Upgrade your Mybb please

Discussion in 'Forum Management' started by RectangleMan, Jun 26, 2009.

  1. #1
    If you are running 1.4x branch of MyBB please upgrade to 1.4.8. Especially if you are on 1.4.6 or earlier. There is a well-known vulnerability that's rather nasty. Many MyBB sites that don't regularly update are being penetrated.

    And for those that may say MyBB is insecure. Realise the patch for this bug was released BEFORE the exploit was even published. I helped to find this exploit and within two hours 1.4.7 patch was released. That's how good software manages security.

    1.4.8 was just released as well which fixes two minor and one medium risk vulnerability.

    Upgrading MyBB is very easy so please take the time to do it and subscribe to the newsletter to get update notices.

    More info here: http://blog.mybboard.net/2009/06/26/mybb-148-released-maintenance-security-release/
     
    RectangleMan, Jun 26, 2009 IP
  2. sadiqsaad

    sadiqsaad Peon

    Messages:
    405
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #2
    Thx for the heads-up bro.
     
    sadiqsaad, Jun 27, 2009 IP
  3. theapparatus

    theapparatus Peon

    Messages:
    2,925
    Likes Received:
    119
    Best Answers:
    0
    Trophy Points:
    0
    #3
    This is why we manage our clients' software installs. When a new release comes out, we upgrade all of our clients.

    Makes our life a lot easier since we deal with fewer hacked sites.
     
    theapparatus, Jun 27, 2009 IP
  4. Radz

    Radz Notable Member

    Messages:
    1,497
    Likes Received:
    304
    Best Answers:
    0
    Trophy Points:
    280
    #4
    Thanks for the heads up, i already upgraded my forum yesterday :rolleyes:
     
    Radz, Jun 27, 2009 IP
  5. RectangleMan

    RectangleMan Notable Member

    Messages:
    2,825
    Likes Received:
    132
    Best Answers:
    0
    Trophy Points:
    210
    #5
    If you were hacked but feel you patched...please check for backdoor...

    $this->bckdr = '/cache/themes/themes.php';

    That's part of the code for a script to use the exploit. If you have that file in your system DELETE IT ASAP.

    ROOT/cache/themes/themes.php

    It should not be there.
     
    RectangleMan, Jun 28, 2009 IP
  6. jamuna

    jamuna Active Member

    Messages:
    2,089
    Likes Received:
    24
    Best Answers:
    0
    Trophy Points:
    80
    #6
    jamuna, Jul 1, 2009 IP
  7. RectangleMan

    RectangleMan Notable Member

    Messages:
    2,825
    Likes Received:
    132
    Best Answers:
    0
    Trophy Points:
    210
    #7
    Yes they are all from this one exploit and it's actually mainly one hacker doing it all. He has logged about 5000 sites exploited.
     
    RectangleMan, Jul 2, 2009 IP
  8. scylla

    scylla Notable Member

    Messages:
    1,025
    Likes Received:
    33
    Best Answers:
    1
    Trophy Points:
    225
    #8
    Oh really, so who is this hacker, what's his site & where are said logs?
     
    scylla, Jul 2, 2009 IP
  9. RectangleMan

    RectangleMan Notable Member

    Messages:
    2,825
    Likes Received:
    132
    Best Answers:
    0
    Trophy Points:
    210
    #9
    RectangleMan, Jul 3, 2009 IP
  10. scylla

    scylla Notable Member

    Messages:
    1,025
    Likes Received:
    33
    Best Answers:
    1
    Trophy Points:
    225
    #10
    ah, touche & nice find there.
     
    scylla, Jul 3, 2009 IP