IPB

Welcome Guest ( Log In | Register )

 Forum Rules 
Blaine Fabrication.comUnbalanced EngineeringHotpart.comUMI PerformanceSolo Performance
 
Reply to this topicStart new topic
> Board upgrades Part II, Here we go again.
trackbird
post Mar 26 2006, 07:08 PM
Post #1


FRRAX Owner/Admin
********

Group: Admin
Posts: 15,432
Joined: 13-February 04
From: Ohio
Member No.: 196



We are working through another series of board upgrades to correct for security issues and to remove the trafficage link that has been inserted on the board (I'm guessing through one of those exploits). The upgrade is done, but the link is still there and I'm working with the Invision Board staff to get it removed at this time. And I'd like to thank their support people for their time and rapid assistance. Once that is complete, I'll try to get the sponsor banners and such restored to the board in the very near future.

It seems that as we are growing, we have become a more attractive target for these exploits and such. I'm beginning to realign my security concerns in response to this increased activity. Sorry for the difficulties, I hope to have them cleared up shortly.

More information is here:

http://www.frrax.com/rrforum/index.php?showtopic=7156

Thanks for your patience. I'll have it all worked out very soon.

Kevin
Go to the top of the page
 
+Quote Post
Teutonic Speedra...
post Mar 26 2006, 07:30 PM
Post #2


LS1 Inside! / Toolbox / Mechanical Engineer
***

Group: Advanced Members
Posts: 2,215
Joined: 5-February 04
From: NJ
Member No.: 179



Wow, that's what Marcin was telling me! FRRAX is getting big! (IMG:http://www.frrax.com/rrforum/style_emoticons/default/biggrin.gif)
Go to the top of the page
 
+Quote Post
trackbird
post Mar 26 2006, 07:47 PM
Post #3


FRRAX Owner/Admin
********

Group: Admin
Posts: 15,432
Joined: 13-February 04
From: Ohio
Member No.: 196



QUOTE (Teutonic Speedracer @ Mar 26 2006, 02:30 PM) *
Wow, that's what Marcin was telling me! FRRAX is getting big! (IMG:http://www.frrax.com/rrforum/style_emoticons/default/biggrin.gif)


My hunch is that we are starting to show up on Google and such more often, therefore making it easier to find us (for those who are hunting the various board software versions to "hack"). Either way, I'm getting a crash course in upgrades lately.
Go to the top of the page
 
+Quote Post
RedHardSupra
post Mar 27 2006, 12:47 AM
Post #4


Advanced Member
**

Group: Advanced Members
Posts: 452
Joined: 12-January 04
From: Charleston, SC
Member No.: 121



google hacking is becoming a whole new discipline. google's api and advanced search features really allow to automatically find sites running exploitable software, and then just unleash your exploits on them. blind scanning for large numbers of hosts is long gone. manual exploitation of each site separately is long gone. the old goals of gaining access to just more boxes for the sake of it is all gone.
now all you got is some hungry/poor/greedy eastern block hackers writing one exploit for one popular version of software, make it into a worm, let it propagate, and insert some traffic generating links and popups to some advertising site to make few cents.

that's what happened in our case i think. of course i don't have shell access to really get in there and look...
the real culprit is badly written software with unsanitized inputs, ripe for insertions. combine it with few bad permissions (courtesy of stupid windows ftp clients that change permissions to world readable/writable/executable so your usual windows idiot, 'scuse me, user, doesn't have problems accessing anything) and you got yourself a goldmine of opportunities.

and now i get to go back and spend another day in the lab hacking some custom servers without any sourcecode...and this is my 'spring break' too! please kill me now...
Go to the top of the page
 
+Quote Post
firehawkclone
post Mar 27 2006, 01:01 AM
Post #5


Grumpy
*****

Group: Advanced Members
Posts: 2,722
Joined: 1-January 04
From: Bakersfield CA
Member No.: 81



QUOTE (RedHardSupra @ Mar 26 2006, 06:47 PM) *
google hacking is becoming a whole new discipline. google's api and advanced search features really allow to automatically find sites running exploitable software, and then just unleash your exploits on them. blind scanning for large numbers of hosts is long gone. manual exploitation of each site separately is long gone. the old goals of gaining access to just more boxes for the sake of it is all gone.
now all you got is some hungry/poor/greedy eastern block hackers writing one exploit for one popular version of software, make it into a worm, let it propagate, and insert some traffic generating links and popups to some advertising site to make few cents.

that's what happened in our case i think. of course i don't have shell access to really get in there and look...
the real culprit is badly written software with unsanitized inputs, ripe for insertions. combine it with few bad permissions (courtesy of stupid windows ftp clients that change permissions to world readable/writable/executable so your usual windows idiot, 'scuse me, user, doesn't have problems accessing anything) and you got yourself a goldmine of opportunities.

and now i get to go back and spend another day in the lab hacking some custom servers without any sourcecode...and this is my 'spring break' too! please kill me now...


Huh (IMG:http://www.frrax.com/rrforum/style_emoticons/default/huh.gif) ....................... (IMG:http://www.frrax.com/rrforum/style_emoticons/default/laugh.gif)

I'm glad you guy's are here (IMG:http://www.frrax.com/rrforum/style_emoticons/default/rotf.gif)
Go to the top of the page
 
+Quote Post
CMC #37
post Mar 27 2006, 03:15 AM
Post #6


CMCer
*****

Group: Moderators
Posts: 2,932
Joined: 12-February 04
From: the sticks near VIR
Member No.: 194



Our banners are gone, okily dokily?
Go to the top of the page
 
+Quote Post
00 Trans Ram
post Mar 27 2006, 03:24 AM
Post #7


Experienced Member
***

Group: Advanced Members
Posts: 1,766
Joined: 10-April 04
From: New Orleans, LA
Member No.: 303



QUOTE
google hacking is becoming a whole new discipline. google's api and advanced search features really allow to automatically find sites running exploitable software, and then just unleash your exploits on them. blind scanning for large numbers of hosts is long gone. manual exploitation of each site separately is long gone. the old goals of gaining access to just more boxes for the sake of it is all gone.
now all you got is some hungry/poor/greedy eastern block hackers writing one exploit for one popular version of software, make it into a worm, let it propagate, and insert some traffic generating links and popups to some advertising site to make few cents.

that's what happened in our case i think. of course i don't have shell access to really get in there and look...
the real culprit is badly written software with unsanitized inputs, ripe for insertions. combine it with few bad permissions (courtesy of stupid windows ftp clients that change permissions to world readable/writable/executable so your usual windows idiot, 'scuse me, user, doesn't have problems accessing anything) and you got yourself a goldmine of opportunities.

and now i get to go back and spend another day in the lab hacking some custom servers without any sourcecode...and this is my 'spring break' too! please kill me now...


In English, this translates to, "The bad man is trying to hurt me - help me mommy!"
Go to the top of the page
 
+Quote Post
trackbird
post Mar 27 2006, 04:08 AM
Post #8


FRRAX Owner/Admin
********

Group: Admin
Posts: 15,432
Joined: 13-February 04
From: Ohio
Member No.: 196



QUOTE (CMC #37 @ Mar 26 2006, 10:15 PM) *
Our banners are gone, okily dokily?



I know. We have to fix a few things (which might wipe them out) and then I'll look into getting them back up there.

Edit:

Nevermind, I just put them back up.
Go to the top of the page
 
+Quote Post
CMC #37
post Mar 27 2006, 05:11 AM
Post #9


CMCer
*****

Group: Moderators
Posts: 2,932
Joined: 12-February 04
From: the sticks near VIR
Member No.: 194



Ah... the familiar banners reappear! The board is running a lot faster for me this pm too. (IMG:http://www.frrax.com/rrforum/style_emoticons/default/biggrin.gif)
Go to the top of the page
 
+Quote Post
trackbird
post Mar 27 2006, 05:18 AM
Post #10


FRRAX Owner/Admin
********

Group: Admin
Posts: 15,432
Joined: 13-February 04
From: Ohio
Member No.: 196



QUOTE (CMC #37 @ Mar 27 2006, 12:11 AM) *
Ah... the familiar banners reappear! The board is running a lot faster for me this pm too. (IMG:http://www.frrax.com/rrforum/style_emoticons/default/biggrin.gif)


Yea, it's been running well for me all along, but it got slow for a bit here and there. That trafficage.com banner stuff is still there, but it should be leaving soon. I'm waiting to hear back from the software guys about it.
Go to the top of the page
 
+Quote Post
Jon A
post Mar 27 2006, 06:32 PM
Post #11


Experienced Member
***

Group: Advanced Members
Posts: 1,947
Joined: 23-December 03
From: Everett, WA
Member No.: 16



Thank you! It was so slow it was basically unusable for me since Friday...click on something, switch tabs and surf somewhere else for 10 minutes, check back to see if the page had loaded.... (IMG:http://www.frrax.com/rrforum/style_emoticons/default/sad.gif)

But all better now. (IMG:http://www.frrax.com/rrforum/style_emoticons/default/drink.gif)
Go to the top of the page
 
+Quote Post
trackbird
post Mar 27 2006, 06:40 PM
Post #12


FRRAX Owner/Admin
********

Group: Admin
Posts: 15,432
Joined: 13-February 04
From: Ohio
Member No.: 196



QUOTE (Jon A @ Mar 27 2006, 01:32 PM) *
Thank you! It was so slow it was basically unusable for me since Friday...click on something, switch tabs and surf somewhere else for 10 minutes, check back to see if the page had loaded.... (IMG:http://www.frrax.com/rrforum/style_emoticons/default/sad.gif)

But all better now. (IMG:http://www.frrax.com/rrforum/style_emoticons/default/drink.gif)


Oddly, I didn't see it on my work or home machines (and mine didn't slow down at all). However, when I switched to my Linux machine and Mozilla, I saw it trying to load and it really hung up the pages. It appears that hackers found another hole and I didn't know that there was an update available until I went looking (in response to this problem). I've still got a few things to sort out, but it looks like we are back in business and running properly again.

Sorry for the problems. I keep trying to fix them as fast as I can and I'm getting a crash course in this software. I'm getting much better at getting around and getting things (some things) done.
Go to the top of the page
 
+Quote Post
sgarnett
post Mar 28 2006, 04:27 AM
Post #13


Seeking round tuits
******

Group: Advanced Members
Posts: 5,522
Joined: 24-December 03
From: Kentucky
Member No.: 33



BTW, I just discovered that outgoing PMs aren't showing up in the "sent items" like they did before. The PM seemed to be sent successfully, but that hasn't been confirmed yet.
Go to the top of the page
 
+Quote Post
trackbird
post Mar 28 2006, 01:35 PM
Post #14


FRRAX Owner/Admin
********

Group: Admin
Posts: 15,432
Joined: 13-February 04
From: Ohio
Member No.: 196



QUOTE (sgarnett @ Mar 27 2006, 11:27 PM) *
BTW, I just discovered that outgoing PMs aren't showing up in the "sent items" like they did before. The PM seemed to be sent successfully, but that hasn't been confirmed yet.


Sean, I'll send you a PM (lets test it).

I figured it out. The "Save PM to my sent box" is not defaulting to checked anymore. So, you have to check the box under the PM window to save the copy. I haven't found a way to change the defaults on that one so we may have to live with it.

Did you get my PM?
Go to the top of the page
 
+Quote Post
sgarnett
post Mar 28 2006, 02:03 PM
Post #15


Seeking round tuits
******

Group: Advanced Members
Posts: 5,522
Joined: 24-December 03
From: Kentucky
Member No.: 33



Yes, I got it.
Go to the top of the page
 
+Quote Post

Reply to this topicStart new topic
2 User(s) are reading this topic (2 Guests and 0 Anonymous Users)
0 Members:

 



Lo-Fi Version Time is now: 6th June 2025 - 11:37 PM