New forums..

MikeJ
Posts: 686
Joined: Fri Oct 26, 2001 9:11 am

Post by MikeJ »

Ok so obviously the phpboard is sploit city. ?hacked how many times? ?Anywhays apparently xaitax = some german hacker. ?We don't know if its the "real" xaitax or just some crased myg0t fool or maby even d-smiley. ?Anywhays we do know he does not have server or FTP access because he would have defaced the main site by now. ?This board is slightly more secure but no BBs are perfect. ?I've gone over the settings with lyth and we are making it as secure as possible. ?If we get hacked again then oh well, i'm not gonna lose sleep over some losers wasted time to deface a small clans BB. ?Anywhays enjoy these new forums sorry but you will have to re register...I'm not really an admin here i just installed it and configured it, talk to someone else about getting your modship/features/gaylover, etc back.

Lythium
Posts: 95
Joined: Tue Aug 28, 2001 7:49 am

Post by Lythium »

y i outa

MikeJ
Posts: 686
Joined: Fri Oct 26, 2001 9:11 am

Post by MikeJ »


bam


i found the exploit


New phpBB 1.4.x exploit


phpBB, is an open source bulletin board created by  


the  


phpBB group. Version 1.4.x of phpBB has a variable  


input  


validation problem that can lead to limited arbitrary sql  


querys including gaining administrative access to the  


board.


 


The problem lies in the fact that phpBB 1.4.x includes  


an  


algorithm in the auth.php file which removes  


backslashes  


ah


well that is that ;\


its been known for 8 months


 


 


well that explains that.


Shorty Shitstain
Posts: 74
Joined: Tue Aug 28, 2001 10:56 am

Post by Shorty Shitstain »

As for the guy, the retarded wording that this guy put on on the old forums and his website is similar. Googling his nick bing up a load of german hacking related sites. As with the last time the forums were messed around it was probably just another script kiddie looking for a random phpbb board to exploit. In both cases I don't think this was anything do do with our aquaintences on gamesnet or cs.net.

MikeJ
Posts: 686
Joined: Fri Oct 26, 2001 9:11 am

Post by MikeJ »


As for the guy, the retarded wording that this guy put on on the old forums and his website is similar. Googling his nick bing up a load of german hacking related sites. As with the last time the forums were messed around it was probably just another script kiddie looking for a random phpbb board to exploit. In both cases I don't think this was anything do do with our aquaintences on gamesnet or cs.net.

agreed, some people have nothing better to do than look around for trouble...


 


:shifteyes:


mr_lee
Posts: 882
Joined: Tue Aug 28, 2001 12:04 am

Post by mr_lee »


spot on shorty.


 


nice all :)


nemo
Posts: 325
Joined: Tue Aug 28, 2001 3:30 pm

Post by nemo »

I need the AIM icon for dirty sanchez as an avatar

Kerpal
Posts: 14
Joined: Tue Aug 28, 2001 1:51 pm

Post by Kerpal »

w00t nice j0b ya noe

MikeJ
Posts: 686
Joined: Fri Oct 26, 2001 9:11 am

Post by MikeJ »


I need the AIM icon for dirty sanchez as an avatar

i got slacker at www.ballericons.com


Shorty Shitstain
Posts: 74
Joined: Tue Aug 28, 2001 10:56 am

Post by Shorty Shitstain »

<--- bwahahahaha check the breakdancin' banana!!!

Locked