phpBB.com Hacked!

Discussion in 'General Chat' started by Chuckun, Feb 3, 2009.

  1. #1
    I just headed over to an old topic I meant to check up on over at the phpbb support forums, and noticed that they've been attacked!

    The website is currently down due to a vulnerability being exploited within the phpList installation..

    However, they say that this is not a bug of phpBB itself.

    http://phpBB.com

    Chuckun
     
    Chuckun, Feb 3, 2009 IP
  2. jallikatu

    jallikatu Peon

    Messages:
    352
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #2
    Checked and yes it is hacked. Sad for open source.
     
    jallikatu, Feb 3, 2009 IP
  3. Chuckun

    Chuckun Well-Known Member

    Messages:
    1,161
    Likes Received:
    60
    Best Answers:
    2
    Trophy Points:
    150
    #3
    I hate people hacking websites for such brilliant, FREE projects..

    What's the point, what is there to gain? :(
     
    Chuckun, Feb 3, 2009 IP
  4. liquid4rchiv3

    liquid4rchiv3 Peon

    Messages:
    37
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #4
    "we have been attacked through a vulnerability in an outdated PHPList installation"
    Sounds like they forgot to update lol
     
    liquid4rchiv3, Feb 3, 2009 IP
  5. Chuckun

    Chuckun Well-Known Member

    Messages:
    1,161
    Likes Received:
    60
    Best Answers:
    2
    Trophy Points:
    150
    #5
    The last update to phpList was on the 29th January... Someone must've hit them fast! :O

    For some reason I'm shocked phpBB wouldnt be up to date within 4 days..
     
    Chuckun, Feb 3, 2009 IP
  6. ads2help

    ads2help Peon

    Messages:
    2,142
    Likes Received:
    67
    Best Answers:
    1
    Trophy Points:
    0
    #6
    PHPList? The newsletter manager??

    Agree..Feel sad for them..
     
    ads2help, Feb 3, 2009 IP
  7. liquid4rchiv3

    liquid4rchiv3 Peon

    Messages:
    37
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #7
    Guess they should have used Tincan as there host.....
     
    liquid4rchiv3, Feb 3, 2009 IP
  8. Chuckun

    Chuckun Well-Known Member

    Messages:
    1,161
    Likes Received:
    60
    Best Answers:
    2
    Trophy Points:
    150
    #8
    Lol, maybe :p
     
    Chuckun, Feb 3, 2009 IP
  9. Chuckun

    Chuckun Well-Known Member

    Messages:
    1,161
    Likes Received:
    60
    Best Answers:
    2
    Trophy Points:
    150
    #9
    Chuckun, Feb 3, 2009 IP
  10. iamays

    iamays Banned

    Messages:
    528
    Likes Received:
    8
    Best Answers:
    0
    Trophy Points:
    0
    #10
    hackerz are meany heads
     
    iamays, Feb 3, 2009 IP
  11. wierdo

    wierdo Well-Known Member

    Messages:
    1,646
    Likes Received:
    45
    Best Answers:
    0
    Trophy Points:
    140
    #11
    That's one way to put it. :p

    They're still down! :eek:
     
    wierdo, Feb 3, 2009 IP
  12. Chuckun

    Chuckun Well-Known Member

    Messages:
    1,161
    Likes Received:
    60
    Best Answers:
    2
    Trophy Points:
    150
    #12
    That's mad... =/

    I wonder what actually got done to the site then..

    Someone really knew what they were doing here... With the worst intentions...

    Feel sorry for the guys at phpBB having to sort it all out...

    They should know not to be sloppy with staying up to date though... Producers of such a script of phpBB should recognise the importance of bugfixes..
     
    Chuckun, Feb 4, 2009 IP
  13. jackio

    jackio Banned

    Messages:
    490
    Likes Received:
    8
    Best Answers:
    0
    Trophy Points:
    0
    #13
    Its sad when someone hack an open source project... Wondering if they checked the phpbb source code for backdoors.
     
    jackio, Feb 4, 2009 IP
  14. Chuckun

    Chuckun Well-Known Member

    Messages:
    1,161
    Likes Received:
    60
    Best Answers:
    2
    Trophy Points:
    150
    #14
    well they claim that it was not a flaw in the phpBB script that was abused in the attack...

    but it doesnt look good for them either way...

    I doubt any phpBB users will loose sleep over it though.. BB3 seems quite secure to me.
     
    Chuckun, Feb 4, 2009 IP
  15. SizTec.com

    SizTec.com Banned

    Messages:
    211
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    0
    #15
    oh :( i am big fan of that forum software!

    But i stopped using it as they dont have my fav features - rich text editor and auto mod install

    what do you think guys ? Why they are not adding above features
     
    SizTec.com, Feb 4, 2009 IP
  16. Chuckun

    Chuckun Well-Known Member

    Messages:
    1,161
    Likes Received:
    60
    Best Answers:
    2
    Trophy Points:
    150
    #16
    phpBB3 is very sophisticated for opensource..

    take a look at my thread here for a more equipt phpbb forum.. Theres a link to a fully modded phpbb download, (legit, I've used it) - if you check it out, post in that thread with your opinions :D

    Chuckun
     
    Chuckun, Feb 4, 2009 IP