Site got hacked

Messages from the admins

Moderator: Moderators

User avatar
otseng
Savant
Posts: 20829
Joined: Thu Jan 15, 2004 1:16 pm
Location: Atlanta, GA
Has thanked: 211 times
Been thanked: 362 times
Contact:

Site got hacked

Post #1

Post by otseng »

The site experienced its first major hack this morning around 7 AM (EST). All the posts got corrupted and forum settings were modified. I have restored the site to the last monthly backup. So, unfortunately, all posts and new members since Aug 9 are lost. I'm currently trying to figure out how the hacker got in. In the meantime, the site might continue to experience problems until a patch is done.
Last edited by otseng on Thu Sep 20, 2007 4:25 pm, edited 1 time in total.

User avatar
Vladd44
Sage
Posts: 571
Joined: Mon Jan 03, 2005 10:58 am
Location: Climbing out of your Moms bedroom window.
Contact:

Post #2

Post by Vladd44 »

If you changed your avatar since the backup date you will need to redo it as well.
When I was a child, I spake as a child, I understood as a child, I thought as a child: but when I became a man, I put away childish things.[GOD] ‑ 1 Cor 13:11
WinMX, BitTorrent and other p2p issues go to http://vladd44.com

User avatar
otseng
Savant
Posts: 20829
Joined: Thu Jan 15, 2004 1:16 pm
Location: Atlanta, GA
Has thanked: 211 times
Been thanked: 362 times
Contact:

Post #3

Post by otseng »

I figured out how he hacked the site. I've closed the hole and hardened the code a bit to deter any similar attacks on that functionality. I've also banned the guy's IP.

User avatar
wrekk
Scholar
Posts: 372
Joined: Thu Feb 01, 2007 3:35 pm
Location: Houston TX
Been thanked: 1 time

Post #4

Post by wrekk »

I'll never understand what someone could possibly gain from hacking a forum. I guess bragging rights?? It's so sad and ridiculous... let alone senseless.

I feel your pain. I believe all of us here at DCR do as well. Let me know if I can be of any help.
You never hear in the news... 200 killed today when Atheist rebels took heavy shelling from the Agnostic stronghold in the North.- Doug Stanhope

User avatar
otseng
Savant
Posts: 20829
Joined: Thu Jan 15, 2004 1:16 pm
Location: Atlanta, GA
Has thanked: 211 times
Been thanked: 362 times
Contact:

Post #5

Post by otseng »

My guess is that he wanted to make a statement. All the posts were mass edited and filled with profanity. Perhaps he was hoping that he can shut this forum down. But, fortunately I was able to restore to the most recent backup. So, though it's painful to lose a month's worth of posts, at least the site is still operational. Also, I had reported it to the phpbb support forum. And it appears that nobody else has experienced this (or at least reported it). So, it might have been a targeted attack.

User avatar
otseng
Savant
Posts: 20829
Joined: Thu Jan 15, 2004 1:16 pm
Location: Atlanta, GA
Has thanked: 211 times
Been thanked: 362 times
Contact:

Post #6

Post by otseng »

I traced the hacker's IP back to a referer log of a Google search of "religion forum". So, this hacker was looking to specifically attack religious forums with a particular vulnerability. And this site happens to be the first site in the Google search result and also have the vulnerability.

myth-one.com
Savant
Posts: 7467
Joined: Wed Aug 09, 2006 4:16 pm
Has thanked: 32 times
Been thanked: 98 times
Contact:

Post #7

Post by myth-one.com »

During this time of tragedy and sorrow this may be an innapropriate time to bring this up. However, I believe I had about 10 million tokens when the system was hacked. Now I have less than a hundred. Can this be remedied?

Thanks,
myth-one.com

PS: In the spirit of Christian love and giving, I'm willing to accept 5 million.

User avatar
otseng
Savant
Posts: 20829
Joined: Thu Jan 15, 2004 1:16 pm
Location: Atlanta, GA
Has thanked: 211 times
Been thanked: 362 times
Contact:

Post #8

Post by otseng »

myth-one.com wrote:During this time of tragedy and sorrow this may be an innapropriate time to bring this up. However, I believe I had about 10 million tokens when the system was hacked. Now I have less than a hundred. Can this be remedied?

Thanks,
myth-one.com

PS: In the spirit of Christian love and giving, I'm willing to accept 5 million.
You'll have to talk to the accounting department about that.

User avatar
Vladd44
Sage
Posts: 571
Joined: Mon Jan 03, 2005 10:58 am
Location: Climbing out of your Moms bedroom window.
Contact:

Post #9

Post by Vladd44 »

myth-one.com wrote:I believe I had about 10 million tokens when the system was hacked. Now I have less than a hundred. Can this be remedied?
Silver and gold have I none, but such as I have give I thee.

No don't try to pick up the bed.... I cannot make you walk either.

Hardly 10 million tokens, but their yours.


--------------------

Update: Tried to donate my tokens to myth-one.com, from his profile, I got this msg.

Fatal error: Call to undefined function submit_post() in /home/dcr/public_html/forum/cash.php on line 244

When trying from my profile the link showed as http://debatingchristianity.com/forum/c ... =mpg&u=566 but clicking it reverted me back to index.php

----------------------------
Sorry Myth, I guess I won't be giving you tokens today. Remind me when it is fixed, and you can have whatever I have at that point.
When I was a child, I spake as a child, I understood as a child, I thought as a child: but when I became a man, I put away childish things.[GOD] ‑ 1 Cor 13:11
WinMX, BitTorrent and other p2p issues go to http://vladd44.com

User avatar
wrekk
Scholar
Posts: 372
Joined: Thu Feb 01, 2007 3:35 pm
Location: Houston TX
Been thanked: 1 time

Post #10

Post by wrekk »

myth-one.com wrote:During this time of tragedy and sorrow this may be an innapropriate time to bring this up. However, I believe I had about 10 million tokens when the system was hacked. Now I have less than a hundred. Can this be remedied?

Thanks,
myth-one.com

PS: In the spirit of Christian love and giving, I'm willing to accept 5 million.
:lol: :lol: :lol: :lol: :lol: :lol:
You never hear in the news... 200 killed today when Atheist rebels took heavy shelling from the Agnostic stronghold in the North.- Doug Stanhope

Post Reply