HAXORED!!!

HAXORED!!!

Postby Steve002 on Thu Jun 10, 2004 3:32 pm

When I went to www.sahoops.net, I noticed that big ugly skull thing. I wonder why he hasn't hacked the boards as well. Anyhow, just a heads up in case some people haven't noticed it yet.<br>
<br>
-Steve <p></p><i></i>
Steve002

 

Re: HAXORED!!!

Postby Blondie on Sat Jun 12, 2004 1:46 am

Thanks steve - Drew has redirected everything to the board for now. <p></p><i></i>
Image
User avatar
Blondie
ClubSpurs Diva
 
Posts: 8997
Joined: Wed May 15, 2002 2:53 am
Location: Alamo City Baby!!!

Re: HAXORED!!!

Postby MadeFromDust on Fri Jun 25, 2004 12:21 am

What's the news? <p></p><i></i>
MadeFromDust

 

Re: HAXORED!!!

Postby Blondie on Wed Jun 30, 2004 10:22 pm

We are still working on getting everything back up - drew has been really busy...... <p></p><i></i>
Image
User avatar
Blondie
ClubSpurs Diva
 
Posts: 8997
Joined: Wed May 15, 2002 2:53 am
Location: Alamo City Baby!!!

Re: HAXORED!!!

Postby MadeFromDust on Thu Jul 01, 2004 2:30 am

Any insight into how the Web server was h4x0r3rd? Do you have logs? It could be valuable for future countermeasures. <p></p><i></i>
MadeFromDust

 

Re: HAXORED!!!

Postby Blondie on Fri Jul 02, 2004 2:03 am

You would have to ask Drew. I'm not sure he even knows. Maybe you could help us in these matters...... <p></p><i></i>
Image
User avatar
Blondie
ClubSpurs Diva
 
Posts: 8997
Joined: Wed May 15, 2002 2:53 am
Location: Alamo City Baby!!!

Re: HAXORED!!!

Postby MadeFromDust on Fri Jul 02, 2004 8:04 am

First thing I would do is look at the Web server logs for any clues to what was going on prior to discovery of the Web site hack. I would look for suspicious port probes, GET requests which try to access the Web server's local filesystem. I would check to see if any unnecessary and vulnerable scripts are accessible through the Web server. I would check known Web server vulnerabilities to see if it had been sufficiently patched, whether the server was Apache, IIS, or whatever. I would browse through BugTraq and NTBugTraq mailing lists to look for similar activity noticed/discussed by subscribers. I would look up identifiers for the cr4x0r to see how many other Web servers they vandalized and how they did it. A lot of times, they like to brag about it amongst their evil peers. I would check with the Web server ISP to see if they have any info from their router logs. I hope some of these suggestions help! <p></p><i></i>
MadeFromDust

 


Return to Ask the Administrators

Who is online

Users browsing this forum: No registered users and 1 guest

cron
Advertise Here | Privacy Policy | ©2008 Sculu Sports. Come Strong.