News:

Bored?  Looking to kill some time?  Want to chat with other SMF users?  Join us in IRC chat or Discord

Main Menu

I think that my forums have been hacked... anyone have an IDEA

Started by CERT, July 13, 2004, 10:20:17 PM

Previous topic - Next topic

CERT

Instead of getting my forums... I get this when I go to my site's forums:

H4ck3rsBr Group 2004 - By: O_Psicopata_

does this indicate a  possible security problem with the smf?


the site address is Http://www.garyhotko.com/cert/forum



I am currently talking on the phone with my ISP

Aaron Nelsen


Pitti


Pitti

later:
- change your ftp.- and mysql-password!!!
- you setup an htaccess on your sources-folder,
- restore the index.php (find in savemodepack or in your backup),
- change your adminaccount in smf!

gruß pitti

Alisha

This is the second time I have seen this on here, although I have seen that TAG on a couple other support forums! 

I really do not think its a SMF security problem, at least its not one exclusive to SMF.  It seems to be a group going around to forums! 


[Unknown]

Actually, my understanding is it's a vulnerability in server software, and it's just that index.php's are being replaced.

-[Unknown]

emrys

SUGGESTION:
Get a new non beta forum software thats more secure

Alisha

Quote from: quadroplex on July 14, 2004, 03:01:57 AM
SUGGESTION:
Get a new non beta forum software thats more secure

Uhmmm maybe I am mistaken, but is the flaw is in the SERVER software, no matter what forum you use will still be open to the hacking.  Beta or Final, SFM or VB would not matter if you are still on the same server with the same server software! 

emrys


Grudge

Quote from: quadroplex on July 14, 2004, 03:01:57 AM
SUGGESTION:
Get a new non beta forum software thats more secure
Excuse me... can you point out ONE secuirty problem with SMF that would allow this, or anything even remotely this dangerous?


EDIT: Also - If I remember - when this happened in the past didn't the member who experienced this find that many people on their server had had the same problem (shared hosting)?
I'm only a half geek really...

Advertisement: