[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 488: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 112: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/bbcode.php on line 112: preg_replace(): The /e modifier is no longer supported, use preg_replace_callback instead
[phpBB Debug] PHP Warning: in file [ROOT]/includes/functions.php on line 4787: Cannot modify header information - headers already sent by (output started at [ROOT]/includes/functions.php:3922)
[phpBB Debug] PHP Warning: in file [ROOT]/includes/functions.php on line 4789: Cannot modify header information - headers already sent by (output started at [ROOT]/includes/functions.php:3922)
[phpBB Debug] PHP Warning: in file [ROOT]/includes/functions.php on line 4790: Cannot modify header information - headers already sent by (output started at [ROOT]/includes/functions.php:3922)
[phpBB Debug] PHP Warning: in file [ROOT]/includes/functions.php on line 4791: Cannot modify header information - headers already sent by (output started at [ROOT]/includes/functions.php:3922)
InsideQC Forums • View topic - main site infected?

main site infected?

Discuss anything not covered by any of the other categories.

Moderator: InsideQC Admins

Re: main site infected?

Postby toneddu2000 » Fri Sep 19, 2014 8:28 am

I don't understand rook, that pun is referred to me?
You can check , is in the source. It was on the Drupal showcase for years. I don't tell baloney
About the programming argument, imho for programming I intend every language that helps you to reach your task with the minimum effort and maximum quality :wink:
- my first commercial game, made with FTEQW game engine
toneddu2000
 
Posts: 1395
Joined: Tue Feb 24, 2009 4:39 pm
Location: Italy

Re: main site infected?

Postby r00k » Fri Sep 19, 2014 3:27 pm

no it wasnt directed to you.

Some hacker "picked" this site to illustrate his keen sense of programming. He pick us as fellow nerds who would think his programming was cool, but he picked our butt by making it something that blocks us from accessing the resources on the front page. :(
r00k
 
Posts: 1111
Joined: Sat Nov 13, 2004 10:39 pm

Re: main site infected?

Postby revelator » Fri Sep 19, 2014 3:56 pm

Ya i prefer constructing something with my measly skills i wonder why some get there kicks by destroying something :evil:
Productivity is a state of mind.
User avatar
revelator
 
Posts: 2605
Joined: Thu Jan 24, 2008 12:04 pm
Location: inside tha debugger

Re: main site infected?

Postby toneddu2000 » Fri Sep 19, 2014 4:38 pm

ah ok, sorry rook, but some english constructs are still obscure to me! :D
yeah totally agree. Hacking is cool as long as you do it for learning/testing purpouse on your own machine (testing holes in your own code, testing firewalls, etc). Once you start attacking other sites is just being ass**le
- my first commercial game, made with FTEQW game engine
toneddu2000
 
Posts: 1395
Joined: Tue Feb 24, 2009 4:39 pm
Location: Italy

Re: main site infected?

Postby frag.machine » Fri Sep 19, 2014 9:17 pm

Script kiddies don't deserve to be called "hackers". Most of the time they don't even have any idea about what they're doing.
I know FrikaC made a cgi-bin version of the quakec interpreter once and wrote part of his website in QuakeC :) (LordHavoc)
User avatar
frag.machine
 
Posts: 2120
Joined: Sat Nov 25, 2006 1:49 pm

Re: main site infected?

Postby toneddu2000 » Fri Sep 19, 2014 9:42 pm

Well, frag.machine, either this script kid has been very lucky or inside3d main page security is pretty lax :D
- my first commercial game, made with FTEQW game engine
toneddu2000
 
Posts: 1395
Joined: Tue Feb 24, 2009 4:39 pm
Location: Italy

Re: main site infected?

Postby revelator » Sat Sep 20, 2014 3:56 am

php has some security flaws but is easy to work with i guess thats where the popularity comes from,
many sites therefore resort to using some sort of captcha or other ways to keep malicius activity to a minimum.
Most of the time a serious attack takes place its for robbing passwords or other identity theft shit, what i dont get
is why someone would try out something like that on a developer board,
were not crazy so forget about stealing the password for my bank account will ya i dont use the same password as i log on with here doh :roll:
besides even if they do get my password for the bank they still need a set of numbers that only i have to verify that its actually me attempting to access it,
so they would also need to have a trojan on my PC to capture keystrokes and my PC has some nasty protection keeping that from happening.

Still its annoying and i hope it will get fixed :)
Productivity is a state of mind.
User avatar
revelator
 
Posts: 2605
Joined: Thu Jan 24, 2008 12:04 pm
Location: inside tha debugger

Re: main site infected?

Postby frag.machine » Sat Sep 20, 2014 1:52 pm

It's very likely that the I3D site was invaded using some automated tool that takes an IP subnet as argument and then starts to scan every address looking for well known exploits. So no, the script kid who defaced the site probably doesn't know the nature of our discussions. OTOH, we are probably running pretty outdated versions of PHP and forums, so this is kinda expected. :/
I know FrikaC made a cgi-bin version of the quakec interpreter once and wrote part of his website in QuakeC :) (LordHavoc)
User avatar
frag.machine
 
Posts: 2120
Joined: Sat Nov 25, 2006 1:49 pm

Re: main site infected?

Postby Spirit » Sun Sep 21, 2014 5:13 pm

I'd volunteer to take a look at the code but only in November/December. I would be able to help trying to find the hole(s) in webserver logs before that.
Improve Quaddicted, send me a pull request: https://github.com/SpiritQuaddicted/Quaddicted-reviews
Spirit
 
Posts: 1037
Joined: Sat Nov 20, 2004 9:00 pm

Re: main site infected?

Postby Cobalt » Thu Sep 25, 2014 5:23 pm

Main page is very hacked today
User avatar
Cobalt
 
Posts: 445
Joined: Wed Jun 10, 2009 2:58 am
Location: New England, USA

Re: main site infected?

Postby Spike » Thu Sep 25, 2014 11:39 pm

stuff like that doesn't help. note that it potentially applies to ANY cgi program that uses the system() libc function, not just bash cgi scripts.
.
Spike
 
Posts: 2914
Joined: Fri Nov 05, 2004 3:12 am
Location: UK

Re: main site infected?

Postby revelator » Fri Sep 26, 2014 3:01 am

actually a new security risk has surfaced concerning system using bash its called shellshock and is mostly a risk for for people using unix based software.
But users of cygwin / msys / msys2 should also look out. The new threat uses bash's scripting ability to get malicious code onto a users PC.

Do not be fooled this is much worse than the heartbleed bug :S.
Productivity is a state of mind.
User avatar
revelator
 
Posts: 2605
Joined: Thu Jan 24, 2008 12:04 pm
Location: inside tha debugger

Re: main site infected?

Postby goldenboy » Fri Sep 26, 2014 8:06 am

What's this new fashion of giving catchy names to bugs?

And aren't there lots of new root exploits discovered every week? How is something like "shell shock" different?

Debian/Ubuntu had this exploit fixed yesterday already, btw. apt-get update, apt-get install bash.
User avatar
goldenboy
 
Posts: 924
Joined: Fri Sep 05, 2008 11:04 pm
Location: Kiel

Re: main site infected?

Postby revelator » Fri Sep 26, 2014 9:46 am

Productivity is a state of mind.
User avatar
revelator
 
Posts: 2605
Joined: Thu Jan 24, 2008 12:04 pm
Location: inside tha debugger

Re: main site infected?

Postby Spirit » Fri Sep 26, 2014 10:28 am

Improve Quaddicted, send me a pull request: https://github.com/SpiritQuaddicted/Quaddicted-reviews
Spirit
 
Posts: 1037
Joined: Sat Nov 20, 2004 9:00 pm

PreviousNext

Return to General Discussion

Who is online

Users browsing this forum: No registered users and 1 guest