PDA

View Full Version : Security Question: URL Insertion?


segwayon
11-11-2010, 01:20 PM
What's the issue with guests seeing an error message while trying to view this remote page:

/forum/showthread.php?p=http://babycaleb.fortunecity.co.uk/picture.htm?

I posted a query at vBulletin.COM about this apparent hacker string last year but no one there responded. It seems odd that the "Who's Online" will show that a guest is apparently seeing an error message, but why do the hackers keep trying if the vBulletin software is blocking their page request? Is there any reason to be concerned about these attempts? We are running 3.8.4 PL2.

Thanks!

Lynne
11-11-2010, 02:16 PM
Try the link yourself with an unregistered user - what happens? Nothing? Then don't worry about it.

segwayon
11-11-2010, 02:51 PM
Try the link yourself with an unregistered user - what happens? Nothing? Then don't worry about it.

I have to wonder if the attempts are unsuccessful then why do people keep trying?

Lynne
11-11-2010, 02:56 PM
Because some are bots.

Have you ever looked at your server logs at attempts to login to your server? Don't do that if you freak out easily. You will see certain IPs hammering the server repeatedly trying to get in constantly (IP changes after every minute long attempt). They all just hit it within one minute increments and try a whole lot of usernames and/or passwords. It goes on all day long. Just because they don't get in the first time, doesn't mean they give up.