PDA

View Full Version : My forum got hacked



Crazy Buddhist
12-09-2008, 07:28 PM
http://www.zone-h.org/component/option,com_attacks/Itemid,43/filter_defacer,aSSaSSin_HaCkErS/

http://www.vipassanaforum.net/images/Hackers.gif

jdbnsn
12-09-2008, 07:55 PM
That sucks dude. Any idea where the vulnerability was? I'd hate to have that happen here as well.

FuzzyPlushroom
12-09-2008, 08:16 PM
If they know how to hack, you'd think they'd know how to use a Shift key properly.

xRyokenx
12-09-2008, 08:21 PM
You would also assume that they would know proper grammar hahaha.

SXRguyinMA
12-09-2008, 09:21 PM
lol

OvRiDe
12-09-2008, 09:53 PM
That sucks!!!

Just out of curiosity, what forum software were you using?

Nevermind.. I see you got it all back up and running. It appears they are targeting Simple Machines Forums.

mtekk
12-09-2008, 09:58 PM
If they know how to hack, you'd think they'd know how to use a Shift key properly.

The thing is they do not know how to hack, they are just script kiddies that bought a "hacking tool". Too bad they can't do something productive like mod their computer case.

Collinstheclown
12-09-2008, 11:45 PM
Too bad they can't do something productive like mod their computer case.

Or jump off a bridge... :dead:
That sucks man, lucky it was only 2 days worth.




-CollinstheClown

Crazy Buddhist
12-10-2008, 01:06 AM
That sucks!!!

Just out of curiosity, what forum software were you using?

Nevermind.. I see you got it all back up and running. It appears they are targeting Simple Machines Forums.

Uh uh look at the list of hacks he's done in the first page many are PHbb. They are script kiddies but the hack they are using uses some scripting vulnerability in the php and deletes the primary Admin account which is why I ended up needing that backup I made two days ago.

Jon - yes I think having all the files on your server set with 755 permissions is BAD and Fantastico does this "sometimes" when it does SMF installs. And if no one tells ya to go chmod them to 644 .. well.

Matthew

OvRiDe
12-10-2008, 05:28 AM
Uh uh look at the list of hacks he's done in the first page many are PHbb. They are script kiddies but the hack they are using uses some scripting vulnerability in the php and deletes the primary Admin account which is why I ended up needing that backup I made two days ago.

Jon - yes I think having all the files on your server set with 755 permissions is BAD and Fantastico does this "sometimes" when it does SMF installs. And if no one tells ya to go chmod them to 644 .. well.

Matthew

Yah.. I had just looked at the top of the list when I posted, but I did notice a few phbb and even a couple of vBul 3.7 forums when I ventured down further.

On the CHMOD 644 .. way ahead of you there. Luckily, since you have to purchase vBull, its not part of the Fantastico installation scheme. After our server move we ran into a small problem, so we made sure to get everything tightened up, just in case.

LiTHiUM0XiD3
12-10-2008, 01:13 PM
consider it a compliment... an annoying one... but heh a compliment... your forum was popular enough for those dim witted script kiddies to attack :)

progbuddy
12-10-2008, 05:19 PM
Script kiddies get on my nerves. They embody the three things I dislike terribly:
1. Bad Grammar.
2. Spamming.
3. A name that took no creativity to develop.

Crazy Buddhist
12-10-2008, 07:57 PM
Turns out they weren't script kiddies but Palestinian based hackers who hack sites without compromising the server to prove "Palestinians are not terrorists". He is active on saudihack.com (caution malware site).

I wrote him a nice email suggesting someone with his skills and talents could do better things to help the Palestinian people and that most of us know who the real terrorists are and we don't think they are in Palestine.

CB

DaveW
12-11-2008, 05:28 PM
Reminds me of a story one of my lecturers told...

Can't remember the exact systems being used, but apparently while at HP some students at a Uni managed to get access to a HUGE password file, we're talking 20 or so gigs. Unfortunately for them it was completely useless, and my professor was watching the network activity...managed to look up their system, found an e-mail, and dropped them a mail that said "You guys know that file is useless, right?"

Got a reply a few mins later. "Yeah, we know thanks, just wanted to see if we could..."

:D For the most part, I hate these guys. Yet every so often they make me crack a smile.

-Dave