The forums have been hacked! [closed]

Discussion about the Geocaching Australia web site
User avatar
caughtatwork
Posts: 17016
Joined: 17 May 04 12:11 pm
Location: Melbourne
Contact:

Post by caughtatwork » 26 April 05 6:44 pm

Do you want a replacement subSilver theme_info.cfg file for the standard subSilver theme?

Sorry if I'm being annoying, just trying to help.

User avatar
maccamob
10000 or more caches found
10000 or more caches found
Posts: 915
Joined: 04 April 03 6:37 pm
Location: Hoppers Crossing, VIC
Contact:

Post by maccamob » 26 April 05 6:51 pm

Great work to embi, riblit and co for getting things up and running again so quickly. Is it possible to prevent it happening again?

vk7hch
1150 or more Caches found
1150 or more Caches found
Posts: 159
Joined: 10 July 04 11:07 am
Location: Bellerive Tasmania
Contact:

Post by vk7hch » 26 April 05 6:55 pm

caughtatwork wrote:Have you tried replacing the .css file with the standard Sub-silver style sheet?
Restore from backup?

User avatar
embi
400 or more spectacular views seen
400 or more spectacular views seen
Posts: 1698
Joined: 02 April 03 2:09 pm
Location: Wyndham Vale
Contact:

Post by embi » 26 April 05 6:56 pm

orac7000 wrote:Restore from backup?
We have to wait fo i! to do that...and we cant contact them

vk7hch
1150 or more Caches found
1150 or more Caches found
Posts: 159
Joined: 10 July 04 11:07 am
Location: Bellerive Tasmania
Contact:

Post by vk7hch » 26 April 05 7:00 pm

embi wrote:
We have to wait fo i! to do that...and we cant contact them
Well it looks ok for now, thanks for the work you have put into it!!

User avatar
Bronze
Posts: 2372
Joined: 15 July 03 11:48 pm
Location: Toronto, NSW

Post by Bronze » 26 April 05 7:02 pm

Sorry Guys - I didn't see this thread and posted a thanks in General chat.

There are screen shots there but no originals sorry.

Great work guys. Nice mix at the moment. I like it.

The Bronze.
On hackers: Why call it "take" a dump, when you leave something behind?

aloysius
250 or more caches found
250 or more caches found
Posts: 683
Joined: 08 October 04 7:26 pm
Location: Devonport, wishing it was St Helens, Tas
Contact:

Post by aloysius » 26 April 05 7:03 pm

cant even get the colours from the internet archive...this site blocks it :( :


http://web.archive.org/web/*/forum.geocaching.com.au/*

User avatar
riblit
It's the journey.
It's the journey.
Posts: 3444
Joined: 04 April 03 6:30 pm
Location: Land Grant of John Campbell

Post by riblit » 26 April 05 7:07 pm

caughtatwork wrote:Do you want a replacement subSilver theme_info.cfg file for the standard subSilver theme?

Sorry if I'm being annoying, just trying to help.
Appreciated but I need to be able to load it up. i! have a development version of the site so if people complain too much (or EcoDave runs a poll on my efforts :P ) about these colours they can change them.

Gunn Parker
400 or more spectacular views seen
400 or more spectacular views seen
Posts: 1357
Joined: 08 April 03 1:14 pm
Location: Perth Western Australia
Contact:

Post by Gunn Parker » 26 April 05 7:11 pm

I like the colour scheme as of now 4:12pm W.A. time

User avatar
riblit
It's the journey.
It's the journey.
Posts: 3444
Joined: 04 April 03 6:30 pm
Location: Land Grant of John Campbell

Post by riblit » 26 April 05 7:12 pm

maccamob wrote:Great work to embi, riblit and co for getting things up and running again so quickly. Is it possible to prevent it happening again?
once i! work out how he got in..<br />

Meanwhile I have a copy of this config.<br />
caw, there are no themes attached to the subSilver template on this bb

User avatar
Derringer
2500 or more caches found
2500 or more caches found
Posts: 273
Joined: 02 April 03 9:48 pm
Location: Seymour Vic

Post by Derringer » 26 April 05 7:38 pm

Does anyone know if the hacker got access to our user passwords???
Kevin

swampgecko
It's all in how you get there....
It's all in how you get there....
Posts: 2185
Joined: 28 March 03 6:00 pm

Post by swampgecko » 26 April 05 7:41 pm

Derringer wrote:Does anyone know if the hacker got access to our user passwords???
Kevin
Don't know and don't care cause I just changed mine anyway

User avatar
embi
400 or more spectacular views seen
400 or more spectacular views seen
Posts: 1698
Joined: 02 April 03 2:09 pm
Location: Wyndham Vale
Contact:

Post by embi » 26 April 05 7:44 pm

Not that I can say for sure, but this guy has hit a number of PHP forum boards and seems to be only changing the colours etc.

It seems he may be just causing strife. He seems to have just simply changed the colours etc on the boards he has hacked, which is very easy to be able to do if you can get access to the admin pages.

User avatar
caughtatwork
Posts: 17016
Joined: 17 May 04 12:11 pm
Location: Melbourne
Contact:

Post by caughtatwork » 26 April 05 7:52 pm

Derringer wrote:Does anyone know if the hacker got access to our user passwords???
Kevin
Extremely unlikely.
phpBB passwords are MD5 hashed which is a one-way hash.
I suppose nothing is perfect, but I wouldn't stress about it. I think they'd have better things to hack that try a brute force against an obscure bulletin board to gain a password or two.

http://www.phpbb.com/kb/article.php?article_id=40

User avatar
ideology
Posts: 2763
Joined: 28 March 03 4:01 pm
Location: Sydney
Contact:

Post by ideology » 26 April 05 7:58 pm

as embi says, it looks like he just got to the admin pages
the things he changed are all in the forum database - nothing appears to have changed on the filesystem of the server itself

we'll look through the logs in detail to find out more

Post Reply