TP-Docs
HTML5 Icon HTML5 Icon HTML5 Icon
TP on Social Media

Recent

Welcome to TinyPortal. Please login or sign up.

Members
  • Total Members: 3,966
  • Latest: safir45
Stats
  • Total Posts: 195,993
  • Total Topics: 21,324
  • Online today: 388
  • Online ever: 8,223 (February 19, 2025, 04:35:35 AM)
Users Online
  • Users: 0
  • Guests: 397
  • Total: 397

TP Hacked -- v0.86 with Shoutbox Patch -- still hacked

Started by BobbyKashyap, July 04, 2006, 12:39:30 AM

Previous topic - Next topic

0 Members and 3 Guests are viewing this topic.

agridoc

This doesn' t seem like  Shoutbox hack but rather a server hack.

I there any evidence that the hackers went in through the Shoutbox?
  For Greek aeromodellers and our friends around the world  - Greek Button sets for SMF

Porky

My server company only said that they gained acess through an out dated script. SMF and TP are the only 2 scripts that I run....when it all happened I had simaliar stuff in my shout box...

G6Cad

Sounds more like your host didnt really know what happend, and had to blaim some one

yj98

sad to heard your issue . I wish not to get the same thing .

but now i meet some issue with shoutbox , spammer almost put 20 spam link on it . HORROR .

ps: I deleted the spam all . 5 times per one day.. @@#@$#)*#*$#

agridoc

ΨPorkΨ you say that your forum and database were intact.

The recipients of the mails were members or other e-mails? You surely can' t say about other but you would have some messages from members if the database was used.
  For Greek aeromodellers and our friends around the world  - Greek Button sets for SMF

Arba

and caused my email to send out over 2000 emails an hour
I have similar problem months or two ago ,they hack my site via coppermine gallery with some weird script/picture ,I and my host realize that something is wrong after I send aprox 350 000 spam mail  :o in few days . Ichbin help me in this situation ,upgrade my gallery and I just delete all mails from my mail acount .

Cool Surfer


RoarinRow

I could really use .0.9.5 right about now.  I was hacked twice today.  One signature was from some God Father hacker and the second was from hackers.org.  It appears to be a server hack, not the hack via the shoutbox.  Any suggestions to prevent this from happening?

See attached signature from last hacker.

SMF 2.0 RC3
TP 1.0 beta 5-1
Wordpress 3.0

G6Cad

If it was through the server not even TP V.095 would have helped you, and keep your index,php file tight on the permission, i would have mailed my host and really asked about their security  >:(

RoarinRow

Quote from: Mrs G6 on September 06, 2006, 11:05:09 PM
If it was through the server not even TP V.095 would have helped you, and keep your index,php file tight on the permission, i would have mailed my host and really asked about their security  >:(

What do you recommend as far as protecting index.php file?

SMF 2.0 RC3
TP 1.0 beta 5-1
Wordpress 3.0

This website is proudly hosted on Crocweb Cloud Website Hosting.