Go Back   vb.org Archive > Community Central > Community Lounge
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 01-30-2009, 12:33 PM
UncoderMom UncoderMom is offline
 
Join Date: May 2006
Location: My office chair!
Posts: 567
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Not so funny! LOL

Well, finally after over 3 years of owning a board someone defaced my big board yesterday. What fun that was!! Stupid punks! I have NO ONE to blame but myself... I was running at least 5 scripts that had security patches that needed to be applied... heed the warning no security patch should go unpatched. LOL Even if it was jsut a stupid defacer... could have been worse. They could have screwed up my HUGE database with over 1.4 million posts. OMG, if I would try and restore that! It would take a few times for sure provided that my back ups of such a huge database are even sound. LOL

CLOSE CALL. UPDATE ALL MODS and software learn from my mistakes. haha

Anyway... heres the little bastards in action.



Attachment 93703
Reply With Quote
  #2  
Old 01-30-2009, 12:37 PM
Marco van Herwaarden Marco van Herwaarden is offline
 
Join Date: Jul 2004
Posts: 25,415
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Tip: test your backups once in a while into a new database.
Reply With Quote
  #3  
Old 01-30-2009, 12:41 PM
UncoderMom UncoderMom is offline
 
Join Date: May 2006
Location: My office chair!
Posts: 567
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

That seems sorta moot though since I have so much new data daily. Around a 1000 or more new a day. My board is the kinda board that if I was missing more then a few days of data all hell would break loose among the members. LOL

When I ssh back up I just do it three times (3 full back ups) and then file all three with different names in the same folder with a full directory back up too.

Then I pray one of the three back ups is in working order LOL

I should try it a few times to test skills. Like a practice drill. LOL IS that what you meant? haha
Reply With Quote
  #4  
Old 01-30-2009, 01:10 PM
Marco van Herwaarden Marco van Herwaarden is offline
 
Join Date: Jul 2004
Posts: 25,415
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

You are getting close.

Besides making a regular (daliy?) backup, you should also once in a while (1/month?) test 1 of your backups to see if it can be restored. Both so you know what to do in case of emergency and to ensure that your backup is usable. Believe me i have seen cases where a daily backup was made for over a year. Once it was needed they discovered that they had ran into a filesize limit of the operating system and all these backups where incomplete. And this was on a medium sized company, not just someone running a forum as a hobby.
Reply With Quote
  #5  
Old 01-30-2009, 02:53 PM
Magnumutz's Avatar
Magnumutz Magnumutz is offline
 
Join Date: Feb 2006
Location: Romania
Posts: 731
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Oh man... that sucks UncoderMom... your forum really doesn't look like the forum to get hacked cuz of hate : -_-"

Marco, that sounds awful... i think i'm going to do the same thing to my forum as well.
I've got db back-ups for over a month old... so that's 30+ back-ups.
Hope they're usable
Reply With Quote
  #6  
Old 01-30-2009, 03:03 PM
UKBusinessLive UKBusinessLive is offline
 
Join Date: Sep 2008
Location: Essex, United Kingdom
Posts: 1,637
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Magnumutz View Post
Oh man... that sucks UncoderMom... your forum really doesn't look like the forum to get hacked cuz of hate : -_-"

Marco, that sounds awful... i think i'm going to do the same thing to my forum as well.
I've got db back-ups for over a month old... so that's 30+ back-ups.
Hope they're usable
I back up my server at least once a week, and as Marco says, try re installing a backup just so you know whats happening and how things are done, you don't want to be in a panic if the worst was to happen and you don't know what to do next
Reply With Quote
  #7  
Old 01-30-2009, 03:34 PM
UncoderMom UncoderMom is offline
 
Join Date: May 2006
Location: My office chair!
Posts: 567
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I'm not afraid of messing with back ups etc... I've manually added data to a table when someone told me I couldnt convert the data without paying an arm and a leg. LOL It was data from one mod to the next (phpbb2 to vb). The tables were similar and I messed with it for a few hours and voila, no money and 3 hours later and learning how to drop tables, alter and add if not exist and I was in business. LOL Then drop crap I didnt need. Databases really are not that scary at all. Instability of back ups are. LOL That and its time consuming to keep rebuilding tables that dont import right. *pull hair smilie*

I'm going to look into external ftp storage and set it to two weeks I think. Then have a daily one hosted locally.

Thanks for the advise... I'm going to check with my host about the daily back up file limits. I'm on dedicated so they will adjust anything without issue. I'm going to install Paul Ms back up mod. I think... haha

--------------- Added [DATE]1233337175[/DATE] at [TIME]1233337175[/TIME] ---------------

Quote:
Originally Posted by Magnumutz View Post
Oh man... that sucks UncoderMom... your forum really doesn't look like the forum to get hacked cuz of hate : -_-"

Marco, that sounds awful... i think i'm going to do the same thing to my forum as well.
I've got db back-ups for over a month old... so that's 30+ back-ups.
Hope they're usable

I read somewhere yesterday that these punks have defacement contests for prizes. Get a life.


They came in through my joomla which was lacking at least 5 patches (ducking, oops). I do find it awfully funny though that with in an hour of posting on this thread about my use of joomla I was hacked. The things that make you go hmmmmmmm.
Reply With Quote
  #8  
Old 01-30-2009, 04:53 PM
UKBusinessLive UKBusinessLive is offline
 
Join Date: Sep 2008
Location: Essex, United Kingdom
Posts: 1,637
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by UncoderMom View Post
They came in through my joomla which was lacking at least 5 patches (ducking, oops). I do find it awfully funny though that with in an hour of posting on this thread about my use of joomla I was hacked. The things that make you go hmmmmmmm.
Certainly Makes you wonder

* Goes off to change all passwords *
Reply With Quote
  #9  
Old 01-30-2009, 05:15 PM
UncoderMom UncoderMom is offline
 
Join Date: May 2006
Location: My office chair!
Posts: 567
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Yeah, I've been running joomla for almost 3 years with no problems.

Then I post that on that thread and BAM hacked...... hmmmmmmm

Actually though LOL.. The jerkwads that claimed my defacement claim to do it to punish those who are against Islam.

Dont know why they'd think I was other then the fact that I have a Christian board on my site.

Thats why some boards should be member view only. There should be a place to privately talk. Seems everyone is open to the public though.
Reply With Quote
  #10  
Old 01-30-2009, 05:18 PM
Adrian Schneider's Avatar
Adrian Schneider Adrian Schneider is offline
 
Join Date: Jul 2004
Posts: 2,528
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I still advise against using so many mods... each opens up the chance of getting hacked more and more. But... I'm pretty sure Joomla was the culprit here.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 11:44 PM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.04042 seconds
  • Memory Usage 2,270KB
  • Queries Executed 12 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (3)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (2)pagenav_pagelink
  • (10)post_thanks_box
  • (10)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (10)post_thanks_postbit_info
  • (10)postbit
  • (10)postbit_onlinestatus
  • (10)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • pagenav_page
  • pagenav_complete
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete