Page 1 of 1

B33 site appears hacked

Posted: Dec 27th, '10, 11:14
by IRGuy
Capt Pat...

I hope posting this isn't out of line since we are all related here, but it appears the B33 site has been hacked. Now when you go there all you see is the message "Fatal Error ownz you !" in the upper left corner of the screen. I think this occurred either on Christmas day or the day after.
Hopefully David can get this worked out.

Maybe you should take this as a warning that this site might also have someone considering hacking it?

Posted: Dec 27th, '10, 11:46
by CaptPatrick
Thanks for the heads up, Frank. Always a possibility...

I did some digging around and that hack seems be common on Windows iss server systems. We're running on a Linux os system, so hopefully we aren't as vulnerable.

Hopefully David's web server does daily backups and can get him back up without much loss. His whole web server, (infinology.net), is getting a "Failure To Connect To Web Server" message. It could be that the server as a whole was attacked rather than his site specifically.

The security of the world and that of the Internet is becoming increasingly intertwined. The whole "civilized world" is becoming a big turd...

Posted: Dec 27th, '10, 12:30
by CaptPatrick
One other thing....

It could be that David's site itself was what was hacked through a weak password that he might be using. If he's using one that can be easily figured out, the door's open to any teeny bopper that wants in. No webmaster or server admin should be using a password that contains less than 10 alphnumeric characters and mixed upper and lower case.

He might be interested in reviewing some information at KeePass Information Center.

Posted: Dec 27th, '10, 17:00
by dougl33
Frank,

I think it may have been a short term thing. I never experienced a problem and the site's working fine right now.

Posted: Dec 28th, '10, 09:43
by IRGuy
Doug...

I emptied my temp internet files, rebooted, etc, and still get the hacker message. For me at least the site is still unavailable.

Posted: Dec 28th, '10, 09:55
by CaptPatrick
Same here......

Posted: Dec 28th, '10, 10:36
by lobsta1
There has not been any posting activity for two days. I have not gotten the hacker message & just made a test posting over there.
Al

This is the URL I use.
http://www.bertram33.com/forum/default.asp

Posted: Dec 28th, '10, 11:25
by IRGuy
Al...

Thanks for your response!

Not sure what is going on...

I have always used http://bertram33.com/ to log on, and with this I get the hacker message.

When I use the address you posted above I can get through...

How long have you been using this address? And where did you get it? This is the first time I have ever seen it!

Posted: Dec 28th, '10, 11:32
by lobsta1
Frank,
I've been using that since the second time I signed in. Just like on here I come in with this link.
Al

http://bertram31.com/newbb/index.php?

Posted: Dec 28th, '10, 11:48
by dougl33
Strange. When I got to work today I got the same message Frank got. I use Firefox at home and IE8 at work. Not sure if that made a difference.

Posted: Dec 29th, '10, 03:24
by coolair
so question Capt.
does that mean you run linux on your computer instead of windows? sorry i am ok with hardware but my computer software knowledge is limilted

Posted: Dec 29th, '10, 06:59
by CaptPatrick
Nope, Windows here... The company that handles our web hosting is in Maryland & runs Linux on the server that our files are on.

Posted: Dec 29th, '10, 09:09
by dougl33
I texted David last night. He's on vacation until the end of the week.

Posted: Jan 2nd, '11, 17:26
by dougl33
FYI:

The 33 site is back up and running.