Anyone else getting hacked?
Moderator: Thorsten
-
- Posts: 12
- Joined: Tue Feb 20, 2007 10:12 pm
Anyone else getting hacked?
I lost the faqdata faqcategoryrelations tables and I thought i was getting SQL Injected. Took a look at the admin log and saw an IP that was clearly not on our subnet executing delete commands to the entires as "admin" when I am the only admin. Upgraded phpmyfaq. Was able to restore the data table but not the relations table. Began going through by hand but the hacker was just waiting for me. Tried banning IPs, Deleted all the users.
I really liked phpmyfaq, any hints for prevention or has anyone had this happen?
edit *phpmyfaq
I really liked phpmyfaq, any hints for prevention or has anyone had this happen?
edit *phpmyfaq
Last edited by spaceghost65 on Tue May 08, 2007 5:19 pm, edited 1 time in total.
Hi,
which version did you used?
bye
Thorsten
which version did you used?
bye
Thorsten
phpMyFAQ Maintainer and Lead Developer
amazon.de Wishlist
amazon.de Wishlist
-
- Posts: 12
- Joined: Tue Feb 20, 2007 10:12 pm
Hi,
all versions before 1.6.10 had a security hole...
bye
Thorsten
all versions before 1.6.10 had a security hole...
bye
Thorsten
phpMyFAQ Maintainer and Lead Developer
amazon.de Wishlist
amazon.de Wishlist
-
- Posts: 12
- Joined: Tue Feb 20, 2007 10:12 pm
phpMyFAQ Maintainer and Lead Developer
amazon.de Wishlist
amazon.de Wishlist
i'm on 1.6.6 and my categories are suddenly gone.
when i create a new category, it brings me to a 'page not found' when it attempts to navigate to the /faq/categorywhatever.html file.
need some help here!
p.s. you should move your forum over to vbulletin. it prevents crap like the porno posts from today from happening... just my .02 on that one.
when i create a new category, it brings me to a 'page not found' when it attempts to navigate to the /faq/categorywhatever.html file.
need some help here!
p.s. you should move your forum over to vbulletin. it prevents crap like the porno posts from today from happening... just my .02 on that one.
definite security problem with 1.6.6
actaully, i'll DEFINITELY SAY that there's a security problem with this version. i've got ip's from korea in my admin control panel. we're a US company with no employees in korea.
got a fix for it?
got a fix for it?
Hi,
1.6.6 has security problems which were fixed in 1.6.10.
bye
Thorsten
1.6.6 has security problems which were fixed in 1.6.10.
bye
Thorsten
phpMyFAQ Maintainer and Lead Developer
amazon.de Wishlist
amazon.de Wishlist