Doreen did I get your attention

Go ahead. Talk about it.
User avatar
diesel dyke
Posts: 202
Joined: May 17th, 2005, 6:27 am
Location: stilltrucking's vanity of vanites

Doreen did I get your attention

Post by diesel dyke » February 8th, 2006, 5:37 pm

Cybersoldier just showed up as a new member
he was the hacker who trashed studio eight
"We are made to be immortal, and yet we die. It's horrible, it can't be taken seriously. —ianeskimo"

User avatar
Doreen Peri
Site Admin
Posts: 14547
Joined: July 10th, 2004, 3:30 pm
Location: Virginia
Contact:

Post by Doreen Peri » February 8th, 2006, 7:36 pm

Thanks!

The name is zapped! Gone.

Appreciate it!

User avatar
stilltrucking
Posts: 20607
Joined: October 24th, 2004, 12:29 pm
Location: Oz or somepLace like Kansas

Post by stilltrucking » February 8th, 2006, 11:06 pm

This is just a rhetorical question, wondering out loud. Why would he use the same user name? Did he/she forget that they had already trashed this ssite. And then the coincidence of the other person signing up right afterward.

SOrry I got hysterical, going to delete all those posts I made about this.

User avatar
Doreen Peri
Site Admin
Posts: 14547
Joined: July 10th, 2004, 3:30 pm
Location: Virginia
Contact:

Post by Doreen Peri » February 9th, 2006, 12:18 am

We already talked about this by pm but for the benefit of others who may hit this thread...

We got hacked a couple of months ago ... the signature on the hack was "cyber-soldier".. when you hit the page, all you saw was "hacked by cyber-soldier"

it was a nightmare trying to restore the darn thing and we had to restore the whole site from a back up from our host and lost like 24 hours of posts or something

after that, i did an upgrade to the forums which was "supposed" to fix the vulnerability but now we are being assaulted by more "bot" names...

they aren't real people... people write scripts for spider bots to search out forums and register as people for the sole purpose of putting their links to their porn sites, hub sites, or other sites which are selling something.. in the member list

well apparently these bots have become more sophisticated and are entering here and i've had to be here to babysit this site and zap them when I notice they have registered..

it's sorta hard to explain and you all might think i'm nuts, but i assure you, i'm no crazier than you are... lol!

anyway, today i zapped like 20 of them and one of them had the same name as the hack name which put its signature on our forums when it hacked us

but it's not a real person.. it is a bot.. and the worry we have now is that this forum is vulnerable to bots which are not just scripts to put a registered name in the member list as a link but which are PROGRAMS which will execute and again hack our forums

I'm trying to get this fixed... I need to upgrade the forum software and the "skin" (the way it looks) but I need help and one of our members has volunteered to help me so hopefully we can get this done tomorrow or the next day

in the meantime, if you see unusual names at the bottom of the site as "new members" (usually with numbers in the names but not always) and you click on the profile and see that it's probably not a real person but someone who is advertising a hub or porn site or selling something, email me and let me know

AND if you see the name "cyber-soldier" register, I really need to know right away because that one might be a program to hack us again!

Thanks diesel - stilltrucking for being so aware and helping me out like this!

Hang on to your hats!

If the forums disappear we'll get them back up as soon as possible and just cross your fingers that we get it fixed quickly enough so that won't happen

And to all you techies who are reading this, if I said it wrong, well, I said it the only way I understand it ... I'm trying to learn.

If god wanted me to be a webmaster, I would have been born one.

I just love the arts, that's all.

love you all

User avatar
singlemalt
Posts: 274
Joined: September 4th, 2004, 7:19 pm
Location: Chicago

Post by singlemalt » February 10th, 2006, 2:32 pm

wow, zapping 'bots all day. kind of like playing a video game.

User avatar
stilltrucking
Posts: 20607
Joined: October 24th, 2004, 12:29 pm
Location: Oz or somepLace like Kansas

Post by stilltrucking » February 10th, 2006, 2:33 pm

Thanks!

The name is zapped! Gone.

Appreciate it!
so the damge was already done
just by registering he had access.

no need to answer this,

just thinking out loud

and thanks

you too Firsty

singlemalt I don't think it was a bot

right after he showed up down the bottom as the newest user I mentioned something

then someone else signed up as if to cover him so he would not show up on the bottom of the page as the newest member

coincidence?

do bots read posts?

watch your posts to see if they have been altered, the last time this happened somebody was editing posts, it happened to about six people I think

User avatar
Doreen Peri
Site Admin
Posts: 14547
Joined: July 10th, 2004, 3:30 pm
Location: Virginia
Contact:

Post by Doreen Peri » February 10th, 2006, 2:52 pm

Nobody signed up to cover someone else's name.

Really... they are all bots... including the "cyber-soldier" name.

See my post here also
http://studioeight.tv/phpbb/viewtopic.php?p=40273#40273

User avatar
diesel dyke
Posts: 202
Joined: May 17th, 2005, 6:27 am
Location: stilltrucking's vanity of vanites

Post by diesel dyke » February 10th, 2006, 3:17 pm

listen

I know I know
there is no need to reply
my point is does a bot go in to someones post and add a line to it, does a bot go into a post and completly change it. Six or seven posts were altered.
smart bots
what a brave new world we live in
the spiders or crawlers I used to call them can go through web pages but I think it takes finger to type.?
forget about it don't waste your time on still trucking, you don't owe him any explanations.
"We are made to be immortal, and yet we die. It's horrible, it can't be taken seriously. —ianeskimo"

User avatar
stilltrucking
Posts: 20607
Joined: October 24th, 2004, 12:29 pm
Location: Oz or somepLace like Kansas

Post by stilltrucking » February 10th, 2006, 3:21 pm

duh me I am amazed that a bot can go into a post and type stuff, are they little messages like infortone cookies pre written and randomly posted

man yu have had a tough night, dont waste your time getting back to me

my post to ~K, when I told you that someone changed it added words to it youu did not belive me.

what I am saying is the bots are code, but once someone has got into site I think that they just screw around with posts for the hell of it.

User avatar
stilltrucking
Posts: 20607
Joined: October 24th, 2004, 12:29 pm
Location: Oz or somepLace like Kansas

Post by stilltrucking » February 10th, 2006, 3:27 pm

My posts were edited at least a week befor the sight went down.

i think i am having brain damage I been doing a lot of right/write, no/know site/sight, I may have picked up a bot

or so it seems maybe mnaz remembers he got his posts changed too.

User avatar
Doreen Peri
Site Admin
Posts: 14547
Joined: July 10th, 2004, 3:30 pm
Location: Virginia
Contact:

Post by Doreen Peri » February 10th, 2006, 3:38 pm

Still... yes, the program edited posts. People write programs to do that. A person didn't do that. People don't have time to do that. They write scripts to do it. How was your post edited? Do you remember? I do. A sentence or two were added! As you noted, the "cyber-soldier" hack hit many websites on the net. One person or a group of people couldn't possibly have done it. Nobody has that much time on their hands! It would be impossible for one person or several people to do this.

Someone wrote a script to do it. Then they sent the script out to crawl the net looking for phpbb sites and the script was an executable application which was programmed to randomly select members online when it hit, somehow hack their password and once that was done, enter text in their posts (proof that the password hack worked), then hit the admin panel after being successful hacking names, and hack the whole forum.

We got hacked, yes, by a bot name "cyber-soldier" which was an executable application which succeeded in hacking your log in info, turning your name and mnaz's name into Admins so it could enter the Admin panel and hack the entire site. No person screwed around with your posts for the hell of it. It was a bot... a script succeeding in the steps necessary to gain access to the admin panel.

That's all old news! That is not what's happening now.

What's happening now is that we are being inundated with bots registering here for the sole purpose of getting links to hubs, porn sites, etc. in the member list. That's it.

We're just trying to get a visual confirmation in the registration process to stop this from happening.

User avatar
Diana Moon Glampers
Posts: 310
Joined: February 2nd, 2006, 9:11 pm
Location: stilltrucking's vanity

EIght days

Post by Diana Moon Glampers » February 10th, 2006, 3:41 pm

http://www.studioeight.tv/phpbb/viewtop ... 88&start=0

I posted this and the site went down eight days later

Is that the way it goes. Why was the site hacked eight days after my post got trashed? rehtorical question

from 09/19 to 09/27 that is a very slow bot to china.

done no more posts from me about this, don't waste your breath on me, no sarcasm intended, no hostility felt, only concern for you


lets just forget about it and move on and hope for the best. If it happens again lets take up collection.

User avatar
Doreen Peri
Site Admin
Posts: 14547
Joined: July 10th, 2004, 3:30 pm
Location: Virginia
Contact:

Post by Doreen Peri » February 10th, 2006, 3:48 pm

I just told you why.

Because first the bot by the name "cyber-soldier" had to hack passwords and then the next step was to prove the the passwords were hacked by posting something under that name, the next step after that was to somehow hack the member's privileges so that the member name is turned into an Admin so the hack could enter the Admin panel.

It's a computer program. Somebody wrote a computer program.

I guess it just took 8 days for the computer program hack (what I'm calling a bot... a script) to succeed at it's nasty job.

User avatar
Doreen Peri
Site Admin
Posts: 14547
Joined: July 10th, 2004, 3:30 pm
Location: Virginia
Contact:

Post by Doreen Peri » February 10th, 2006, 3:52 pm

AND I repeat.. that is not what's happening now.

All we are trying to do is put visual confirmation in the registration process to keep out the other bots which are not trying to hack our forum but are only advertising viagra, porn sites, and magazine subscriptions.

;)

User avatar
Diana Moon Glampers
Posts: 310
Joined: February 2nd, 2006, 9:11 pm
Location: stilltrucking's vanity

Post by Diana Moon Glampers » February 10th, 2006, 3:57 pm

Emily Litella said "Oh. Never mind", 8)

Post Reply

Return to “General Discussion”

Who is online

Users browsing this forum: No registered users and 18 guests