vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   Community Lounge (https://vborg.vbsupport.ru/forumdisplay.php?f=13)
-   -   Rackshack Forums have been hacked!!! (https://vborg.vbsupport.ru/showthread.php?t=53872)

Erwin 06-05-2003 03:44 AM

Rackshack Forums have been hacked!!!
 
<a href="http://forum.rackshack.net" target="_blank">http://forum.rackshack.net</a>

They were running vB 2.2.9 or 2.3.0 when I last checked...

Tragic...

Erwin 06-05-2003 03:46 AM

1 Attachment(s)
A copy of the page that comes up in case they fix it soon...

Smoothie 06-05-2003 04:43 AM

Yikes!

colicab-d 06-05-2003 08:28 AM

yeah i saw that ... was wondering why a load of posts had dissapeared..

tho they did manage ti get the forum back up n a matter of hours :D

Areku 06-05-2003 09:11 AM

Holy cow!

I just ordered my server yesterday! DAMNIT!

Zach 06-05-2003 09:41 AM

dont panic- you are responsible for keeping your box secure, not them. I have been around the world of hosting, and found that rackshack is the best priced, and I get ten times better support with my "unsupported" box than I ever did supported.

Tony G 06-05-2003 11:18 AM

Fixed now, but ouch.

Dean C 06-05-2003 02:11 PM

Omg i know the guy who did this. He's an ass. He hacked a friend of mine's board a while ago. Was bigger than RackShack too... I got hold of his AIM and tried to get him to confess "how" he did it so i could report the bug at .com but he didn't elaborate... Geez if the owner reads this i'll give them this guys aim name?

- miSt

Tigga 06-05-2003 02:50 PM

Ouch...

rake 06-05-2003 03:19 PM

I hope they had a somewhat recent backup. The RS Forums were an excellent reference source.

Hobbes 06-05-2003 07:33 PM

*DIES*......DAAAAAAAAAAAAAAAAAANNNNNGGG!!!!!!!.... ..

whoa.....that seriously blows....dang.....*is in awe*....never had any forums i go to be hacked...O_O!!!

Cary 06-05-2003 08:59 PM

Quote:

Today at 10:11 AM Mist said this in Post #8
I got hold of his AIM and tried to get him to confess "how" he did it so i could report the bug at .com but he didn't elaborate...
The cause of this wasn't a bug in vBulletin. The so-called 'hacker' found out one of the administrator's passwords and got it through the front door...

N9ne 06-05-2003 09:10 PM

That's scary..

Boofo 06-05-2003 09:55 PM

Quote:

Today at 04:59 PM Cary said this in Post #12
The cause of this wasn't a bug in vBulletin. The so-called 'hacker' found out one of the administrator's passwords and got it through the front door...
He probably went FTP. I was hacked via FTP a while back by the past owner of the server I am on. He had a riff with the new owners and nailed a bunch of his old accounts on the server.

Martin64 06-05-2003 10:17 PM

Quote:

Yesterday at 11:59 PM Cary said this in Post #12
The cause of this wasn't a bug in vBulletin. The so-called 'hacker' found out one of the administrator's passwords and got it through the front door...
LOL, and he calls himself a hacker? :)
I'm sorry to hear about the Rackshack forums, but relieved that vBulletin wasn't the cause, and that the forums are restored. :)

Dean C 06-06-2003 10:25 AM

Cary on the previous site he hacked as far as i'm aware he made a script to "steal" the passwords....

shorty 06-06-2003 10:36 AM

The site I *used* to review for was hosted by Rackshack and got nuked off the planet a few weeks ago.

The only admin with root access didn't patch, check for errata or backup the site & db. Bye bye 3 years :(

If Rackshack can get hacked, so can anyone. OpenBSD with SSH all the way for us on our new site and really security paranoid new owners (a trio of us took the leap into ownership and created a new site with forums).

Chris M 06-06-2003 04:21 PM

I've ran the same forum almost 14 times over, each time it was hacked by the Owner's (not me:p) enemies...

IMO, if they want in, they get in - Just try and do your best to make sure whatever they do it's hard for them to do it, you have recent backups, and that they don't damage too much:)

Satan

Jethro 06-06-2003 08:24 PM

That sucks ... and the term is "cracker" guys :)

Erwin 06-07-2003 12:36 AM

Mist, you may want to inform Robert, the HeadSurfer at RS, about the person who did this, as I'm sure they would love to get their hands on this character.

Dean C 06-07-2003 11:43 AM

I don't have his contact details :( ^^ If you know him personally then get him to contact me...

rake 06-07-2003 04:40 PM

Quote:

Yesterday at 10:24 PM Jethro said this in Post #19
That sucks ... and the term is "cracker" guys :)

There seems to be a general confusion about the two terms. Bluntly, hackers hack sites, and crackers crack software. ;)

bitbender 06-10-2003 09:50 PM

Rack Shack ROCKS for us.

I'm simply not interested in any one else. I have two racks with them for over a year now. My problem is they don't always make the best buildsm but then, I'm durned particular :)

Backups, backups, backups. And use a multi level password schema, that's completely DIFFERENT in type and structure than any forum password you use anywhere else. Nice this about RS's setups is you can have three seperate levels of userid's and passwords 9Rack admin id, mysql Id, and webiste Id on a dedicated rack) , and that still isnt the password you would use as your board Id. I don't even use similar password structures that I use on my IRL job, so different I want them to be.

There are some good threads here that talk about securing your setup. I got "most' of what I use for defence at rackshack's forum. Like I said, they are solid folks, and I like em. Now, if I could ONLY afford one of those dualie Xenon's :)

DrkFusion 06-10-2003 10:10 PM

Well the thing is, the ensim servers are unsafe, I believe the current build has a bug which allows a hacker to gain access to its ftp. These hackers install ensim onto linux boxes and explore the insides and outs. Its very true, as I got ahold of the hackers that hacked my friend, and tricked them into telling me all their secrets :p, and even did it, and it works like a charm. Have not done it since, but just a warning, keep your ensim on patched, and stay on the good side of people :)

drumsy 06-12-2003 10:53 PM

I run Plesk, should be as worried as well?

Crinos 06-12-2003 11:24 PM

probably used "god" as a password or something silly :D

DrkFusion 06-13-2003 02:01 AM

Quote:

Today at 08:24 PM Crinos said this in Post #26
probably used "god" as a password or something silly :D
Not many people use words from the dictionary these days :p

DrkFusion 06-13-2003 02:01 AM

Quote:

Today at 07:53 PM drumsy said this in Post #25
I run Plesk, should be as worried as well?
Not as of yet, all servers that have been accessed have been runing Ensim (not sure of the exact version) I will get you the version number. But i think its one of the current one offered with RS Servers.

majin gotenks 06-13-2003 06:44 AM

Quote:

Today at 01:24 AM Crinos said this in Post #26
probably used "god" as a password or something silly :D
I doubt anyone would be that stupid... three letters no numbers :confused:

Kaelon 11-10-2003 08:15 PM

Whoops! Wrong thread!

Gio Takahashi 11-10-2003 08:47 PM

Quote:

Originally Posted by rake
There seems to be a general confusion about the two terms. Bluntly, hackers hack sites, and crackers crack software. ;)

Let me make it more sense:

Hackers basically hack and observe, and such...basically...spy.

Crackers cause damage and spread terror online. Basically..cyber terrorist.

Chris Gwynne 11-12-2003 10:24 AM

LOL Why has this thread been brought back up, it's over 6 months old!!


All times are GMT. The time now is 03:30 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01250 seconds
  • Memory Usage 1,779KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (8)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (32)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete