Go Back   vb.org Archive > vBulletin 4 Discussion > vB4 General Discussions
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 09-04-2012, 09:51 AM
FTG LIQUID CL FTG LIQUID CL is offline
 
Join Date: Jan 2012
Posts: 158
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Someone hacking website

Not sure if this is the right place to post this,But I need some help.Someone is hacking in to my website.A couple days ago I got on my website and the entire home page had been changed.On the home page was a message that said you have been hacked by powersurge.
Then today someone posted in my chat box that my website was gonna be moving to power surge.The weird part is ,it said it was posted by the main admin account on my website.I changed my passwords right away.I restored my website through my host account.Every thing seems to be fine,but how was someone able to hack my website and how do I stop it from happening again.Thanks
Reply With Quote
  #2  
Old 09-04-2012, 11:22 AM
LouiseWilson LouiseWilson is offline
 
Join Date: Oct 2007
Posts: 154
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Could be many reasons, security on your server, chmod incorrectly of certain files, insecure mods, there are more obvious ones

I would right at this time disable your mods via your config.php and .htaccess your mod cp & admincp to just your IP address.
Without logs or more information I'm not sure what else anyone can do for you.

Oh and back up daily ............. or in your case right now back up hourly :P
Reply With Quote
  #3  
Old 09-04-2012, 12:24 PM
New Joe's Avatar
New Joe New Joe is offline
 
Join Date: May 2009
Posts: 1,128
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Yes, p0wersurge, claim they can hack any vBulletin forum, and that is really more of a, they can, over a claim

They hacked one huge site, which in a way was good as it was a site for nulled scripts, vbteam was the name, they also tried to take down another huge nulled site called, forumscriptz, but they got their server down quickly as they saw vbteam getting hacked.
The outcome of the above was good for IB and vBulletin, as they are now both off line and won't be coming back.

The people who did this to your forum are here:
http://www.p0wersurge.com/forums/forum.php
https://twitter.com/p0wersurge

All vbulletin customers should be aware their Forums are not safe from these hackers, they are the best around at the present time.

As said above, keep backups of everything, and keep an eye on what is happening on your forum.
Reply With Quote
  #4  
Old 09-04-2012, 12:45 PM
FTG LIQUID CL FTG LIQUID CL is offline
 
Join Date: Jan 2012
Posts: 158
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

They just recently hacked me,could this be because of a mod I recently added.I dont understand why they would want to hack my forum.I only have like 500 members and its a gaming website.Thanks for the info.
Reply With Quote
  #5  
Old 09-04-2012, 12:49 PM
New Joe's Avatar
New Joe New Joe is offline
 
Join Date: May 2009
Posts: 1,128
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

It's not a case as why, it's more of 'they can' so they do.
All about the vbulletin stuff can be found in this section
http://www.p0wersurge.com/forums/forumdisplay.php?f=201
Reply With Quote
  #6  
Old 09-04-2012, 01:44 PM
ForceHSS ForceHSS is offline
 
Join Date: Apr 2008
Posts: 6,357
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

No point in the link joe can't see any posts unless you register
Reply With Quote
  #7  
Old 09-04-2012, 01:45 PM
New Joe's Avatar
New Joe New Joe is offline
 
Join Date: May 2009
Posts: 1,128
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I just registered so I could read the Threads, really easy to do
Reply With Quote
  #8  
Old 09-04-2012, 01:46 PM
ForceHSS ForceHSS is offline
 
Join Date: Apr 2008
Posts: 6,357
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Not going to register on a hacking site
Reply With Quote
  #9  
Old 09-04-2012, 01:58 PM
New Joe's Avatar
New Joe New Joe is offline
 
Join Date: May 2009
Posts: 1,128
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Use a proxi or vps and make a new e mail account just for that site only.
Really interesting how they can hack vbulletin sites, lots if information within the Threads there.
Reply With Quote
  #10  
Old 09-04-2012, 02:08 PM
kh99 kh99 is offline
 
Join Date: Aug 2009
Location: Maine
Posts: 13,185
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by New Joe View Post
All vbulletin customers should be aware their Forums are not safe from these hackers, they are the best around at the present time.

I don't buy the "can hack any forum" thing. It doesn't matter how good a hacker is, they still need to find a mistake to exploit. It's always possible there is a hole in vbulletin that isn't publicly known, but I think it's more likely that they go looking for known security issues that haven't been repaired.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 07:12 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.07310 seconds
  • Memory Usage 2,251KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (1)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (1)pagenav_pagelink
  • (10)post_thanks_box
  • (10)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (10)post_thanks_postbit_info
  • (10)postbit
  • (10)postbit_onlinestatus
  • (10)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • pagenav_page
  • pagenav_complete
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete