The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#1
|
|||
|
|||
![]()
We've been hacked and our database screwed by an apparent vulnerability of the FlashChat integration with vb. Is there an update of the hack with the vulnerability fixed? Any help during this trying time would be very much appreciated.
steve |
#2
|
|||
|
|||
![]() |
#3
|
||||
|
||||
![]()
Updated FlashChat
http://forum.tufat.com/showthread.php?t=24619 This is interesting. I caught it just in time. [Mon Sep 4 15:20:11 2006] [error] [client 200.82.226.80] File does not exist: /home/username/public_html/forum/chat//inc/cmses/aedatingCMS2.php I would have been hacked if that file was still there. |
#4
|
|||
|
|||
![]() Quote:
|
#5
|
||||
|
||||
![]() Quote:
|
#6
|
|||
|
|||
![]()
Wish these punks would find something better to do.
|
#7
|
|||
|
|||
![]() Quote:
Of course, all Turkish IP's. Today they tried about 70 times! Not bad. Just found on zone-h! It seems that some other FlashChat files are also insecure!!! Thanks God I have removed this piece of you-know-what. http://www.zone-h.org/component/opti...berLord/page,2 |
#8
|
|||
|
|||
![]() Code:
content="0;url=http://ts.somee.com"> """" this is their ip IP: 85.104.221.179 Country: Turkey City: Istanbul, Istanbul I think VB must do a IP range ban all these turkish delights I lost i whole day try to fix this and it was on saturday my most busy day at my forum :hurt: I blame the VB Stuffsf or this, something like this should be mail to all vb members and all the forum members after all this is not a free software we did not just get this bicuz it looks good we go it since the name of the software is gr8 |
![]() |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
![]() |
|
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|