Quick Login   
 
Register AdminFusion Tutorials
 
Featured Sponsors


One.com Domain and Hosting


Register
Forum of the Month
Australian Webmaster
fotm

A webmaster forum specifically catering for Australian site owners. We discuss site development, marketing and management issues.

Tag Cloud
Latest Threads
Forum Stats
7,900 Members
165,091 Posts
38 Users Online

Please welcome our newest member, Jors308932!

Affiliates
Go Back AdminFusion » Management » Security and Legal Issues » admin pass hacked , don't know why !!!!
Welcome to the AdminFusion. AdminFusion is the ultimate resource for forum administrators and moderators. With exclusive articles, interviews with the experts, free downloadable skins, and the revolutionary post exchange system - PostFusion, AdminFusion is the place to go for all of your forum needs.  By joining AdminFusion, you will become part of a thriving admin community and immediately gain access to all of these resources. Registration is fast, simple and absolutely free so please join us today!
Want more than our forums? Try these: Post Fusion Forum Matrix
Old 06-02-2006, 02:39 PM   #1

Title: Lurker

Points: 1,397, Level: 10Points: 1,397, Level: 10Points: 1,397, Level: 10
Level up: 11%, 153 Points neededLevel up: 11%, 153 Points neededLevel up: 11%, 153 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: May 2006

Posts: 3

bilgeites is on a distinguished road
 
 
admin pass hacked , don't know why !!!!

hi all,
i use vbulletin 3.5.4 ,one guy has hacked the admin pass and do so anytimes he wants .i'm fed up with vbbulletin , their forum is a big hole .!!!!!!!!!!!!!
Any one khow how to protect the forum ?
heard somewhere that have to move the config.php file or rename it or other tips ...but don't know anything .
Can anyone help me please ?
Thanks
Reply With Quote
Old 06-02-2006, 03:57 PM   #2

Ashley's Avatar


Title: www.Centicero.com

Points: 6,754, Level: 24Points: 6,754, Level: 24Points: 6,754, Level: 24
Level up: 25%, 296 Points neededLevel up: 25%, 296 Points neededLevel up: 25%, 296 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Jan 2006

Posts: 1,017

Location: Devon, United Kingdom

Ashley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to beholdAshley is a splendid one to behold
Send a message via ICQ to Ashley Send a message via AIM to Ashley Send a message via MSN to Ashley Send a message via Yahoo to Ashley  
 
You should talk to vBulletin support, this isn't vBulletin support.

Also, make sure that you are using the latest version.

Make sure all mods are also up to date.

You can get the latest version and support from your customer area.
Reply With Quote
Old 06-02-2006, 04:52 PM   #3

Ryan's Avatar

Title: Administrator

Points: 47,649, Level: 67Points: 47,649, Level: 67Points: 47,649, Level: 67
Level up: 68%, 701 Points neededLevel up: 68%, 701 Points neededLevel up: 68%, 701 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 10,246

Location: Athens, GA

Ryan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond repute
 
 
Right, I would contact vB's support team ASAP here - http://members.vbulletin.com/members...ontactform.php

I haven't heard of any vulnerability like this yet...and I'm sure if one existed, it would already be patched - as Ashley said, make sure your forums are up to date and make sure you do not have any outdated mods.
__________________
...some super-sweet signature
Reply With Quote
Old 06-02-2006, 06:00 PM   #4

demojames's Avatar



Title: Just keeping it real

Points: 12,316, Level: 33Points: 12,316, Level: 33Points: 12,316, Level: 33
Level up: 34%, 334 Points neededLevel up: 34%, 334 Points neededLevel up: 34%, 334 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Oct 2005

Posts: 2,856

Location: Kent, WA

demojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant futuredemojames has a brilliant future
Send a message via AIM to demojames Send a message via MSN to demojames  
 
I also haven't heard of anything either.

I would also make sure that your admin is using numbers, letters and alternating capitals. Sounds like maybe the admin is using too easy of a password.
__________________
My Blog - Follow Me on Twitter
Reply With Quote
Old 06-02-2006, 07:22 PM   #5

Caddyman's Avatar

Title: Forum Addict

Points: 8,190, Level: 27Points: 8,190, Level: 27Points: 8,190, Level: 27
Level up: 28%, 560 Points neededLevel up: 28%, 560 Points neededLevel up: 28%, 560 Points needed
Activity: 36%Activity: 36%Activity: 36%

Join Date: Feb 2006

Posts: 1,321

Location: Delaware

Caddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant futureCaddyman has a brilliant future

Send a message via AIM to Caddyman Send a message via Skype™ to Caddyman  
 
yes Demo, it was probably brute force attack on the password. i heard there was a vulnerability with the older shoutbox hack IF you have one and its old update it asap.
__________________
PA Forums
Philly Sports
Delaware Online

boomshockalacka
Reply With Quote
Old 06-02-2006, 08:00 PM   #6

mrdiaz's Avatar

Title: Apprentice

Points: 2,398, Level: 13Points: 2,398, Level: 13Points: 2,398, Level: 13
Level up: 14%, 52 Points neededLevel up: 14%, 52 Points neededLevel up: 14%, 52 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Jan 2006

Posts: 254

Location: Ontario, Canada

mrdiaz is on a distinguished road
Send a message via MSN to mrdiaz Send a message via Yahoo to mrdiaz Send a message via Skype™ to mrdiaz  
 
This happens generally because you were not careful. Are you using any hacks/mods? Because if you do that could be an error! The staff on vB.com have already stated that forums using mods or hack are more likely to be hacked. As Ryan said, go immediately to vb.com support and explain in details what happened. I'm 100% this isn't a vB flaw..
__________________
My Planet: Planet Diaz
Reply With Quote
Old 06-02-2006, 08:27 PM   #7

Adam's Avatar

Title: Chadwick ≥ Cadence

Points: 9,488, Level: 29Points: 9,488, Level: 29Points: 9,488, Level: 29
Level up: 30%, 462 Points neededLevel up: 30%, 462 Points neededLevel up: 30%, 462 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 1,636

Adam has a brilliant futureAdam has a brilliant futureAdam has a brilliant futureAdam has a brilliant futureAdam has a brilliant futureAdam has a brilliant futureAdam has a brilliant futureAdam has a brilliant futureAdam has a brilliant futureAdam has a brilliant futureAdam has a brilliant future
 
 
Also make sure your passwords are long and not a real word.

Say you run a site about cats(first thing to pop into my head) Which password would be better?
Ex:
Password 1: Ilovecats
Passwords 2:436i965love7590cats

All the 2nd one did was used a phone number, broke it up into 3 parts and dived the word with it.
__________________
Reply With Quote
Old 06-02-2006, 09:28 PM   #8

Title: Lurker

Points: 1,397, Level: 10Points: 1,397, Level: 10Points: 1,397, Level: 10
Level up: 11%, 153 Points neededLevel up: 11%, 153 Points neededLevel up: 11%, 153 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: May 2006

Posts: 3

bilgeites is on a distinguished road
 
 
Thank you for responding
but it seems 2 be a big problem i. beleave me all .
i try to explain to all what i use, hoping you'all will not be in my case.
I use vb3.54
admin pass are very long with letters and numbers.
hack used : vbshout 2.0 , hide expand 2.50, inforno warning syst 1.3, member who have visited forum (vb3.53) , and ipproarcade, and vB Category Icons [vB 3.5.0 RC1]

afetr first hack, i have changed dat base pass and changing admin pass but no result, he has come some days later and take the control of my forum again .
iv' heard that there's a xss attack methods to obtain admin pass or that they have a method to read the config.php
i'm very desappointed , because can't do anything in front of this problem


hope you'll not be in my case later guys .
Reply With Quote
Old 06-02-2006, 10:03 PM   #9

iatbm's Avatar

Title: Apprentice

Points: 2,683, Level: 14Points: 2,683, Level: 14Points: 2,683, Level: 14
Level up: 15%, 67 Points neededLevel up: 15%, 67 Points neededLevel up: 15%, 67 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: May 2006

Posts: 348

iatbm is on a distinguished road
 
 
Quote:
Originally Posted by mrdiaz
This happens generally because you were not careful. Are you using any hacks/mods? Because if you do that could be an error! The staff on vB.com have already stated that forums using mods or hack are more likely to be hacked. As Ryan said, go immediately to vb.com support and explain in details what happened. I'm 100% this isn't a vB flaw..
100% sure = big possibility to get hacked if you know what I mean

Only because you use vbulletin and people who make that software are responsive and everything doesn't mean their software is bulletproof

bil : hope you work that out quickly !
__________________
Web Directory - Submit your forums!
2007 Timeline - What happened in 2007 ?
Weblog - free css templates, ...
Reply With Quote
Old 06-02-2006, 11:21 PM   #10

Ryan's Avatar

Title: Administrator

Points: 47,649, Level: 67Points: 47,649, Level: 67Points: 47,649, Level: 67
Level up: 68%, 701 Points neededLevel up: 68%, 701 Points neededLevel up: 68%, 701 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 10,246

Location: Athens, GA

Ryan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond repute
 
 
bilgeites, as others have said, you need to contact Jelsoft here - http://members.vbulletin.com/members...ontactform.php

That is your only guaranteed way to solve the problem...there is nothing we can do for you here.
__________________
...some super-sweet signature
Reply With Quote
Reply



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

Similar Threads
Thread Thread Starter Forum Replies Last Post
I really could use some advice here~ Admin trouble! Cori Handling Problem Members 11 05-26-2006 10:32 PM
How involved should an admin be? miner Managing Staff 18 01-25-2006 07:41 PM
Adopt an Admin Moonlight Off Topic 50 12-01-2005 06:46 AM
Admin trust pass T0k3d Off Topic 8 09-10-2005 04:00 PM

AdminFusion

All times are GMT +1. The time now is 01:40 AM. Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.1.0 © 2005-2008 AdminFusion - All Rights Reserved



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39