View Full Version : PhpBB hack info
Cristian Mezei
Jan 26th 2006, 11:02 am
People who use PHPbb, be advised.
There is currently a not so nice vulnerability (http://www.h4cky0u.org/advisories/HYSA-2006-001-phpbb.txt).
a389951l
Jan 26th 2006, 11:19 am
Looks like phpbb has noticed this. Important to turn on the visual confirmation for registering new members to prevent this DoS attack.
http://www.phpbb.com/phpBB/viewtopic.php?f=14&t=301711
BryceW
Jan 30th 2006, 7:41 am
Two things you should have already switched on/off:
Visual Confirmation = On
HTML = Off
It is also a good idea to .htaccess your admin areas and turn your text "Powered by PHPBB" into an image so it is harder for worms and nasty people to find PHPBB forums through google.
RectangleMan
Jan 30th 2006, 12:23 pm
Also that's for phpbb 2.0.15 which is about 6 months ago. If you are on .15 then you have lots more to worry about that a DDOS.
vBulletin® v3.6.8, Copyright ©2000-2008, Jelsoft Enterprises Ltd.