PDA

View Full Version : We got HACKED :(


paradise
05-16-2006, 1:46 PM
VERY IMPORTANT - APF Got hacked this morning.

When I logged on this morning I found a very nice Expletive message about how they GOT US. Well, good for them, I have restored the site from a backup on the server. Unfortunately, it's 48hrs old, so that means all posts from the last 24-48 hrs were lost. Please repost anything you had posted. I would hate to see them win and have us lose precious information because of it.
Thanks,
Edward

cindywindy
05-16-2006, 2:06 PM
Hi Ed,

As soon as I got my email about the news I wanted to come right over to offer my support. As you know, we at Tropical Resources consider all the folks at APF dear friends of ours and we have enjoyed a great working relationship for some time now ... so when I hear of something as disturbing as this happening to such an amazing group of people, it just made me sick inside. No doubt that you have everything well at hand but should the occasion arise that you need anything at all, TR stands ready to show our support.

I hope you don't mind, but since we share so many members I copied your email into a thread (http://tropicalresources.net/phpBB2/viewtopic.php?p=166932#166932) on TR, with a link leading back here for easy access in order to repost any lost threads and/or posts from the last couple of days. Hopefully this helps in some small way but again, I hope you all know that we will be there for you for anything you might need.

Flowerhorns4me
05-16-2006, 2:08 PM
It is so sad that some people have nothing better to do. They should make better use of their time by going out to buy a good camera and get into photography.

paradise
05-16-2006, 2:13 PM
Cindy, thanks, you are such a sweatheart :) :) Rick , I agree, gotta be something better to do with your life.

labama
05-16-2006, 2:32 PM
Are you reformating the computer and starting from scratched....now that you have been compromised you dont own the computers anymore. They do. Hopefully you guys can find the hole. check firewalls and hopefully you guys can fix it. You now have backdoors in to the computer. But you guys probely already know this stuff.
Hubby is a computer guy for NASA so any ? shoot them my way.

Ibn
05-16-2006, 2:39 PM
It's all server side, Leslianne, but thanks for volunteering. :)

Thanks for the kind message on TR, Cindy. Rick, if only everyone could do so...

ilikelegs
05-16-2006, 2:49 PM
Never mind my PM about the missing thread.
Sorry you guys got hacked by these losers.
Guess some people have no life...sucks to be them.

labama
05-16-2006, 3:08 PM
:-D Just trying to do my part.:-D

bichir mad
05-16-2006, 3:14 PM
i dont understand why they done it to us as they cant get money out of it, theyre probally just doing it for the sake of it, damn these people

Travis Bickle
05-16-2006, 7:19 PM
Hi all,
I think I was on the site while it happened... pages were all there, I refeshed the page and saw the messages. :-o

I'm really glad it was a minor repair.

Good job your of being on top of your backups!!

Hacks in the web world are strange to me... It probabally wasnt a targeted attack. IE personal reasons against this site. Rather the "hackers" target the vBulletin cms for sql Injection or sloppy code. These Cms's are usually paid for by people like yourselves, to run your site. Hackers think of themselves as quality control, pointing out the holes, or bad code, in hope the cms will fix or upgrade with "clean code". They feel you should pay for clean code. Yet we wouldnt really need it if it wasnt for hackers.:confused:

Again, glad your back and no real harm done. B-)

Simonauv
05-17-2006, 4:13 AM
It happened to me last year too. I ran the (don't laugh now lol) Australian Show Rabbit Discussion Forum for all the rabbit breeding/showing clubs in Australia. It was an EzBoards forum and I had a good sized community full of financial members then it got hacked and I lost years of stuff, ezboards said they couldn't (wouldn't IMO) fix it and it caused the death of the forum *shurgs* which was OK by me cos then I had more time to concentrate on other pursuits LOL!

And to think I almost sent a PM asking why my post had been removed lol I thought the censors had taken their red pens out and crossed out my birdy poop pic lol.

Travis, instead of these people wanting to be saviours of all people they should concentrate on their own affairs. Random attacks on normal happy communities is tantamount to cyber-terrorism IMO. But they should feel good about themselves that they have exposed a chink in this communities armour and disrupted the normal flow here.

Ed, I paid for premium membership here using paypal - no banking details of the transaction are kept by the forum's database are they?

Travis Bickle
05-17-2006, 4:28 AM
Travis, instead of these people wanting to be saviours of all people they should concentrate on their own affairs. Random attacks on normal happy communities is tantamount to cyber-terrorism IMO. But they should feel good about themselves that they have exposed a chink in this communities armour and disrupted the normal flow here.

Ed, I paid for premium membership here using paypal - no banking details of the transaction are kept by the forum's database are they?

I beta test for a CMS... I see it all the time. The last Major problem we had was a script entered during the login pass.:lol:

EDIT* sucks to lose your data I know :(

Paypay is not involved, and 128bit encrypted. Your safe from this for sure

paradise
05-17-2006, 10:18 AM
Yes, you are fine. One person's subscription got affected, because it was done during the 2day period, and was erased from the database. Got restored quickly.

Hurriken
05-17-2006, 11:37 AM
I guess someone took losing the POTM contest seriously.

I was corunning a forum for a flight sim group once and someone hacked us. They didn't erase anything they were just able to make and edit posts using users names. The post they did under my name had me coming out of the closet, very entertaining!

chubasco
05-17-2006, 10:25 PM
Hackers suck! :mad: I've edited this, spent too much time on foreign forums, hope nobody took offense, or
offence:)

trigger
05-24-2006, 9:19 AM
Well, if you can get in, there is a security risk. They could have done a lot of harm, without anyone even realising it. I have hacked my share of systems in the good old days, but when I got in, I allways notified the responsible people how I got in, so they could make sure that way could get closed.

Loubard
05-24-2006, 11:19 AM
Thanks god for backups.