliated networks) can collect:

 

✔ Phone number (through Android permission abuse)

 

✔ Contacts

 

✔ Stored files (photos, videos, documents)

 

✔ SMS (OTP harvesting!)

 

✔ IP address & location

 

✔ Device model + unique identifiers

 

✔ Browsing history

 

✔ Google account tokens (if phishing is injected)

 

They don’t need to “hack” you.

You gave them access by:

 

installing the app

 

clicking “Allow”

 

visiting the site in a vulnerable browser

 

downloading a pirated movie

 

 

 

---

 

🛑 If you visited ibomma, what to do NOW?

 

Tell me if you:

 

1. Visited the website only

 

 

2. Installed their Android APK

 

 

3. Clicked “Allow” notifications

 

 

 

…and I’ll tell you exactly what to clean and how.

 

Want me to give you a step-by-step cleanup guide?

Posted
3 hours ago, Kootami said:

 

 

Vademi sanga seva cheyatledu ..mana data ni ammukuntunnadu , malli dammuntey pattukondi ani statement lu. Na pellam baada padaleka oiracy chestunna antadu ,malli meru tickets rates pencharu kabatte nenu ila chestunna ani andam endi vayya ...he is playing us 

 

Easy to say, manaki unna entertaintent ye adhi, free ga evadu adagaledhu. Reasonable prices vuntey chinna movies kuda enni hit ayinaayo chudu.   vaallu chesedhi kuda sangha seva emi kaadhu !! Theatres annitini kabja chesi janam ki choice lekunda chesthaaru ga ? Entha mandhi chinna movie producers complaint chesina ippatiki solve chesaara ? Thanks to OTT, atleast alaantollaki manchi jaruguthundhi. 

Posted
3 hours ago, Kootami said:

 

 

Vademi sanga seva cheyatledu ..mana data ni ammukuntunnadu , malli dammuntey pattukondi ani statement lu. Na pellam baada padaleka oiracy chestunna antadu ,malli meru tickets rates pencharu kabatte nenu ila chestunna ani andam endi vayya ...he is playing us 

Data ni ammukuntunnaado thelvadhu, inthavaraku okka normal ppl kuda data poyindhani cheppaledhu 😛 

if someone worries abt the privacy, they should not visit - period ! Adhi kaavali idhi kaavali antey yetta ba 😉

Posted
58 minutes ago, Raisins_72 said:

Data ni ammukuntunnaado thelvadhu, inthavaraku okka normal ppl kuda data poyindhani cheppaledhu 😛 

if someone worries abt the privacy, they should not visit - period ! Adhi kaavali idhi kaavali antey yetta ba 😉

 

1 hour ago, Kootami said:

Short answer:

ibomma (the piracy site) didn’t “hack” users directly—users leaked their own data indirectly because piracy sites often use malicious ads, phishing scripts, rogue SDKs, and click-redirect chains that silently capture info. Let me break it down cleanly.

 

 

---

 

How sites like ibomma.site steal or harvest user data

 

Piracy/illegal streaming websites commonly use the following techniques:

 

 

---

 

1. Malicious Ad Networks (Adware & Spyware)

 

These sites don’t earn from legitimate ads.

They inject third-party ad scripts that can:

 

Track your IP

 

Read your browser fingerprint

 

Inject cookies

 

Redirect you to scam/phishing sites

 

Install malware through fake “Allow to Continue” or “Download” buttons

 

 

These scripts can collect:

 

✔ Device type

✔ Location

✔ Browser & OS

✔ Installed fonts & plugins

✔ Page history from referrer information

 

This alone can identify a user uniquely (browser fingerprinting).

 

 

---

 

2. Fake App Downloads

 

ibomma and clones often push:

 

Fake APKs for Android

 

“ibomma app” download pages

 

 

These APKs typically contain:

 

Keyloggers

 

SMS scrapers

 

Browsing history extractors

 

Contacts access

 

Permissions to read storage

 

 

People install them because the website makes it look official.

 

This is the #1 way user data is stolen.

 

 

---

 

3. Script-based Phishing (JS Injection)

 

A lot of these sites embed obfuscated JavaScript from:

 

“rotating ad servers”

 

unknown CDNs

 

redirect chains

 

 

These scripts can:

 

✔ Capture form data

 

Even if you don’t fill anything, they can log:

 

keystrokes

 

taps

 

clipboard contents (on Android WebView)

 

 

✔ Force login pop-ups

 

Some clones show fake “Google login” prompts that harvest credentials.

 

 

---

 

4. Push Notification Hijacking

 

They show pop-ups like:

 

> “Click Allow to Play Movie”

 

 

 

Users click ALLOW →

They start receiving:

 

phishing notifications

 

install prompts

 

crypto scams

 

spyware ads

 

 

The notification system itself sends your unique browser token, which is identifiable.

 

 

---

 

5. Cookie & Session Harvesting

 

Even if no account is created, the website can access:

 

persistent cookies

 

session system info

 

localStorage items

 

device unique ID (for apps)

 

 

Through fingerprinting they can follow you across:

 

ads

 

other websites

 

social media sessions

 

 

 

---

 

6. MITM Attacks on Fake Domains

 

Many clones run without HTTPS.

 

When HTTP is used:

 

ISP

 

Public WiFi

 

Malware in your phone

 

The server owner

 

 

…can intercept:

 

IP

 

pages visited

 

data typed

 

injected scripts

 

 

Some ibomma clones are even intentionally configured without SSL.

 

 

---

 

7. Data Selling to 3rd-Party Brokers

 

These sites often sell collected data to:

 

fraud networks

 

gambling networks

 

porn ad networks

 

malware distributors

 

 

This is why you suddenly start seeing:

 

spam SMS

 

spam WhatsApp messages

 

random browser notifications

 

targeted “adult” ads

 

 

This is literally their business model.

 

 

---

 

💀 Summary: What the Owner Actually “Steals”

 

From visiting ibomma or installing its app, the owner (or affiliated networks) can collect:

 

✔ Phone number (through Android permission abuse)

 

✔ Contacts

 

✔ Stored files (photos, videos, documents)

 

✔ SMS (OTP harvesting!)

 

✔ IP address & location

 

✔ Device model + unique identifiers

 

✔ Browsing history

 

✔ Google account tokens (if phishing is injected)

 

They don’t need to “hack” you.

You gave them access by:

 

installing the app

 

clicking “Allow”

 

visiting the site in a vulnerable browser

 

downloading a pirated movie

 

 

 

---

 

🛑 If you visited ibomma, what to do NOW?

 

Tell me if you:

 

1. Visited the website only

 

 

2. Installed their Android APK

 

 

3. Clicked “Allow” notifications

 

 

 

…and I’ll tell you exactly what to clean and how.

 

Want me to give you a step-by-step cleanup guide?

Equifax, experian lu mana ssn mingabettai

ATT vadu motham personal info mingified....appude em peekalekapoyinam....identha le.

  • Upvote 1
Posted
1 hour ago, Raisins_72 said:

 

Easy to say, manaki unna entertaintent ye adhi, free ga evadu adagaledhu. Reasonable prices vuntey chinna movies kuda enni hit ayinaayo chudu.   vaallu chesedhi kuda sangha seva emi kaadhu !! Theatres annitini kabja chesi janam ki choice lekunda chesthaaru ga ? Entha mandhi chinna movie producers complaint chesina ippatiki solve chesaara ? Thanks to OTT, atleast alaantollaki manchi jaruguthundhi. 

They are doing business and that too legally ...antha noppi aythey chudakandi , valle chachinattu rates taggistaru

Posted
1 hour ago, Raisins_72 said:

Data ni ammukuntunnaado thelvadhu, inthavaraku okka normal ppl kuda data poyindhani cheppaledhu 😛 

if someone worries abt the privacy, they should not visit - period ! Adhi kaavali idhi kaavali antey yetta ba 😉

Data dark web lo ammuthaaru .... spam calls and digital arrest laki data ekkadi nunchi vastundo telusukondi

Posted
7 hours ago, Kootami said:

 

 

Vademi sanga seva cheyatledu ..mana data ni ammukuntunnadu , malli dammuntey pattukondi ani statement lu. Na pellam baada padaleka oiracy chestunna antadu ,malli meru tickets rates pencharu kabatte nenu ila chestunna ani andam endi vayya ...he is playing us 

Evaru ammukotledu? Asalu elanti data ammadu, daani valla manaki vachina nashtam enti? Ive cheptaaru kada mee Indians. 

Aadhaar copy batani paper lekka tipputaaru, doctor visitation ki velte enti mudlo noppa pant ippandi ani andari mundu antaru, emanna scan ki velte oka 10 nurses vachi free show chustaru, pakkintodu em chestunnada ekkada tirugutunnara ani chustaru. Inka meera data protection and privacy gurinchi maatladedi!

Posted
7 hours ago, Kootami said:

Hit 3 was released , even bahubali also theu got hd print before release 

Bahubali time lo asalu ibomma vunda? 12yrs back kada. ante veedu 9yrs vunnappude antha chesada? 

Hit 3 release ayyinda? Emo naku gurtuledu. Okka cinema ni addu pettukuni anni cinemaalu ani statements enduku istunnaru? 

Posted
44 minutes ago, Jatka Bandi said:

Bahubali time lo asalu ibomma vunda? 12yrs back kada. ante veedu 9yrs vunnappude antha chesada? 

Hit 3 release ayyinda? Emo naku gurtuledu. Okka cinema ni addu pettukuni anni cinemaalu ani statements enduku istunnaru? 

 

Posted
44 minutes ago, Jatka Bandi said:

Bahubali time lo asalu ibomma vunda? 12yrs back kada. ante veedu 9yrs vunnappude antha chesada? 

Hit 3 release ayyinda? Emo naku gurtuledu. Okka cinema ni addu pettukuni anni cinemaalu ani statements enduku istunnaru? 

 

46 minutes ago, Jatka Bandi said:

Evaru ammukotledu? Asalu elanti data ammadu, daani valla manaki vachina nashtam enti? Ive cheptaaru kada mee Indians. 

Aadhaar copy batani paper lekka tipputaaru, doctor visitation ki velte enti mudlo noppa pant ippandi ani andari mundu antaru, emanna scan ki velte oka 10 nurses vachi free show chustaru, pakkintodu em chestunnada ekkada tirugutunnara ani chustaru. Inka meera data protection and privacy gurinchi maatladedi!

Andaeu chestey okay ? Veedu iche statement le kaaledi ... dammuntey pattukondi ane statement lu ivvatam endi, chesede langa pani 

Posted
18 minutes ago, Kootami said:

 

Andaeu chestey okay ? Veedu iche statement le kaaledi ... dammuntey pattukondi ane statement lu ivvatam endi, chesede langa pani 

ade antundi. Andaru chestunnappudu levani noru, ippudu tega lestundi, why? Vadiki vunna talent and pogaruki chesaadu. Veellemanna pathithula? Veella langa panula gurinchi kuda matladu.

Posted
20 minutes ago, Kootami said:

 

will watch later. in the middle of something.

Posted
7 minutes ago, Jatka Bandi said:

ade antundi. Andaru chestunnappudu levani noru, ippudu tega lestundi, why? Vadiki vunna talent and pogaruki chesaadu. Veellemanna pathithula? Veella langa panula gurinchi kuda matladu.

Vademi sanga seva cheyatledu 

Posted

Paina aa essay answers endo.... 

Use brave browser, block trackers & scripts and be happy

 

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...