View Full Version : Overclockix Central Hacked
waynebot
12-22-04, 08:17 PM
Yes it seems to be toast. Just wanted to check Arkaine23's Overclockix forums and, wamo hacked :bang head
Another of my favorite forums Beyond The Portal also got hacked, what the heck is going on?!
Oh-well, hopefuly it wont happen to this forum. :eh?:
Maybe hit by this thing??
http://vil.nai.com/vil/content/v_130471.htm
PERL/Santy.worm
Yeah, I think I saw it.
Is that the one with
"This site is defaced!" in red and black on it?
Too bad, I wanted to read up on Overclockix :(
OSUmaxx
12-22-04, 10:50 PM
Sure is too bad that stuff like this has to happen :( Good luck getting it straightened out Arkaine.
waynebot
12-23-04, 12:18 AM
just checked, everthing is back up, thanks Arkain :)
DrSlinky
12-23-04, 12:44 AM
I got an e-mail from my hosting service today. Apparently, there's a vulnerability in phpBB. Versions 2.0.10 and below. Says sites are typically being defaced. Think this is what hit Overclockix?
DrSlinky
12-23-04, 12:47 AM
In the last couple of days there has been a growing incidence of webspaces being hacked which run the popular "phpBB" forum (or bulletin-board) software. The attacks exploit a serious vulnerability in this software and the result is often that the webpages of sites running phpBB are defaced, or that programs are run using the user-rights of the customer.
**************************
Versions affected:
**************************
All versions up to 2.0.10 are affected by this vulnerability. (You can find the version number in the footer of the forums.)
Typo3 earlier versions also use a modification of the phpBB software.
**************************
Upgrading:
**************************
If you are using an affected version of the software (prior to 2.0.10) you should, as a matter of urgency and as quickly as possible, upgrade to the most current version, 2.0.11, found on the developers website at:
http://www.phpbb.com/downloads.php
For a Typo3 installation, using the Extension Manager, remove the phpBB extension and install the most up-to-date version.
Currently potential hackers are making targeted scans for any websites with the affected phpBB version and using automated tools to exploit the vulnerability to carry out attacks. To avoid falling victim and having your web-presence misused or defaced, you should in your own interest urgently upgrade your phpBB version.
**************************
Further Information:
**************************
For further information about the most up-to-date version of phpBB, see:
http://www.phpbb.com
For current information about this vulnerability in phpBB, see:
http://www.phpbb.com/phpBB/viewtopic.php?f=14&t=240636
http://www.kb.cert.org/vuls/id/497400
http://www.us-cert.gov/cas/techalerts/TA04-356A.html
**************************
Additional warning:
**************************
Other PHP-based software (eg. bulletin boards, weblogs, chatrooms) could be affected by this vulnerability. To protect yourself against such hacking exploits, you should regularly bring any such software up-to-date with the most current version.
Yeah, a board I belong to got hit by it and went down for a few hours.
Upgrade upgrade upgrade.
vBulletin® v3.8.7, Copyright ©2000-2012, vBulletin Solutions, Inc.