Version: , by Scott MacVicar
Developer Last Online: Mar 2016
Version: 2.2.x
Rating:
Released: 11-23-2001
Last Update: Never
Installs: 41
No support by the author.
This is a hack that was suggested by paulomt1, all it does is log failed logins and stores them in a table. An admin can then look at the failed logins in the admin panel, searching based on ip, username, password or date. They can also prune the old logs to save space.
You will be required to create a table this can be done via phpmyAdmin or the hack by Firefly which allows you to run queries via the admin panel. You then have to edit member.php to add the query to insert the failed login information and /admin/index.php to add the links to the loginlog.php file.
Updated 25th November 2001 @ 22:15
Added additions suggested by Mike to the file. Instructions on how to upgrade from the pervious version of this hack is included within install.txt, you will need to run 2 sql queries to adjust the table, adjust the line in member.php and upload loginlog.php again to complete the upgrade.
Scott
Show Your Support
This modification may not be copied, reproduced or published elsewhere without author's permission.
After light of another forum using members/mods passwords to access our forum i wondered if a addition could be added to this hack.
When there is a fail login could a email automatically be sent to the members email address quoting the password, time and ip address and a request link to change there password??
If not would it be possible to automatically email the member a new random password?
This would give less chance to anyone trying to hack a members account and could resolve the issue we have at the moment.
This would be great if the user that tried was trying to login, if he/she got a PM saying someone was trying to login with his/her username. Just so they know that they should do something about it, or whatever.
I installed correctly and it works fine but a suggest....
I dislike the showing users password in the cp
Why ?? Look at the user table in db the password are encrypted in md5 but not in your hack your table show password
For an entire security you must delete all that repport to password in this hack before installing ...
After light of another forum using members/mods passwords to access our forum i wondered if a addition could be added to this hack.
When there is a fail login could a email automatically be sent to the members email address quoting the password, time and ip address and a request link to change there password??
If not would it be possible to automatically email the member a new random password?
This would give less chance to anyone trying to hack a members account and could resolve the issue we have at the moment.
thanks
Beams
LOL
Fkin hypocrite
STOP LOGGING YOUR MEMBERS PASSES BEAMER AND THEN BLAMING OTHER SITES WHEN YOU GET CAUGHT OUT.
never been caught logging passwords as we don't do that unlike yourself Not to worry im sure there will proof one day and find its way on to here as well so all can see, then lets see who shouts then mahahaha
oh dear raptor u should know better then believe that sort of thing after all the crap they started with u i guess your forgetting the passed