vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   Community Lounge (https://vborg.vbsupport.ru/forumdisplay.php?f=13)
-   -   phpBB.com HACKED!! (https://vborg.vbsupport.ru/showthread.php?t=203848)

02-02-2009 04:44 AM

Quote:

Originally Posted by UncoderMom (Post 1731489)
But wasnt it them that didnt update a know vulnerable version?

The attacker says that they first broke in on January 14th using a local file inclusion vulnerability. PHPlist fixed that vulnerability on January 29th:

http://www.phplist.com/?lid=274

Seriously, there isn't much phpbb.com could have done.

And as people have commented in the blog post, he's not much more than a script kiddie. Suggesting config files be encrypted? What's next? <sarcasm>Maybe he'll suggest everyone use ASP.NET because obviously ASP.NET never got anyone hacked.</sarcasm>

02-02-2009 06:37 AM

Thanks guys for being supportive to phpbb.com

I'm a phpbb3 user (Until I can afford an "upgrade") and I am very loyal to them.. They are a great team of people that do not even get paid for what they do (Other then the Bertie Bears)

I'm sure that Vbulletin's software is secure but for all forum owners, now is a good time to start double checking and analyzing your forum. The larger the forum, the more likely of an attack.

Just please be careful..

~<',>< Jason

iAnj 02-02-2009 06:58 AM

Quote:

Originally Posted by Mudjosh (Post 1731637)
Thanks guys for being supportive to phpbb.com

I'm a phpbb3 user (Until I can afford an "upgrade") and I am very loyal to them.. They are a great team of people that do not even get paid for what they do (Other then the Bertie Bears)

I'm sure that Vbulletin's software is secure but for all forum owners, now is a good time to start double checking and analyzing your forum. The larger the forum, the more likely of an attack.

Just please be careful..

~<',>< Jason

Lol close and do a full backup asap :D

GSeybold 02-02-2009 08:56 AM

How often are these hackers caught and prosecuted? Hang em!

Vaupell 02-02-2009 09:49 AM

Quote:

Originally Posted by GSeybold (Post 1731696)
How often are these hackers caught and prosecuted? Hang em!

Rarely done, both cases, some laws usually dont apply across borders
unless your american, then the whole world should apply to their laws
they think, which is odd..

anyway not here to religious/political debate,

just here to gloat.. happy to be using vb. :p

KTBleeding 02-02-2009 11:28 AM

Quote:

Originally Posted by iAnj (Post 1731651)
Lol close and do a full backup asap :D

He claimed to be using phpbb, not phplist. So explain why he needs to panic and do a full backup immediately.. Or did you not read anything other than the title of this thread?

Magnumutz 02-02-2009 11:40 AM

Some simply want to increase their post count, not knowing that posts in this section don't get counted.

02-02-2009 02:25 PM

Quote:

Originally Posted by Magnumutz
Some simply want to increase their post count, not knowing that posts in this section don't get counted.

Exactly.. lol.

I am very satisfied with my phpbb3 forum.. (Though I notice that all high ranking forums just happen to be vbulletin.. not fair you guys.. :D )

But I would still like to upgrade.

But anyway, more on topic..

I still can't believe some of the jerks on the internet.. I mean, I met some doosies in real life but some of these people take the cake.. He should be working for a security site, not hacking into people offering a free software to help others.

They put way too much time working on phpbb to have this happen to them.. :mad:

lasto 02-02-2009 03:44 PM

Quote:

Originally Posted by Magnumutz (Post 1731799)
Some simply want to increase their post count, not knowing that posts in this section don't get counted.

You kidding me - thats its im gonna post in other sections now :)

Quote:

Originally Posted by Mudjosh (Post 1731952)
I still can't believe some of the jerks on the internet.. I mean, I met some doosies in real life but some of these people take the cake.. He should be working for a security site, not hacking into people offering a free software to help others.:

They not good enough - most of them use scripts or code from Boards and just mess till they get a hit.

02-02-2009 04:21 PM

Quote:

Originally Posted by lasto (Post 1732030)
They not good enough - most of them use scripts or code from Boards and just mess till they get a hit.

Correct me if I'm wrong, but isn't this is an English speaking forum? You know, as opposed to a "I'm 2 culz to use proper gramarz" speaking forum?


All times are GMT. The time now is 02:20 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01123 seconds
  • Memory Usage 1,744KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (8)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (4)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete