PDA

View Full Version : Repeated hacking(or script exploits) from Arabic sources


that bloke
Thu 10th Jan '08, 11:59pm
http://forum.zgeek.com/forumdisplay.php?f=172 has been "HaCkEd" four times now by people all traceable to the same sources, a search of the various names used in the "you've been hacked" messages leaves a trail of vBulletin sites, Is Jelsoft doing anything to track these people down & seek prosecution? Or patching up the gaps through which they are getting in? These aren't real hackers, they are just try-hards with scripts but still they are bringing sites to their knees.

Searches of the names used(this time);

(http://www.facebook.com/profile.php?id=568843379)
http://www.google.com.au/search?hl=en&q=ALjErA7+%26+Dr.ShArPeR+SyRiA+%5D&btnG=Google+Search&meta=

http://www.google.com.au/search?hl=en&q=Dr.ShArPeR+SyRiA+%3A+Ju5%40HoTmail.CoM&btnG=Search&meta=

Lynne
Fri 11th Jan '08, 12:29am
Isn't this because of the exploit for vBGallery, which is not a Jelsoft application? (Or is this a different one?)

that bloke
Fri 11th Jan '08, 1:51am
Isn't this because of the exploit for vBGallery, which is not a Jelsoft application? (Or is this a different one?)

That's how they got in the first time but it seemed that they found another way in the other times, the site above had it's gallery patched after the first attack which basically only effected the gallery, they subsequent attacks had resulted in the hacking of user accounts & also the deletion of posts, this time they managed to wipe out the entire database.

Onimua
Fri 11th Jan '08, 4:10am
There's no known security exploits, and lately it seems there are a few common applications that have exploits. Although vBulletin is installed, it doesn't mean that vBulletin is responsible.

Is there any "hacked" forum that is a plain install, without any plugins/3rd party products or add-ons of any kind?