Go Back   vb.org Archive > Community Central > Community Lounge
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 07-27-2005, 12:00 AM
yoyoyoyo's Avatar
yoyoyoyo yoyoyoyo is offline
 
Join Date: Dec 2004
Location: USA
Posts: 1,612
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Hacked by Macedonia?!

One of the forums that I admin for was hit today by a very odd thing. See the attached image. I edited out a naughty word for the kiddies in the audience. It was no real harm done, but I was just wondering if anyone has encountered anything along these lines, or if anyone has heard of this group, etc.. What is very odd is that the forum is really not even live yet, and only about 10 people even know about it, and I am the only one with admin or even mod access (I changed the passwords after I was hacked of course). The forum is heavily modded, and I was just wondering if anyone has seen anything like this due to a mod from here?
Attached Images
File Type: jpg hacked2.jpg (42.6 KB, 0 views)
Reply With Quote
  #2  
Old 07-27-2005, 12:01 AM
Brad Brad is offline
 
Join Date: Nov 2001
Posts: 4,765
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Most likely a server crack, anything else on the domain other then the forum?
Reply With Quote
  #3  
Old 07-27-2005, 12:01 AM
Biker_GA Biker_GA is offline
 
Join Date: Oct 2004
Location: Where my hat is
Posts: 829
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I doubt it was a vb issue. More likely the server itself was insecure, and that's how they were able to gain access to the forum.
Reply With Quote
  #4  
Old 07-27-2005, 12:03 AM
Corriewf's Avatar
Corriewf Corriewf is offline
 
Join Date: Dec 2004
Location: parse error
Posts: 799
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

You could always ask the people at the chat.......
Reply With Quote
  #5  
Old 07-27-2005, 12:10 AM
yoyoyoyo's Avatar
yoyoyoyo yoyoyoyo is offline
 
Join Date: Dec 2004
Location: USA
Posts: 1,612
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Brad
Most likely a server crack, anything else on the domain other then the forum?
not really, but it is a shared server, and I have other sites on the same server but they were not hit. My guess was a server issue also, but just wondered if anyone had seen this particular "hack" before. I read all of the hacks pretty thoroughly, and I know the moderators at vb.org wouldn't allow any malicious code, but am pretty confused as to why we were hit, so I thought I would ask for input.
Reply With Quote
  #6  
Old 07-27-2005, 12:14 AM
Boofo's Avatar
Boofo Boofo is offline
 
Join Date: Mar 2002
Location: Des Moines, IA (USA)
Posts: 15,776
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I see they've changed their image since they nailed me about a year or so ago. That happened to my site but it was done by someone who was disgruntled with one of the other accounts on the server. They mailed a bunch of us to try and throw it off to something else. All they basically did was replace my logo with one like you have there. Easy to fix but scared the bee-jeebers out of me because I wasn't expecting anything like that to ever happen to my small unimportant site.
Reply With Quote
  #7  
Old 08-01-2005, 07:30 AM
ToraTora! ToraTora! is offline
 
Join Date: Nov 2001
Posts: 255
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by yoyoyoyo
not really, but it is a shared server, and I have other sites on the same server but they were not hit. My guess was a server issue also, but just wondered if anyone had seen this particular "hack" before. I read all of the hacks pretty thoroughly, and I know the moderators at vb.org wouldn't allow any malicious code, but am pretty confused as to why we were hit, so I thought I would ask for input.
If you are on a shared server, you are at the risk of anybody else within that chain.
Before moving to realwebhost.net, we used a web server that had roughly 19 other sites on it. We were actually able to FTP to everyone of those stes and read their files as well as Telenet.

After informing the server admin that we were able to do so, and wanted them to secure our site down as well as everybody else's better without having to go dedicated, they said that there was no way that we could do those various tasks.

So, the owner of that server laid a challenge down to us. "Try to get in this one site and I will believe you" type of deal.

After we were done with the site, he believed us and we moved to our current server which is basically bulletproof.

In most cases of this type of hacking, you have plenty of shady companies out there that offer low cost server options that throw you in the mix of numerous others who know nothing of a server admin panel nor options (if available) to shutting off SSH, Telenet or even FTP and all it takes is just one curious person to go up a level in their FTP manager to see what is all going on within that disk.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 08:42 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.05231 seconds
  • Memory Usage 2,237KB
  • Queries Executed 14 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (2)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (7)post_thanks_box
  • (7)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (7)post_thanks_postbit_info
  • (7)postbit
  • (1)postbit_attachment
  • (7)postbit_onlinestatus
  • (7)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_postinfo_query
  • fetch_postinfo
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_attachment
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete