#1 posted by Spirit [213.39.219.209] on 2006/07/18 11:18:36
Oh, calm down. It's not as bad as you probably think! :)
Thanks for the kind words!
I know that it was a turkish script kid that just used an exploit to the forum component. It was definitely not an attack with "deeper meanings". I knew an attack would come sooner or later because I got referrers from a hacking board. Unfortunately I didn't think about updating the forum. The content management system was on the latest revision and I also did a full backup (2 days before the "hack").
Probably getting the site back up as it was (with the forum updated or removed) would not be too hard, but I really want the site fit my (and your) needs.
Sooooo, let me hijack this thread (things like this rather go into the General Abuse thread), hehe.
What would you like to see on Quaddicted (or whereever)? What is missing in the Quake-Internet?
I plan to extend the file archive with better user interaction and hashes for the files (so you can check if it is _the_ file you want/have). The links will be a important part of the site (maybe you read my booth at QExpo). And the newssite will be very plain and only providing links (a bit like digg.com maybe). Completing the deathmatch map archive will be more important for me in the future as I totally dislike all the .bsp files without their readmes there...
I would _love_ to expand the wad archive with better usability (eg preview images for the wads) but those are quite low on my list. Maybe someone else will help? ;)
 Ok, Ok
#2 posted by ijed [201.236.126.253] on 2006/07/18 11:32:14
just needed an map to play through over lunchtime - the grapes of wrath :)
 I Hope It Becomes Like Fileplanet
#3 posted by negke [82.83.15.222] on 2006/07/18 11:46:44
the newssite will be very plain and only providing links
aw, i always liked the news section as it was - screenshot, brief description and a download link - 'links only' sounds like it would look less attractive at first glance...
i really hope someone familiar with php will get in touch with you. what about the ones responsible for the qexpo site (sajt?). maybe add some more ads, so you can make the job seem more appealing.. :P
 What Would You Like To See On Quaddicted
#4 posted by Jago [83.102.19.97] on 2006/07/18 12:03:12
Free shells for people in the q-munity ;)
#5 posted by [67.129.250.254] on 2006/07/18 14:34:53
Sorry, it was me.
 Spirit
#6 posted by inertia [24.164.73.173] on 2006/07/18 15:22:41
The formerly useful quakeworld.nu site got totally owned a few months ago, because the admins decided not to update the forum code... when there was a new release available... Moral of the story: don't fuck with your forum.
 Oh And
#7 posted by inertia [24.164.73.173] on 2006/07/18 15:23:04
You have my sympathies ;(
 I Go To Quaddicted For The Maps
#8 posted by mwh [82.32.6.72] on 2006/07/19 01:51:54
So having a searchable map archive is far and away the most important part for me. A wad archive and a simple news page makes sense too. Anything else is unecessary, and as this proves a risk...
 What
#9 posted by bambuz [193.167.6.193] on 2006/07/19 07:08:14
qwnu got hacked for the third time? They were hacked twice when they still used phpbb. I checked that they now use punbb.
 Spirit
#10 posted by DaZ [80.41.150.32] on 2006/07/19 10:55:12
as q1 lacks a review site, perhaps add some sort of "user review" functionality for all the maps you have hosted there, it would be a good start and you can then get the community to do all the hard work for you :)
 No Q1 Review Sites?
#11 posted by HeadThump [65.140.58.175] on 2006/07/19 12:14:26
I bet Underworld fan is feeling a little unapreciated after reading that.
 Also
#12 posted by aguirRe [213.101.69.12] on 2006/07/19 13:43:30
Quaddicted already had exactly that feature in the archives.
 ?
#13 posted by DaZ [80.41.150.32] on 2006/07/19 14:55:32
Got a link HeadThump? I've been out of the loop for quite some time, apologies to Underworld fan
 It's Here
#14 posted by aguirRe [213.101.71.93] on 2006/07/19 16:16:50
 Daz, No Harm Done,
#15 posted by HeadThump [65.140.58.87] on 2006/07/19 20:02:58
I meant that in a John Stewert, scorned puppy tone, but there are no emotives on the board for it. Maybe the piggy.
 Argh
#16 posted by aguirRe [213.101.72.36] on 2006/07/20 13:40:28
Quaddicted seems to be in an even worse condition now; I either get a Turkish garbage page (with evil scripts) or a 404.
What's going on?
 This Means It Has Been Hacked Again
#17 posted by negke [82.83.0.185] on 2006/07/20 13:50:09
so we can safely and justifiably redirect all our accumulated hatred and prejudices against turkey again. w00t :(
 :(
#18 posted by than [221.244.26.90] on 2006/07/20 21:22:44
That's a shame. Maybe if you make a post saying how much you appreciate the talents of this Turkish coding genius he will leave you alone.
By the way, when you get it back up, I have a new map out (see my booth http://qexpo.quakedev.com/booth.ph...
 Er...
#19 posted by than [221.244.26.90] on 2006/07/20 21:23:50
Look on Day 5 (not 6! leave that until tomorrow! I put it up because I won't be around tomorrow)
 OMG
#20 posted by Baker [67.149.145.114] on 2006/07/21 00:09:10
It got hacked a 2nd time. Spirit, quit pissing off people in Turkey.
What did they ever do to you?
#21 posted by Trinca [85.88.130.59] on 2006/07/21 01:40:32
i think Spirit should make a complain maby if many people complain they ban ips from turkey... for exemple Brasilian ips are ban everywere... stupid fucking assholes :\
 There
#22 posted by bambuz [193.167.6.44] on 2006/07/21 04:57:34
are a lot of turkish people living in germany.
 Shame ~
#23 posted by erc [85.102.167.207] on 2006/07/21 07:00:28
Guess the people of my country will never do any good on the net. Spirit, whether it'll be appropriate or not, I want to apologize for this guy's behaviour.
Yep - I'm Turkish.
 To Bad!
#24 posted by Bazzu [195.249.230.57] on 2006/07/21 07:14:32
guess it's not a matter of nationality there are stupid people all over the world!
#25 posted by negke [82.83.56.204] on 2006/07/21 07:25:09
erc, no need to apologize -> what bazzu said.
i wonder how they could get in again though, since there was no (obvious) possible interface to exploit. then again, my hacking skills wouldn't be proficient enough to tell either way. :P
 Just An Odd Question
#26 posted by bambuz [213.169.6.158] on 2006/07/21 08:32:19
you do use sftp and ssh for connections, not ftp and telnet? Cause some service providers still use the latter.
 Bambuz Brings Up An Excellent Point
#27 posted by inertia [24.164.73.173] on 2006/07/21 15:38:57
I have had to explicitly ask providers to turn on ssh and sftp -- they encouraged users to use telnet and ftp! I am completely amazed that fools like that can still stay in business. But, then again, cisco is still doing fine, so I guess security < profit?
:)
 He He
#28 posted by HeadThump [65.140.59.62] on 2006/07/21 17:51:02
everyone has a favorite IT company to despise. For me, it's Oracle and that punk Larry Ellison.
 My Guess
#29 posted by megaman [84.63.13.44] on 2006/07/22 03:48:41
is that they technically still were on the server. there's not much you can do to hack a static html file…
 Sorry To Hear That
#30 posted by Sielwolf [84.130.239.1] on 2006/07/22 19:52:34
no kebab for me the next days :[ Though the turkish girls at my local shop are very nice and beatyful..damn them hackers.
 Spirit
#31 posted by Vigil [88.112.241.76] on 2006/07/23 13:14:31
Did you urinate on their rug? Did you personally urinate on their rug? No? Then what the hell are they doing?
The bums lost!
 So ...
#32 posted by aguirRe [213.101.72.236] on 2006/07/23 13:40:17
when is Quaddicted going to lose some of its present infected base-look? ;)
 Probably In 3-4 Weeks
#33 posted by negke [82.83.50.209] on 2006/07/23 13:44:39
if spirit doesn't drown, that is.
 Bugger
#34 posted by Pauk [81.156.97.102] on 2006/07/23 16:44:18
The problem with Quaddicted being down is that some of the content for QExpo isn't downloadable :(
#35 posted by underworldfan [128.195.84.221] on 2006/07/26 16:43:22
sorry you got hacked Spirit.
hoep you can find a way to come back soon, your file database of q1sp maps was outstanding and much needed.
i just had the idea for hosting you could try planetquake or even Tigger-oN over at lvl, who seems very helpful and clued up.
 Noplx
#36 posted by bambuz [213.169.2.235] on 2006/07/27 03:42:16
stay independent, downloading at your place is hassle-free and you're not dependant on some other service going unavailable all of a sudden.
 I Am Back Already
#37 posted by Spirit [80.171.9.135] on 2006/07/29 00:21:07
Now that was a bad surprise...
Trinca talked to the "second hacker" via msn (he left his address, weird) and I did so too. According to that guy the first defacement was insulting his analpenetration-group and thus he "had to" deface it again. Well, at least if I understood him correctly. Also it wasn't really an attack against my site but they hacked the whole server and used it for DDOSing and other stupid stuff. I don't understand why they deleted the whole /filebase folder though, DAMN! I will compile all the info and logs I have later today to send it to my host later today.
I have no problems with the hosting itself but I will move to dreamhost anyways. I heard only good things about them and they are damn cheap and give me 10x the traffic.
That sftp/ssh issue is interesting. My webhost does not support it and if I understood the hacker correctly he used some "session hijacking"...
I temporary removed the access to /wads and /filebase for everyone since I have no idea what passwords might have been revealed.
Daz: That user review idea is exactly what I am heading for :)
 Wow
#38 posted by inertia [24.164.73.173] on 2006/07/29 00:29:05
Not supporting encryption in 2006? Ouchies! Let me know if I can help, I also am on dreamhost (this is recent).
 \o/
#39 posted by Spirit [213.39.214.138] on 2006/08/02 09:01:12
The site has successfully moved to a new host (dreamhost). I am moving everything at the moment. The site will "reappear" in its read-only mode, just like after the first defacement.
Those will be back soon:
/dm
/filebase
/wads
pulsar.quaddicted.com
qurnel.quaddicted.com
 QurneL Has A Website??
#40 posted by R.P.G. [65.188.148.55] on 2006/08/02 20:47:24
:o
 Ok
#41 posted by Spirit [213.39.225.64] on 2006/08/03 03:04:44
filebase, dm (almost) and wads are back.
pulsar.quaddicted.com is about to be back (uploaded as wrong user first... d'oh).
qurnel.quaddicted.com will take some time as I have to find the files first =)
 Wads
#42 posted by Spirit [80.171.9.166] on 2006/08/05 09:23:11
do you want to review/describe and rate the wads too? or is a plain directory listing enough?
like it is just now: http://www.quaddicted.com/wads/
 You Don't Seem To Have Fortress.wad
#43 posted by bambuz [213.169.2.230] on 2006/08/06 13:40:30
do you want it?
It has one cool lava tex and then some red/blue themed textures. Vintage 1997 or so. I don't know if the stuff is in other wads already though. I just extracted them from the team fortress dir paks.
 Sure
#44 posted by Spirit [80.171.7.144] on 2006/08/07 00:19:38
could you zip and mail it to me?
 Blooper
#45 posted by MadFox [84.26.170.230] on 2009/07/29 03:33:39
Hey Spirit, I'm comparing the Quakaddicted site with my archive and found the blah1.zip missing. Some speedmap with moz tron speed and vodoochopsticks. I can't upload so you can find it here:
http://members.home.nl/gimli/blah1...
 Foxy Madfox
#46 posted by Spirit [213.39.173.166] on 2009/07/29 11:34:37
Cheers! That map is on the speedmapping list: http://www.quaddicted.com/speedmap...
Sorry that the site is so confusing. Many of the speedmaps are so good they should be on the normal list.
 Blah
#47 posted by MadFox [84.26.170.230] on 2009/07/30 00:45:58
only checking.
#48 posted by Spirit [80.171.85.246] on 2011/04/25 09:18:24
Before anyone panics, Quaddicted.com is currently not available due to a planned upgrade at my hoster's. They said they'd be moving to new hardware and update the OS and it should have been done for 5 hours already.
 Huh
#49 posted by necros [99.227.131.204] on 2011/04/25 09:27:46
i was expecting one of those random bumps. thanks for the update though. :)
|