vBulletin.com Forums Hacked

VICE

tool
Joined
Jun 8, 2013
Messages
2,735
... super Joe ...

Please quit using your pet names for everyone. Use their forum name when referencing someone. It just makes you look immature when you do that.

Ziggy, I would henceforth consider your demand void.




Not to diminish the likelihood of B (e.g., SQLI etc.), but A is how a lot of breaches are starting these days at large companies. They introduce malware on a person's computer who has administrative or root access and then they have access to whatever that person has access to. It's a lot simpler than some other approaches. Is the code base for VB5 at all similar to VB4 or 3? I know it could be a plug-in or any other software but am just curious.
With only a handful of well seasoned developers?
I would like to assume their PCs are well protected.
 

ozzy47

Tazmanian Master
Joined
Oct 18, 2013
Messages
8,960
Not to diminish the likelihood of B (e.g., SQLI etc.), but A is how a lot of breaches are starting these days at large companies. They introduce malware on a person's computer who has administrative or root access and then they have access to whatever that person has access to. It's a lot simpler than some other approaches. Is the code base for VB5 at all similar to VB4 or 3? I know it could be a plug-in or any other software but am just curious.

It's possible, but I would be willing to bet it was a vB5 exploit.
 

VICE

tool
Joined
Jun 8, 2013
Messages
2,735
Probably there are some super good deleoping with server languages but nerds when it came to pc security.
My bet would be on the legacy codes.
[vB5] Being refactored from vB4, I assume there are many of those around.
 

ozzy47

Tazmanian Master
Joined
Oct 18, 2013
Messages
8,960
... which was refactored from VB3

I think it was a version specific (v5.1.9) issue. As what ever was done has only happened to the forums and home page. The members area still works, although I would not log in there till everything is sorted.
 

doubt

Tazmanian
Joined
Feb 25, 2013
Messages
4,898
Critical Error
We are currently experiencing technical difficulties. Please check back in 24 hours.
 

PacMan

Tazmanian
Joined
Apr 12, 2004
Messages
4,266
I think it was a version specific (v5.1.9) issue. As what ever was done has only happened to the forums and home page. The members area still works, although I would not log in there till everything is sorted.

So are you saying that the member area is based on VB3 code?
 

ozzy47

Tazmanian Master
Joined
Oct 18, 2013
Messages
8,960
So are you saying that the member area is based on VB3 code?

No, but if there were other exploits in other versions, more than just the forum and homepage would.be affected,
 

zappaDPJ

Moderator
Joined
Aug 26, 2010
Messages
8,450
The forums are definitely up and running again but there's no announcement about the attack.
 
Top