Simple Machines Community Forum

Archived Boards and Threads... => Archived Boards => SMF Feedback and Discussion => Topic started by: 01042 on March 04, 2007, 05:29:26 PM

Title: SMF mass-hack ?
Post by: 01042 on March 04, 2007, 05:29:26 PM
Hello,

upon logging onto my site today, i was greeted with a message "hacked by" some turkish retard.

I decided to investigate some more, and found this... This is the guy that hacked my site... he takes part in a sad little competition to see how many sites he can hack.

http://www.zone-h.org/component/option,com_attacks/Itemid,43/filter_defacer,worldhackerz.org/

As you can see.... hes hacked quite a bit of forums.... quite a few seem to be smf.

I thought i would let you guys know just incase its a bug in smf or something. I also use the joomla hacks smf bridge.... but i dont think its that as  the other hacked sites arent using joomla. I suspect it may be SMF, as my joomla is fine... nothing seems to have been touched in that.

My site -    HERE (http://www.thetechworld.co.uk/forums)

Title: Re: SMF mass-hack ?
Post by: winrules on March 04, 2007, 05:39:11 PM
It looks like they edited the board name of the first board to some javascript that will redirect to their site. You should disable javascript and fix the board title. I would change your password. Also please file a security report here: http://www.simplemachines.org/about/security.php
Title: Re: SMF mass-hack ?
Post by: Daniel15 on March 05, 2007, 03:03:52 AM
01042, what version of SMF were you running? It appears that a lot of the hacked forums were running old versions of SMF.
Title: Re: SMF mass-hack ?
Post by: ubermensch on March 05, 2007, 09:33:42 AM
Doubt it's as bad as InvisionFree. You can hijack admin sessions if you know what you're doing D: