Quick Login   
 
Register AdminFusion Tutorials
 
Featured Sponsors


One.com Domain and Hosting


Register
Forum of the Month
Australian Webmaster
fotm

A webmaster forum specifically catering for Australian site owners. We discuss site development, marketing and management issues.

Tag Cloud
Latest Threads
Forum Stats
7,897 Members
165,077 Posts
34 Users Online

Please welcome our newest member, goodfriend4!

Affiliates
Go Back AdminFusion » Management » Security and Legal Issues » Your Worst Attack - Hacking
Welcome to the AdminFusion. AdminFusion is the ultimate resource for forum administrators and moderators. With exclusive articles, interviews with the experts, free downloadable skins, and the revolutionary post exchange system - PostFusion, AdminFusion is the place to go for all of your forum needs.  By joining AdminFusion, you will become part of a thriving admin community and immediately gain access to all of these resources. Registration is fast, simple and absolutely free so please join us today!
Want more than our forums? Try these: Post Fusion Forum Matrix
Old 12-11-2005, 06:35 PM   #1

Ryan's Avatar

Title: Administrator

Points: 47,649, Level: 67Points: 47,649, Level: 67Points: 47,649, Level: 67
Level up: 68%, 701 Points neededLevel up: 68%, 701 Points neededLevel up: 68%, 701 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 10,246

Location: Athens, GA

Ryan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond repute
 
 
Your Worst Attack - Hacking

If your forums have been attacked before, what was the worst instance and what did you have to do to recover? Most importantly, what did you learn from this?

The worst one by far for me was probably 8 or so months ago when somebody used an exploit in IPB to gain access to an administrator's account. They then deleted forums, deleted admin accounts, and turned the forums offline - leaving a nasty message up there. Before they got too far (if that wasn't already far enough), a fellow admin of mine (who is actually here at AF - LarryB) thought to disrupt the connection between the forums and the database. If the forums cannot communicate with the database, there is nothing the hackers can do through the ACP. What he did was remove the database username from the config file, and voila - Database error! Yahoo!!

The recovery was nasty. We had to restore a backup which was like a week old, if I remember correctly. I dont remember whether or not anything they did affected the files themselves, I'm pretty sure it did not.

Moral of the story: Always make daily backups and try to have an admin always monitoring the forums
__________________
...some super-sweet signature
Reply With Quote
Old 12-12-2005, 01:51 AM   #2

illusion's Avatar


Title: Apprentice

Points: 3,505, Level: 17Points: 3,505, Level: 17Points: 3,505, Level: 17
Level up: 18%, 345 Points neededLevel up: 18%, 345 Points neededLevel up: 18%, 345 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Oct 2005

Posts: 481

illusion is on a distinguished road
Send a message via AIM to illusion Send a message via MSN to illusion Send a message via Yahoo to illusion  
 
Which is why you should have moderators who are in different timezones. Just to help out
Reply With Quote
Old 12-13-2005, 08:00 PM   #3

Title: Member

Points: 1,947, Level: 12Points: 1,947, Level: 12Points: 1,947, Level: 12
Level up: 13%, 203 Points neededLevel up: 13%, 203 Points neededLevel up: 13%, 203 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Nov 2005

Posts: 76

Location: Behind u...

Jazzz is on a distinguished road
 
 
by the way, Can a VBulletin forum be hacked too?....I'm starting to worry

Jazzz
Reply With Quote
Old 12-13-2005, 08:06 PM   #4

Ryan's Avatar

Title: Administrator

Points: 47,649, Level: 67Points: 47,649, Level: 67Points: 47,649, Level: 67
Level up: 68%, 701 Points neededLevel up: 68%, 701 Points neededLevel up: 68%, 701 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 10,246

Location: Athens, GA

Ryan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond repute
 
 
Can a vBulletin forum be hacked? Most certainly, anything can be hacked if somebody knows what they are doing. Should you be worried? No, I wouldn't be. Both vB and IPB are extremely secure, and when holes are found, they are patched almost immediately. That said, if you haven't already, you should upgrade to the latest version of vB - 3.5.2...because there have been vulnerabilities found in 3.5.1. If you don't want to upgrade completely, there is a very easy patch process. You can find out more about all of that here - [vB News] vBulletin 3.5.2 Released
__________________
...some super-sweet signature
Reply With Quote
Old 12-15-2005, 08:09 AM   #5

Title: Member

Points: 1,947, Level: 12Points: 1,947, Level: 12Points: 1,947, Level: 12
Level up: 13%, 203 Points neededLevel up: 13%, 203 Points neededLevel up: 13%, 203 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Nov 2005

Posts: 76

Location: Behind u...

Jazzz is on a distinguished road
 
 
hmm....Thanks for the info...will thinnk abt it

Jazzz
Reply With Quote
Old 12-19-2005, 05:44 AM   #6

Moparx's Avatar

Title: Member

Points: 1,832, Level: 11Points: 1,832, Level: 11Points: 1,832, Level: 11
Level up: 12%, 18 Points neededLevel up: 12%, 18 Points neededLevel up: 12%, 18 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Dec 2005

Posts: 52

Location: /dev/null

Moparx is on a distinguished road
 
 
Quote:
Originally Posted by Jazzz
by the way, Can a VBulletin forum be hacked too?....I'm starting to worry

Jazzz
No software is 100% bug-free so there is always the possibility of something unexpected. Also keep in mind that they don't need to attack your forum software to get into your server.. especially if your server is not properly maintained and secured.
Reply With Quote
Old 12-21-2005, 06:48 PM   #7

angisson's Avatar


Title: I'm a MALE =\

Points: 5,283, Level: 21Points: 5,283, Level: 21Points: 5,283, Level: 21
Level up: 22%, 267 Points neededLevel up: 22%, 267 Points neededLevel up: 22%, 267 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Dec 2005

Posts: 1,143

Location: Michigan

angisson is on a distinguished road
Send a message via AIM to angisson Send a message via MSN to angisson Send a message via Yahoo to angisson  
 
altho i been lucky so far, i do know a site that has been "hacked" if you would like to call it that, What happened was the owner was getting his puter re-formatted (there for no backups) and one if the admins that didn\'t like him deleted a lot of members, posts, ECT.... but he had good members and thay most rejoined. (lol kinda of a good ending)
Reply With Quote
Old 12-21-2005, 07:14 PM   #8

Ryan's Avatar

Title: Administrator

Points: 47,649, Level: 67Points: 47,649, Level: 67Points: 47,649, Level: 67
Level up: 68%, 701 Points neededLevel up: 68%, 701 Points neededLevel up: 68%, 701 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 10,246

Location: Athens, GA

Ryan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond repute
 
 
Corrupt Admins.....scary stuff. Be careful who you hire, that's for sure
__________________
...some super-sweet signature
Reply With Quote
Old 01-17-2006, 02:56 AM   #9

mrdiaz's Avatar

Title: Apprentice

Points: 2,398, Level: 13Points: 2,398, Level: 13Points: 2,398, Level: 13
Level up: 14%, 52 Points neededLevel up: 14%, 52 Points neededLevel up: 14%, 52 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Jan 2006

Posts: 254

Location: Ontario, Canada

mrdiaz is on a distinguished road
Send a message via MSN to mrdiaz Send a message via Yahoo to mrdiaz Send a message via Skype™ to mrdiaz  
 
I just hope this doesn't happen to me I don't want to lose my 300 posts lol ) I want to switch to vBulletin once I get the money to buy a licence which is very very soon
__________________
My Planet: Planet Diaz
Reply With Quote
Old 01-17-2006, 05:24 PM   #10

Will's Avatar

Title: Forum Enthusiast

Points: 9,794, Level: 29Points: 9,794, Level: 29Points: 9,794, Level: 29
Level up: 30%, 156 Points neededLevel up: 30%, 156 Points neededLevel up: 30%, 156 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Oct 2005

Posts: 2,139

Location: Maryland, US

Will has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant future
Send a message via AIM to Will Send a message via MSN to Will  
 
othings happend to my forums *hits wood* lol


i just backed up my forum
__________________
Will Stumpf - TalkNikon
Submit your sites -> Quality Link Directory
Reply With Quote
Reply



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

Similar Threads
Thread Thread Starter Forum Replies Last Post
The Ultimate Spam Attack Defense Thread Guy Caballero Handling Problem Members 15 08-21-2006 12:21 PM
Theories / Conspiracies of the 9/11 Attack ibnuasad Off Topic 9 06-17-2006 01:14 AM
Worst eBay Feedback I've Seen Ryan Off Topic 21 01-10-2006 07:23 AM
Worst ways to promote a community is? miner Handling Problem Members 8 12-31-2005 02:01 PM

AdminFusion

All times are GMT +1. The time now is 04:30 PM. Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.1.0 © 2005-2008 AdminFusion - All Rights Reserved



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72