PEAK XOOPS - Xoops.org hacked in englishin japanese

Xoops.org hacked

  • You cannot open a new topic into this forum
  • Guests cannot post into this forum
Previous post - Next post | Parent - Children.1 | Posted on 2005/7/26 1:12
AgD  企霹始   Posts: 7
The xoops.org and dev.xoops.org have been hacked. A screenshot: http://img317.imageshack.us/img317/1260/xoopsorg8ac.jpg
Votes:0 Average:0.00
Previous post - Next post | Parent - Children.1 | Posted on 2005/7/26 1:21
LazyBadger  惧霹始   Posts: 34
No needs for screenshot, sites still defaced
Votes:0 Average:0.00
Previous post - Next post | Parent - Children.1 | Posted on 2005/7/26 6:29
GIJOE  黎扦烦菱   Posts: 4110
I'm suprised with the news.

Perhaps, this attack is not via XOOPS but via some other applications like awstats.

Votes:0 Average:0.00

question Re: Xoops.org hacked

msg# 1.1.1.1
Previous post - Next post | Parent - Children.1 | Posted on 2005/7/26 13:13
taherk  企霹始   Posts: 10
Sorry might be a stupid question, but what does it mean by hacked?

Was it a virus attack or something?
Votes:0 Average:0.00

question Re: Xoops.org hacked

msg# 1.1.1.1.1
Previous post - Next post | Parent - Children.1 .2 | Posted on 2005/7/27 3:51
Mithrandir  企霹始   Posts: 4
Yesterday evening, European time, a group of hackers broke into the xoops.org server and corrupted most if not all files.

This included our most recent backups so quite a bit has been lost. Fortunately the database was not affected, so the content is for the most part still there.

We have worked very hard in the past 26-30 hours to get xoops.org up and running, but it will take a while yet, since we are also taking the opportunity to make some adjustments.

We have not a confirmed point of entry, but the hackers did claim to use the xml-rpc interface - however we doubt that very much.
Instead we have identified suspicious behaviour that could be an exploit of a vulnerability in the Apache version, we were using on the webserver and we have upgraded the Apache version to counter this.

We are still working on it and we also want to make sure that the hole is indeed closed, so it will take a little while before the xoops.org websites are re-opened.
Votes:0 Average:0.00

question Re: Xoops.org hacked

msg# 1.1.1.1.1.1
Previous post - Next post | Parent - Children.1 | Posted on 2005/7/27 4:30
siweb  企霹始   Posts: 6
Maybe you should establish temporary site with minimum content, like news and links to some other XOOPS sites like local support sites and some links to sites with main modules.

Would you mind if I ask, if you have Xoops Protector module installed?

And last but not least - Thank you and all others, who are working hard to have our site reopened.
Votes:6 Average:0.00

question Re: Xoops.org hacked

msg# 1.1.1.1.1.1.1
Previous post - Next post | Parent - No child | Posted on 2005/7/27 23:47
AgD  企霹始   Posts: 7
xoops.org is on-line again :D:D:D
Votes:0 Average:0.00

question Re: Xoops.org hacked

msg# 1.1.1.1.1.2
Previous post - Next post | Parent - No child | Posted on 2005/7/30 17:09
GIJOE  黎扦烦菱   Posts: 4110
hi Mithrandir.

It is unfortunate to be cracked via such a recent security hole abou Apache.

You did the best.

I believe that It's a just misfortune.
Votes:0 Average:0.00

  Advanced search


Login
Username or e-mail:

Password:

Remember Me

Lost Password?

Register now!