1 (edited by rufnex 2005-07-21 15:49)

Topic: Hacked with PunBB 1.2.6

Hello,

i've upgraded my PunBB to the latest version 1.2.6 but the last weekend i've been hacked. So is ther any new security issue? The Hacker group had all of my forums deleted. They called "Hacked By Rain | Team" and "exodia & Chimera".

I don't know how this people are hacked the new PunBB, but i hope you will find the leak. For now i'm a little confused .. ?

greetings
Rufnex

Re: Hacked with PunBB 1.2.6

Are you sure you updated it properly? Because searching for ""Hacked By Rain | Team" + punbb" gives me textpattern.de's forum, which was 1.2.5 and is currently offline

Re: Hacked with PunBB 1.2.6

and are you sure it wasn't just the 1.2.5 you updated to (as the announcements has been very similar at the top of this forum for a while)

4 (edited by rufnex 2005-07-27 20:35)

Re: Hacked with PunBB 1.2.6

Oki .. you are right .. i can remember i'Ve updated the reconomend Update to 1.2.5. So i thought it was secure and i was going to holiday .. the hacking was between the release of 1.2.6 and my holiday ... shit happens.

so you think the 1.2.6 is now secure .. ;o) what a about a security alert mailinglist?

thx
Rufnex

Re: Hacked with PunBB 1.2.6

rufnex wrote:

what a about a security alert mailinglist?

An alert mailinglist was discussed in this thread, but I think the idea was dismissed based on the assertion that PHP is not made for sending numbers of mails.

6

Re: Hacked with PunBB 1.2.6

The answer to that would seem to be a conventional separate mailing list which people have to subscribe to. The downside is that somebody (probably of Swedish origin) would have to maintain it.

Re: Hacked with PunBB 1.2.6

And I don't want a proper mailing list because then people would have two different places to look for help. Some kind of notification list is planned. I just need to write the code for it.

"Programming is like sex: one mistake and you have to support it for the rest of your life."

Re: Hacked with PunBB 1.2.6

What about a RSS - Feed for the security topic?