Jump to content


Photo

Phpbb Account Hacked


  • Please log in to reply
17 replies to this topic

#1 Honeymoon

Honeymoon

    New To The Neighborhood

  • Members
  • Pip
  • 6 posts

Posted 31 March 2007 - 04:32 PM

I host a phpBB forum on my site and recently someone accessed the account of one of my members without permission. The IP was logged by phpBB and also by my site logs from TCH.

It seems a password was guessed or hacked. Obviously I am unhappy about this. Can I take any action against the person responsible?

#2 TCH-Andy

TCH-Andy

    Immediate Family

  • Members
  • PipPipPipPip
  • 4,699 posts

Posted 31 March 2007 - 04:42 PM

welcome to the forum Honeymoon :)

It depends if you can find out who they really are. for example if that is their real IP address, and where in the world they are.

Number one priority, to be honest, is to ensure your scripts are fully uptodate, and passwords secure.
Andy Beckett
-----------------
Part of the TCH family since the beginnings of time.

#3 Honeymoon

Honeymoon

    New To The Neighborhood

  • Members
  • Pip
  • 6 posts

Posted 31 March 2007 - 04:53 PM

welcome to the forum Honeymoon :)

It depends if you can find out who they really are. for example if that is their real IP address, and where in the world they are.

Number one priority, to be honest, is to ensure your scripts are fully uptodate, and passwords secure.


Thanks for the welcome Andy. I totally agree regarding the number one priority. My own passwords etc are secure and I have advised my forum members to have secure passwords. That is all I can do.

I have an IP which I believe to be real. It is a broadband provider in the UK, where I myself live, and unlikely to be a proxy. Private areas of the forum were accessed and private information from them was retrieved by the hacker.

#4 TCH-Bruce

TCH-Bruce

    Volunteer Moderator

  • Members
  • PipPipPipPip
  • 19,960 posts

Posted 31 March 2007 - 04:54 PM

Welcome to the forums Honeymoon :)

Bruce Richards
Forum Moderator
TotalChoice Hosting, Inc.
Webhosting by Total Choice Web Hosting - General Support Forum

I am a Forum Moderator. While I can assist in answering most of your hosting related questions, I am unable to answer questions about specifics relating to your account such as billing and server related issues. Should you need assistance in these areas, please contact our Help Desk or our many other options. Another good place to find answers is with our help pages, tutorials and movie tutorials.


#5 TCH-Andy

TCH-Andy

    Immediate Family

  • Members
  • PipPipPipPip
  • 4,699 posts

Posted 31 March 2007 - 05:11 PM

Since it's all in the UK you could potentially do something - yes.

You can contact the police, computer crime unit, who deal with hacking.
Andy Beckett
-----------------
Part of the TCH family since the beginnings of time.

#6 Honeymoon

Honeymoon

    New To The Neighborhood

  • Members
  • Pip
  • 6 posts

Posted 31 March 2007 - 05:23 PM

Since it's all in the UK you could potentially do something - yes.

You can contact the police, computer crime unit, who deal with hacking.


Thanks again Andy.

And thanks to Bruce for the welcome.

#7 nortk

nortk

    Immediate Family

  • Members
  • PipPipPipPip
  • 511 posts

Posted 31 March 2007 - 07:09 PM

And just to reiterate...aside from making sure passwords are secure, you really need to keep up with any updates to phpbb as soon as they are released. phpbb seems to be a common target for hacks. I believe that when you log in as admin on phpbb, it will tell you if there are any updates available at the bottom of the page.

Good luck getting to the bottom of this.
Time flies like the wind.
Fruitflies like bananas.

#8 Head Guru

Head Guru

    Bill Kish Head Guru

  • Admins
  • PipPipPipPip
  • 6,798 posts

Posted 31 March 2007 - 09:42 PM

Damn brits!

Bill Kish

Head Cook and Bottle Washer

If you need help with your account or have any questions, please feel free to contact me using any of the contact methods below.  I can be reached 24 hours a day seven days per week.

Office :: 800-930-0485 x211
Mobile :: 248-632-3243

email: bill(at)totalchoicehosting.com

Instant Messenger -
AOL Instant Messenger: tchgurubill
Yahoo Messenger : tchgurubill
MSN Messenger : tchgurubill@hotmail.com

Thank you for your support and continued business


#9 TCH-Carl

TCH-Carl

    Technical Support

  • Staff
  • PipPipPipPip
  • 1,180 posts

Posted 01 April 2007 - 02:01 AM

:)
Carl Noonan
Techical Support Manager
TotalChoice Hosting, Inc.
http://www.totalchoicehosting.com

TCH Help Desk .. || .. TCH Blog

Posted Image

#10 TCH-Andy

TCH-Andy

    Immediate Family

  • Members
  • PipPipPipPip
  • 4,699 posts

Posted 01 April 2007 - 02:56 AM

Damn brits!

:)
just be thankful we are this side the pond and not that ;)
Andy Beckett
-----------------
Part of the TCH family since the beginnings of time.

#11 TCH-Thomas

TCH-Thomas

    Volunteer Moderator

  • Members
  • PipPipPipPip
  • 14,908 posts

Posted 01 April 2007 - 04:02 AM

Welcome to the forum, Honeymoon. :)

Thomas Jikrantz
Forum Moderator
TotalChoice Hosting, Inc.

Any links or suggestions for third party software/sites should be used at your own risk. My opinions and recommendations are not necessary those of TCH and TCH is not responsible.

As a Forum Moderator I can assist in answering many of your hosting related questions. However, I am unable to answer questions about specifics relating to your account such as billing and server related issues. Should you need assistance in these areas, please contact our Help Desk or our many other options. Another good place to find answers is with our help pages, tutorials and movie tutorials.
Web Hosting by Total Choice Web Hosting - 24/7 Help Desk


#12 TCH-Don

TCH-Don

    Immediate Family

  • Members
  • PipPipPipPip
  • 11,642 posts

Posted 01 April 2007 - 01:16 PM

Welcome to the forums Honeymoon :)

#13 Smitty

Smitty
  • Members
  • 1 posts

Posted 19 June 2007 - 01:33 PM

;)

Want to Give a Big Thank You To TCH-Andy :( We Were Hacked Through One of Our PHP Boards..in Fact They Hacked Three of Them!!!!! We Now Use The SMF provided in Fantisico.....

#14 TCH-Thomas

TCH-Thomas

    Volunteer Moderator

  • Members
  • PipPipPipPip
  • 14,908 posts

Posted 19 June 2007 - 01:38 PM

Welcome to the forum, Smitty. :(

Im glad to hear that your problems are solved. Lets hope the hackers stays out now.

Thomas Jikrantz
Forum Moderator
TotalChoice Hosting, Inc.

Any links or suggestions for third party software/sites should be used at your own risk. My opinions and recommendations are not necessary those of TCH and TCH is not responsible.

As a Forum Moderator I can assist in answering many of your hosting related questions. However, I am unable to answer questions about specifics relating to your account such as billing and server related issues. Should you need assistance in these areas, please contact our Help Desk or our many other options. Another good place to find answers is with our help pages, tutorials and movie tutorials.
Web Hosting by Total Choice Web Hosting - 24/7 Help Desk


#15 TCH-Andy

TCH-Andy

    Immediate Family

  • Members
  • PipPipPipPip
  • 4,699 posts

Posted 19 June 2007 - 02:39 PM

Welcome to the forums Smitty :(

You're welcome ;) I really don't like hackers ;) keep the SMF uptodate at the recent version and you should be fine though :)
Andy Beckett
-----------------
Part of the TCH family since the beginnings of time.

#16 TCH-Bruce

TCH-Bruce

    Volunteer Moderator

  • Members
  • PipPipPipPip
  • 19,960 posts

Posted 19 June 2007 - 02:42 PM

Welcome to the forums Smitty ;)

Good job Andy! :(

Bruce Richards
Forum Moderator
TotalChoice Hosting, Inc.
Webhosting by Total Choice Web Hosting - General Support Forum

I am a Forum Moderator. While I can assist in answering most of your hosting related questions, I am unable to answer questions about specifics relating to your account such as billing and server related issues. Should you need assistance in these areas, please contact our Help Desk or our many other options. Another good place to find answers is with our help pages, tutorials and movie tutorials.


#17 TCH-Don

TCH-Don

    Immediate Family

  • Members
  • PipPipPipPip
  • 11,642 posts

Posted 19 June 2007 - 06:26 PM

Welcome to the forum, Smitty ;)
Well done Andy :(

#18 carbonize

carbonize

    Immediate Family

  • Members
  • PipPipPipPip
  • 828 posts

Posted 20 June 2007 - 04:38 AM

SMF, like a lot of big forum scripts, limits the amount of failed log ins an IP can make before banning them. I believe phpBB 3 (Olympus) has this feature but is still at RC1. Most now also let you set a security level on the password they put in to make sure they are secure.
Carbonize
Lazarus Guestbook
A SPADE IS A SPADE - I'm here to help people not to win friends or gain popularity.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users