General Car Related Discussion. To discuss anything that is related to cars and automotive technology that doesnt naturally fit into another forum catagory.

local car site "hack" issue

Thread Tools
 
Search this Thread
 
Old 11-06-2009, 08:14 AM
  #1  
Slaney21
Roflmaowtfbbqhax!
Thread Starter
iTrader: (1)
 
Slaney21's Avatar
 
Join Date: Nov 2008
Location: The Deep South
Posts: 349
Likes: 0
Received 0 Likes on 0 Posts
Default local car site "hack" issue

Hey all

another site i use which involves cars has apparently been "hacked" by new user. God knows why he/she has chosen such a basic site to air their display of L33T SK1LLZ but the said party has taken away all administrative rights to the site moderators and has generally made a mockery of the site.

Im just wandering what are the best steps to approach this are? I have a sneaky suspicion its someone local who seems to hold somewhat of a grudge against a few users and therefore has turned to hiding behind a screen to stir up trouble. I have suggested the persons in charge contact the site host and ask them for an ip trace of the said "hacker" and go from there but im very limited on the subject.

any computer gurus about to give advice?

cheers
Old 11-06-2009, 08:17 AM
  #2  
cossie604
PassionFord Post Whore!!
iTrader: (2)
 
cossie604's Avatar
 
Join Date: Apr 2005
Location: Derby
Posts: 4,703
Likes: 0
Received 2 Likes on 2 Posts
Default

Sounds like a 'cruze' site to me.....best advise, avoid them completely as they will only drag you down
Old 11-06-2009, 08:20 AM
  #3  
Slaney21
Roflmaowtfbbqhax!
Thread Starter
iTrader: (1)
 
Slaney21's Avatar
 
Join Date: Nov 2008
Location: The Deep South
Posts: 349
Likes: 0
Received 0 Likes on 0 Posts
Default

dont worry about that im not into the whole "cruise" thing i just have 1 or 2 friends on there. I grew out of the neons and m3 mirror phase years ago
Old 11-06-2009, 08:48 AM
  #4  
Marts
Too many posts.. I need a life!!
iTrader: (1)
 
Marts's Avatar
 
Join Date: Nov 2006
Posts: 930
Likes: 0
Received 0 Likes on 0 Posts
Default

To be fair, boards like invision and phbb are not 'hackable' as you put it. The way in is through guessing the password of a super mod or the administrator. And to be fair, in cetain cases, thats not hard!

The way to do find out a little about who did the damage would be to go thru the moderator logs (or admin logs) and look at the IP address given where said damage has been caused. Due to the likes of Norton and other security set-ups now tho, IP's are changed all the time and pointed all over the world for 'security reasons' so that may not help anyway.

The person who did the damage would also have background knowledge of the Admin Panels. Hence how they knew where to go to change others' passwords etc. Your standard tom, dick or harry wouldnt know where to go so quickly! So maybe they are from a moderation team of a different site... or at worst, an admin. Jealousy is a bad thing!

If any posts/threads were deleted, hopefully the site admins created a recycle bin and hid it away from moderators eyes. Root Admin should be able to rectify all problems by restoring everything. If this isn't the case then unfortunately they are gone forever and they will have to start again.

Asking the servers for hlp will just get you a "Sorry sir, because this issue is based within a software package on our server there is nothing we can do". Thats even if they know what a forum software is!!!

Only true way of sorting it is to get Root Admin signed in, change all the moderation team passwords into mixed numerics (over 26 letters/numbers long) and then start tidying up and sorting out the mess from there. The reason for 26+ characters is that some 'hackers' use a tool that fifures out passwords... unfortunate for them tho as after 26 characters, the tool has to start again and again due to being too many to figure out.

Not much more to say on the matter mate. They just need to learn from this and move on. Changing passwords and choosing staff wisely is the next step.

Hope that helps you/your mate out
Old 11-06-2009, 09:05 AM
  #5  
Slaney21
Roflmaowtfbbqhax!
Thread Starter
iTrader: (1)
 
Slaney21's Avatar
 
Join Date: Nov 2008
Location: The Deep South
Posts: 349
Likes: 0
Received 0 Likes on 0 Posts
Default

marts thank you for the lengthy helpful response fella much appreciated
Old 11-06-2009, 09:08 AM
  #6  
Marts
Too many posts.. I need a life!!
iTrader: (1)
 
Marts's Avatar
 
Join Date: Nov 2006
Posts: 930
Likes: 0
Received 0 Likes on 0 Posts
Default

No problem
Old 11-06-2009, 09:42 AM
  #7  
Hockney
Advanced PassionFord User
 
Hockney's Avatar
 
Join Date: May 2003
Posts: 2,086
Likes: 0
Received 0 Likes on 0 Posts
Default

Originally Posted by Marts
To be fair, boards like invision and phbb are not 'hackable' as you put it.
Oh yes they are! You would be surprised at how many forums dont run the most recent versions of the board software leaving them wide open for exploits.
Originally Posted by Marts
Asking the servers for hlp will just get you a "Sorry sir, because this issue is based within a software package on our server there is nothing we can do". Thats even if they know what a forum software is!!!
Dont you mean the server host? Asking the server and if the host didnt know what forum software is then I wouldnt be with them for very long

Originally Posted by Marts
change all the moderation team passwords into mixed numerics (over 26 letters/numbers long) and then start tidying up and sorting out the mess from there.
There is absolutely no need to have a password so long. You might as well wear a tinfoil hat every time you log in. Having a password not in the english dictionary and in lower, upper, number and symbols is the more secure way. Something along the lines of >Lly#REeGBy*C/? is more than ample.

Slaney21 didnt your friend make back ups of the site at all? Any one running a website of any sorts knows to make backups at least daily in case something like this happens. You can be back up and running within hours instead of having to start from scratch again.

Last edited by Hockney; 11-06-2009 at 10:02 AM.
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
Stu @ M Developments
General Car Related Discussion.
41
21-08-2015 06:47 AM
yawiejon
General Car Related Discussion.
15
09-08-2015 06:36 PM
Red_bull
Ford Escort RS Turbo
0
09-08-2015 08:34 AM
CabrioTurbo
General Car Related Discussion.
1
01-08-2015 11:04 AM



Quick Reply: local car site "hack" issue



All times are GMT. The time now is 12:19 AM.