Jump to content


how is our security?


16 replies to this topic

#1 union-jack

    Young Padawan

  • Members
  • Pip
  • 67 posts
  • Location:birmingham u.k.

Posted 17 June 2006 - 10:08 AM

it seems gfx forums, for some reason, are being targeted by spotty little teenagers and hacked :P
has p2l been an attempted target?
hope the security here is good and we wont fall victim, resources are drying up :wacko:

#2 MK_LAGI

    Jedi In Training

  • Members
  • PipPip
  • 437 posts
  • Location:Cardiff, Wales
  • Interests:p2l :D

Posted 17 June 2006 - 10:19 AM

I'm pretty sure pixel2life has good security. I don't think it had any major problems since I was a member

#3 Donna

    Retired P2L Queen!

  • P2L Staff
  • PipPipPipPip
  • 12,330 posts
  • Gender:Female
  • Location:B.C Canada

Posted 17 June 2006 - 10:25 AM

They try all the time.

The forums being hacked are ones running outdated versions that fail to upgrade or they have the latest versions running insecure vunerable hacks.

Don't worry we're more aware of what's around than the hackers are. :P

#4 DanWilliamson

    P2L Jedi

  • Members
  • PipPipPip
  • 650 posts

Posted 17 June 2006 - 10:53 AM

I remember the time when I was just a newbie here and hardly came on forums so I wasn't registered when the forum got hacked and i'm sure Dan actually did something while as other owners won't Faken will actually give their IP's to the correct authority and then Donna will hurt them.

#5 Mr. Matt

    Moderator

  • P2L Staff
  • PipPipPipPip
  • 1,945 posts
  • Gender:Not Telling

Posted 17 June 2006 - 10:56 AM

yea hacking is a major thing these days, i havnt been around since a major hack here at p2l. If there is anything that will delay the start of my site its making sure the security is good, as that is my main worry.

#6 eVoid

    Young Padawan

  • Members
  • Pip
  • 26 posts
  • Interests:Cars / Webdesign

Posted 17 June 2006 - 12:08 PM

just letting you know there has been a 2.1.6 hack created. in the form of a peal script, it lets the hacker get your password in md5 form. it will take them time to break that but they can now get into 2.1.6.

Only thing i can think of is too change password frequently on the admin accounts, and make them ded long with numbers and so on, so even if they do manage to get the md5 by the time they have it the pass will have changed.

Hope that helps. :)

#7 Donna

    Retired P2L Queen!

  • P2L Staff
  • PipPipPipPip
  • 12,330 posts
  • Gender:Female
  • Location:B.C Canada

Posted 17 June 2006 - 12:13 PM

View PosteVoid, on Jun 17 2006, 10:08 AM, said:

just letting you know there has been a 2.1.6 hack created. in the form of a peal script, it lets the hacker get your password in md5 form. it will take them time to break that but they can now get into 2.1.6.

Only thing i can think of is too change password frequently on the admin accounts, and make them ded long with numbers and so on, so even if they do manage to get the md5 by the time they have it the pass will have changed.

Hope that helps. :)

your a little behind times.

Even though people have been claiming to be hacked on 2.1.6, there are still no confirmed IPB vulnerabilities in that version at this point. Those people are either getting hacked from an unknown vulnerability, through a modification, through an incomplete upgrade to 2.1.6, through some sort of backdoor script that was never cleaned out before they upgraded, or through some completely non-IPB vulnerability, such as an exploit in their actual server software.

The people on 2.1.6 getting hacked BY AND LARGE are getting hacked because of backdoors left when the exploits had not been patched yet.

And this is straight from bfarber and FuSoYa

#8 Hayden

    P2L Jedi

  • Members
  • PipPipPip
  • 716 posts
  • Gender:Male
  • Location:Texas

Posted 17 June 2006 - 04:53 PM

View PostDonna, on Jun 17 2006, 05:12 PM, said:

your a little behind times.

Even though people have been claiming to be hacked on 2.1.6, there are still no confirmed IPB vulnerabilities in that version at this point. Those people are either getting hacked from an unknown vulnerability, through a modification, through an incomplete upgrade to 2.1.6, through some sort of backdoor script that was never cleaned out before they upgraded, or through some completely non-IPB vulnerability, such as an exploit in their actual server software.

The people on 2.1.6 getting hacked BY AND LARGE are getting hacked because of backdoors left when the exploits had not been patched yet.

And this is straight from bfarber and FuSoYa
:)

#9 _*TySoft_*

  • Guests

Posted 17 June 2006 - 06:13 PM

There are other server side security measures in place beyond just keeping software up to date, of course often none of that does any good if P2L runs exploitable code.

#10 syntex

    P2L Staff

  • P2L Staff
  • PipPipPipPip
  • 3,126 posts
  • Gender:Male
  • Location:New Zealand
  • Interests:Poetry, Photography, Music, My Band, Guitar and out of my mind experiences.

Posted 17 June 2006 - 07:01 PM

Ill just pwn any lil hackers that come our way :)

#11 Faken

    Pimpmaster G

  • Admin
  • 5,917 posts
  • Gender:Male
  • Location:Montreal, Canada

Posted 17 June 2006 - 09:50 PM

Ok I just checked the locks on the cages that house the hamsters that run in that wheel that powers the server. Looks like we're secure!

Dan

#12 NGPixel

    Senior Programmer

  • P2L Staff
  • PipPipPipPip
  • 1,410 posts
  • Gender:Male
  • Location:Montreal, Canada
  • Interests:Web Design : Coding : Animation

Posted 17 June 2006 - 09:57 PM

even if they get the md5 password, there's 99,999999999999x1000% chance they won't ever find it.

#13 Tirus

    P2L Jedi

  • Members
  • PipPipPip
  • 764 posts
  • Gender:Male
  • Location:Montreal, Canada
  • Interests:Web Design, Programming, Music, Martial Arts

Posted 18 June 2006 - 01:26 PM

View PostFaken, on Jun 17 2006, 10:49 PM, said:

Ok I just checked the locks on the cages that house the hamsters that run in that wheel that powers the server. Looks like we're secure!

Dan

lmao, do they have enough food Dan?

#14 eVoid

    Young Padawan

  • Members
  • Pip
  • 26 posts
  • Interests:Cars / Webdesign

Posted 18 June 2006 - 05:17 PM

View PostDonna, on Jun 17 2006, 12:12 PM, said:

your a little behind times.

bit harsh that innit, i was only letting people know :D

#15 Donna

    Retired P2L Queen!

  • P2L Staff
  • PipPipPipPip
  • 12,330 posts
  • Gender:Female
  • Location:B.C Canada

Posted 18 June 2006 - 05:22 PM

View PosteVoid, on Jun 18 2006, 03:16 PM, said:

View PostDonna, on Jun 17 2006, 12:12 PM, said:


your a little behind times.

bit harsh that innit, i was only letting people know :D


It's not harsh sheesh, lucky I never wrote BOO you might of passed out lol

#16 Jem

    Young Padawan

  • Members
  • Pip
  • 93 posts
  • Location:England
  • Interests:Photography, design & developing, walking, cycling, reading.

Posted 19 June 2006 - 04:20 AM

Hackers != script kiddies. Hackers have talent. Spotty little boys who sit behind their computer screen 24/7 redistributing & using other people's code/exploits to gain access to forums, websites, etc.. aren't hackers.

#17 eVoid

    Young Padawan

  • Members
  • Pip
  • 26 posts
  • Interests:Cars / Webdesign

Posted 19 June 2006 - 10:36 AM

View PostDonna, on Jun 18 2006, 05:22 PM, said:

BOO

ahhhhhhhhhhhhhhhhh :o










lol ;)





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users