Author Topic: Elgar Forum Hacked????
salsman1 
Posts: ????
Registered: ????
Extended Info (if available)
Real Post Cnt: 0
User ID: 0
Subject: Elgar Forum Hacked????
just tried to go to elgars forum pops a big black screen about a hmm hacker?????

 

-----signature-----
Link to this post
Drakier 
Posts: ????
Registered: ????
Extended Info (if available)
Real Post Cnt: 0
User ID: 0
Subject: Elgar Forum Hacked????
looks like someone found a new exploit in Elgars unpatched phpBB.

yay for board vulnerabilities. It's no permanent and it doesn't really "hurt" anything... just disable the styles and you can see the whole page (although it's ugly)

 

-----signature-----
Link to this post
ElgarL 
Posts: ????
Registered: ????
Extended Info (if available)
Real Post Cnt: 0
User ID: 0
Subject: Elgar Forum Hacked????
It was just a Hack of the forum name/board descriptions. They replace it with some HTML. I've not bothered to patch as it's never happened before. Well only once the other week. Hasn't happened for years. Only started once I announced I was leaving AC.

It's just a quick SQL fix (servers are local).

 

-----signature-----
Link to this post
Digero 
Posts: 7,435
Registered: Oct 21, '02
Extended Info (if available)
Real Post Cnt: 7,359
User ID: 729,875
Subject: Elgar Forum Hacked????
Elgar, have you modified the .php files? If not, you should just drop in the updated files. The version you're running has a much worse vulnerablility (the highlight bug)... though the fact that you haven't been hit by it means you've probably patched it.

 

-----signature-----
[LotRO] Digero (Guardian), Digrim (Burglar), Dignite (LM), Azrea (Hunter) - Landroval
[AC] Digero, Lyera, Draxxe - Leafcull (Retired)
[CoH] Devil's Zealot, Scinta, Izzard - Guardian (Retired)
Digero's AC Decal Plugins: http://decal.acasylum.com
Link to this post
ElgarL 
Posts: ????
Registered: ????
Extended Info (if available)
Real Post Cnt: 0
User ID: 0
Subject: Elgar Forum Hacked????
I have modified variables to prevent spam bots is all.

 

-----signature-----
Link to this post

Valid XHTML 1.0 Transitional Powered by PHP