Current time: 01-09-2009, 10:36 AM Hello There, Guest! (LoginRegister)


Post Reply 
 
Thread Rating:
  • 0 Votes - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Discuss: MyBB RC4 Security Update [16/08/05]
08-22-2005, 10:21 PM (This post was last modified: 08-22-2005 10:36 PM by k776.)
Post: #11
RE: MyBB RC4 Security Update [16/08/05]
I got the same emails.

I was absolutely SWAMPED with work and didn't patch. I suffered the consequences. M*****F****** hackers should rot in hell. Anybody know how to fix?

-rabbit
Find all posts by this user
Quote this message in a reply
08-26-2005, 12:54 AM
Post: #12
RE: MyBB RC4 Security Update [16/08/05]
Well first, those "hackers" you speak of is crackers or Black-Hat Hackers

Second: Unless you've backed up your forums via PHPMA, you're pretty much screwed just like me. I might be wrong on that judgement, though.

[Image: marthxx.jpg]
Visit this user's website Find all posts by this user
Quote this message in a reply
08-26-2005, 12:55 AM
Post: #13
RE: MyBB RC4 Security Update [16/08/05]
Yes...Black-Hat...my mistake. I was able to recover in PHPMA comparing a new version with the original.

Thanks,

Kevin
Find all posts by this user
Quote this message in a reply
08-26-2005, 11:11 AM
Post: #14
RE: MyBB RC4 Security Update [16/08/05]
my own computer has been hit by
Attempted Intrusion "MSSQL StackOverflow" against your machine was detected and blocked.
Intruder: 61.180.43.188(3418).
Risk Level: High.
Protocol: UDP.
Attacked IP: 0.0.0.0.
Attacked Port: ms-sql-m(1434).


and another from

Attempted Intrusion "MSSQL StackOverflow" against your machine was detected and blocked.
Intruder: 218.89.167.83(4317).
Risk Level: High.
Protocol: UDP.
Attacked IP: 0.0.0.0.
Attacked Port: ms-sql-m(1434).

people should contact thier hosts and have these ip addresses blocked

[Image: squall_sig1.gif]
click piccy for the lands of Tempra^
NGOHQ
Visit this user's website Find all posts by this user
Quote this message in a reply
08-26-2005, 01:51 PM (This post was last modified: 08-26-2005 01:52 PM by HomeDawg.)
Post: #15
RE: MyBB RC4 Security Update [16/08/05]
Get a firewall, and dont use microsoft products, or keep them updated.
Find all posts by this user
Quote this message in a reply
08-26-2005, 02:49 PM
Post: #16
RE: MyBB RC4 Security Update [16/08/05]
i am using a firewall thats how i got this info

[Image: squall_sig1.gif]
click piccy for the lands of Tempra^
NGOHQ
Visit this user's website Find all posts by this user
Quote this message in a reply
08-28-2005, 10:19 AM
Post: #17
RE: MyBB RC4 Security Update [16/08/05]
Those attempted attacks have nothing to do with MyBB at all.

Chris Boulton
Rate MyBB @ HotScripts.com - Show your support!
You can also Write a review! - Help us grow!
Visit this user's website Find all posts by this user
Quote this message in a reply
08-28-2005, 10:26 AM
Post: #18
RE: MyBB RC4 Security Update [16/08/05]
Chris:
I think most of us realize that this doesn't involve Mybb. However, people do need to know that this is happening.
Mark

http://www.americandragracing.com
http://www.sundayniagara.com
http://www.yorkus30.com
BE THERE!!!!!!!!!!!!!!!!!!

1914
Visit this user's website Find all posts by this user
Quote this message in a reply
08-28-2005, 04:11 PM
Post: #19
RE: MyBB RC4 Security Update [16/08/05]
squall_leonhart69r Wrote:people should contact thier hosts and have these ip addresses blocked
No, people should not. For all we know, somebody cracked those computer and used them for the attacks, so the owners are innocent. Alternatively, those might be dynamic IP's.

Peter Akkies
Visit this user's website Find all posts by this user
Quote this message in a reply
08-28-2005, 05:51 PM
Post: #20
RE: MyBB RC4 Security Update [16/08/05]
SundayNiagara Wrote:Twice in the last few days, I have received an email from my own Mybb and it reads like this:

A user has tried to access the Administration Control Panel for MyBB
Demo Forums. They were unable to succeed in doing so.
Below are the login details:

Username: \\\' or 1=1 /*
Password:  (MD5: d41d8cd98f00b204e9800998ecf8427e)

IP Address: 86.129.228.54
Hostname: host86-129-228-54.range86-129.btcentralplus.com

Users beware.  I'll bet I'm not the only one.
Mark

Its another SQL injection Bug in mybb, anyone is able to access the admin panel by typing
Code:
' or 1=1 /*
into the username box (and leaving "password" blank).

The bug was sent to full disclosure.
[1] http://seclists.org/lists/fulldisclosure.../0395.html

Quote:Solution:
The developers were contacted and never responded.
No patch is available.
Turn magic_quotes_gpc ON or do not use this Application
Not good...
Find all posts by this user
Quote this message in a reply
Post Reply 


Forum Jump: