Site got hacked
Moderator: Moderators
- otseng
- Savant
- Posts: 20829
- Joined: Thu Jan 15, 2004 1:16 pm
- Location: Atlanta, GA
- Has thanked: 211 times
- Been thanked: 362 times
- Contact:
Site got hacked
Post #1The site experienced its first major hack this morning around 7 AM (EST). All the posts got corrupted and forum settings were modified. I have restored the site to the last monthly backup. So, unfortunately, all posts and new members since Aug 9 are lost. I'm currently trying to figure out how the hacker got in. In the meantime, the site might continue to experience problems until a patch is done.
Last edited by otseng on Thu Sep 20, 2007 4:25 pm, edited 1 time in total.
- Vladd44
- Sage
- Posts: 571
- Joined: Mon Jan 03, 2005 10:58 am
- Location: Climbing out of your Moms bedroom window.
- Contact:
Post #2
If you changed your avatar since the backup date you will need to redo it as well.
When I was a child, I spake as a child, I understood as a child, I thought as a child: but when I became a man, I put away childish things.[GOD] ‑ 1 Cor 13:11
WinMX, BitTorrent and other p2p issues go to http://vladd44.com
WinMX, BitTorrent and other p2p issues go to http://vladd44.com
- otseng
- Savant
- Posts: 20829
- Joined: Thu Jan 15, 2004 1:16 pm
- Location: Atlanta, GA
- Has thanked: 211 times
- Been thanked: 362 times
- Contact:
Post #3
I figured out how he hacked the site. I've closed the hole and hardened the code a bit to deter any similar attacks on that functionality. I've also banned the guy's IP.
Post #4
I'll never understand what someone could possibly gain from hacking a forum. I guess bragging rights?? It's so sad and ridiculous... let alone senseless.
I feel your pain. I believe all of us here at DCR do as well. Let me know if I can be of any help.
I feel your pain. I believe all of us here at DCR do as well. Let me know if I can be of any help.
You never hear in the news... 200 killed today when Atheist rebels took heavy shelling from the Agnostic stronghold in the North.- Doug Stanhope
- otseng
- Savant
- Posts: 20829
- Joined: Thu Jan 15, 2004 1:16 pm
- Location: Atlanta, GA
- Has thanked: 211 times
- Been thanked: 362 times
- Contact:
Post #5
My guess is that he wanted to make a statement. All the posts were mass edited and filled with profanity. Perhaps he was hoping that he can shut this forum down. But, fortunately I was able to restore to the most recent backup. So, though it's painful to lose a month's worth of posts, at least the site is still operational. Also, I had reported it to the phpbb support forum. And it appears that nobody else has experienced this (or at least reported it). So, it might have been a targeted attack.
- otseng
- Savant
- Posts: 20829
- Joined: Thu Jan 15, 2004 1:16 pm
- Location: Atlanta, GA
- Has thanked: 211 times
- Been thanked: 362 times
- Contact:
Post #6
I traced the hacker's IP back to a referer log of a Google search of "religion forum". So, this hacker was looking to specifically attack religious forums with a particular vulnerability. And this site happens to be the first site in the Google search result and also have the vulnerability.
-
- Savant
- Posts: 7467
- Joined: Wed Aug 09, 2006 4:16 pm
- Has thanked: 32 times
- Been thanked: 98 times
- Contact:
Post #7
During this time of tragedy and sorrow this may be an innapropriate time to bring this up. However, I believe I had about 10 million tokens when the system was hacked. Now I have less than a hundred. Can this be remedied?
Thanks,
myth-one.com
PS: In the spirit of Christian love and giving, I'm willing to accept 5 million.
Thanks,
myth-one.com
PS: In the spirit of Christian love and giving, I'm willing to accept 5 million.
- otseng
- Savant
- Posts: 20829
- Joined: Thu Jan 15, 2004 1:16 pm
- Location: Atlanta, GA
- Has thanked: 211 times
- Been thanked: 362 times
- Contact:
Post #8
You'll have to talk to the accounting department about that.myth-one.com wrote:During this time of tragedy and sorrow this may be an innapropriate time to bring this up. However, I believe I had about 10 million tokens when the system was hacked. Now I have less than a hundred. Can this be remedied?
Thanks,
myth-one.com
PS: In the spirit of Christian love and giving, I'm willing to accept 5 million.
- Vladd44
- Sage
- Posts: 571
- Joined: Mon Jan 03, 2005 10:58 am
- Location: Climbing out of your Moms bedroom window.
- Contact:
Post #9
Silver and gold have I none, but such as I have give I thee.myth-one.com wrote:I believe I had about 10 million tokens when the system was hacked. Now I have less than a hundred. Can this be remedied?
No don't try to pick up the bed.... I cannot make you walk either.
Hardly 10 million tokens, but their yours.
--------------------
Update: Tried to donate my tokens to myth-one.com, from his profile, I got this msg.
Fatal error: Call to undefined function submit_post() in /home/dcr/public_html/forum/cash.php on line 244
When trying from my profile the link showed as http://debatingchristianity.com/forum/c ... =mpg&u=566 but clicking it reverted me back to index.php
----------------------------
Sorry Myth, I guess I won't be giving you tokens today. Remind me when it is fixed, and you can have whatever I have at that point.
When I was a child, I spake as a child, I understood as a child, I thought as a child: but when I became a man, I put away childish things.[GOD] ‑ 1 Cor 13:11
WinMX, BitTorrent and other p2p issues go to http://vladd44.com
WinMX, BitTorrent and other p2p issues go to http://vladd44.com
Post #10
myth-one.com wrote:During this time of tragedy and sorrow this may be an innapropriate time to bring this up. However, I believe I had about 10 million tokens when the system was hacked. Now I have less than a hundred. Can this be remedied?
Thanks,
myth-one.com
PS: In the spirit of Christian love and giving, I'm willing to accept 5 million.






You never hear in the news... 200 killed today when Atheist rebels took heavy shelling from the Agnostic stronghold in the North.- Doug Stanhope