vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vBulletin 3.5 Add-ons (https://vborg.vbsupport.ru/forumdisplay.php?f=113)
-   -   Cracker Tracker (https://vborg.vbsupport.ru/showthread.php?t=110030)

Marco van Herwaarden 03-11-2006 11:16 AM

Just 2 advices:
- If you don't know what this does: Don't Install
- If you think vBulletin will be vulnerable to the same sort of attacks a phpBB do install, otherwise don't.

Onur 03-11-2006 11:58 AM

i dont know is any need of this hack in an vB, but the one thing you can profit of this hack is you can see any attempts of hack in the log
ok phpinfo() is blocked, but i dont think it is a good idea to share this info, only if you have always the latest Version of php installed

and its true thats the problems of another boardsystem is not the same problem of vB, but i have found that vb 3.0.4+3.0.5 hase release because some problems with the santy an other holes

only in an nice and wonderfull world everbody update her system and there boards just in time, this skript can block the one try of hack how hacked youre site in the time between release the new version and you have time to do the update ;)

and if you have any blocked funktions on youre board, look at the log and found the part in the string how collided with the definations of the hack and replace it

and whether you was attact whitout success in the last time you only can see in the logs of youre server or after an testtime in the log of this CT :)

XanTrax 03-11-2006 02:01 PM

I thnk anyone that has alot of hacks, mods, and extensions in should install this just to patch up any unnecessary holes in the mods they used.

buro9 03-12-2006 03:08 PM

If you have your own server and want to spend a little time learning about how to configure mod_security for Apache, you can obtain peace of mind for all of the sites, forums and scripts you host.

That can be found over here:
http://www.modsecurity.org/

JakeS 03-12-2006 04:33 PM

Nice, used to use this back in the day..

MyGamez 03-17-2006 01:13 AM

This is a Great Addition For Security on my Board.
Thank You Very Much, Works Perfectly.

sandalwood 04-04-2006 07:53 AM

this is fcking EXCELLENT, since mod-security is a handful and still not simple.

however, please make a version that skins the next time, so in other words make the error message on a normal vb page so its still in the forum theme colors etc. at least use the css.. thanku

sandalwood 04-04-2006 07:57 AM

can you PLEASE have it log a few things

1. whatever the vb variable for the currently logged in username is, LOG THE USERNAME PLEASE :) :)

2. log the date better, like YYYY-MM-DD, so it sorts chronologically. this has nothing to do with country format it is common sense for computer sorting purpose, left to right. 2006-04-03 .. and have that be the first column

... see number 1 actually thats the main thing
so you know if someone was logged, then know who they were

Devil Woman 04-16-2006 07:49 AM

I have added this to my forum all seems to be working ok or atleast I think so were exactly do I find the logs of attacks?

Thanks

Onur 04-16-2006 08:05 AM

@sandalwood
1. no, on this hook are no userinfo avalible
2. this is possible at next release

@devil Woman
*youre forum*/elog/logfile_injects.txt (last 100 logs)
*youre forum*/elog/counter.txt (count of all attacks)


All times are GMT. The time now is 01:56 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01075 seconds
  • Memory Usage 1,730KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (3)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete