The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#1
|
|||
|
|||
Vbulletin 4.2.0 Hacked?
Looks like a vulnerability have been found in 4.2.0.... A few websites running it have been hacked and taken down by this group.
XXXXXX hacked by trading-network.to best german underground forum <3 REGARDS bizznez Anyone know of these unexplained attacks? |
#2
|
||||
|
||||
Were they running 4.2.0PL2?
|
#3
|
|||
|
|||
They had all the updated patches installed waiting for a response from them.....
|
#4
|
||||
|
||||
Find out if they were running any modifications also. And, make sure they check their access_logs to see what actually happened.
|
#5
|
|||
|
|||
How ever they got in they were able to obtain a full database backup,users,passwords,and delete all files from there FTP.
|
#6
|
||||
|
||||
If they deleted all the files through Ftp then it looks like the point of entry is not vb itself but some other third party stuff.
|
#7
|
||||
|
||||
Yeah, they got in through the server if they were able to take a database backup, and download it, and delete files.
|
#8
|
|||
|
|||
Very strange. With the amount of security and difficulty they put into a generated password i find this scary for the rest of us.
|
#9
|
|||
|
|||
I'm curious, how do you know exactly what they were able to get? And when you say "from FTP", do you mean you know they did it via ftp?
|
#10
|
||||
|
||||
You really haven't told us enough for us to say it was a matter of someone hacking the password. If they are on a shared server, it could have been through another account. If their own computer was compromised, their password could have been grabbed that way. It's really impossible to tell exactly how this happen with the little information given.
|
Благодарность от: | ||
borbole |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
More Information | |
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|