vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   Warning to FlashChat users - security hole (https://vborg.vbsupport.ru/showthread.php?t=125457)

steven s 09-10-2006 11:37 AM

Flashchat updated to 4.70
http://forum.tufat.com/showthread.php?t=24971

yesfans 09-10-2006 01:03 PM

Quote:

Originally Posted by JGM007
I was running flash chat and was not as lucky as most people when I was hit yesterday. The message board was the only thing left, the index file for that had been replaced with something to the effect HACKEYD BY STOUNE!!! and a link to http://stounee.ifrance.com/

I went to replace the index file and found every single other directory and file was gone! for some reason they left the board though.
The web host did have a recent backup for me thankfuly, but at a price of course. :(
I ended up dumping my whole vB directory and upgrading to 3.6 and changed passwords on everything.


I am with asmallorange.com and can say nothing but FINE thing for this host. They have great tech help 24/7 via email and don't charge for help. They have bailed me out of many problems. I have a dedicated server with them!

DudeSicko 09-10-2006 02:58 PM

Quote:

Originally Posted by The Finman
Code:

{meta} >>>> {http-equiv} "Refresh" """"
That will put an end this nonsense.

Thats all you have to do to stop the hacking?

steven s 09-10-2006 03:06 PM

Quote:

Originally Posted by DudeSicko
Thats all you have to do to stop the hacking?

That has nothing to do with Flashchat.

Guest210212002 10-16-2006 12:41 PM

Hit with this as well about a month ago, my host recommended installing mod_security in php as another means of preventing it.

Marco van Herwaarden 10-16-2006 03:41 PM

Problem with mod_security is that you can also break a lot of things (including vBulletin) if you don't know what you are doing.

Guest210212002 10-16-2006 04:10 PM

Agreed. I did a decent amount of RTFM'ing before dropping it on, and so far no issues.

AyeCapn 10-18-2006 05:01 PM

I'm about to install FC 4.7.5. IS this still an issue?

Paul M 10-18-2006 06:14 PM

This issue is long dead, it was fixed in Flashchat 4.6.2

wobbly 11-08-2006 03:19 AM

No it isn't bud. I got hacked last weekend using latest vb 3.62 and latest flashchat.

found that they had uploaded loads of ftp cgi scripts etc and were well on their way to trashing my site. My host found the activity going on and shut down my site.


All times are GMT. The time now is 10:37 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01033 seconds
  • Memory Usage 1,734KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_code_printable
  • (3)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (3)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete