The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#1
|
|||
|
|||
Security Problem with user injection
I have been combating for the past few days now users that are being injected into the site. I am running 4.1.3 .
The website is http://www.revans-legacy.com Any help would be greatly appreciated. |
#2
|
||||
|
||||
Disable recapcha and quick registration via facebook.
Use Q&A instead. |
#3
|
|||
|
|||
I had q&a at first when it started happening thought rechaptcha would be better. Seems they are injecting fake users.
The ips they are using dont match google analytics. Half are russian and half are india with some france. Yet i have no hits from thos countries. I reinstated the question and disabled facebook. These are fake accounts 100% --------------- Added [DATE]1303245243[/DATE] at [TIME]1303245243[/TIME] --------------- Bump... they are still getting in. I cant figure it out. Ive done what u suggested and still no dice. 2 more just made their way in. |
#4
|
||||
|
||||
You're using the stock 1000% completely use Image Verification, you need to use Q&A.
|
#5
|
|||
|
|||
rechaptcha is broken/hacked since half a year at least! Google for "recaptcha broken" to find out more.
There is plenty of exploit code around. Use something else.... |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
More Information | |
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|