DriftNation got PWN3D

I was trying to go logon to the DriftNation forum when i found this…

http://www.driftnation.com

It appears they have been pWn3d. :frowning:

That’s harsh.

errr yeah…

the webmaster is in Cali…

It’ll be back up shortly

Hax0r3d!!
What a shitty hosting service…
or you guys used a crappy password :frowning:

If I was gonna hack a site I would at least put something funny on the main page… Thats lame.

Clearly gay town.

Fags.

It looks like it was “hacked” by an automated script…
even lamer
I’d suggest switching hosting if it wasn’t their own fault.

all i have to say is… script.

My site got the boot as well :frowning:

I heard on the radio, that there is a worm going around that searches through google, for message boards with a vaunrable version of it, and hacks it automatically.

This site is defaced!!!


NeverEverNoSanity WebWorm generation 5.

hrmm… I wonder what sites are vunerable…

http://news.zdnet.com/2100-1009_22-5499725.html

yup, our site has been hit by it a few times. We’re not sure what happened exactly, but the admin figures we were hacked through our old database, which was still up as an archive.

Directly from a post at phpbb.com:

I’m bumping this as a further reminder to all users to UPGRADE TO 2.0.11 if they haven’t already. If you visit or know of a phpBB board running versions below 2.0.11 please contact the admins/moderators of that board and tell them of 2.0.11.

Today another wonderful experiment in how to do harm seems to have been unleashed, the Santy.A worm. This little perl script makes use of the highlighting exploit to deface sites running phpBB pre-2.0.11.

In the past I’ve been against the inclusion of any ACP based “new version” system for various reasons; bandwidth here and most of all privacy issues (and how some will claim we’re using it to “track” installations). This situation is however leading to a change in stance on this.

However that won’t help the current situation, nor I suspect will it impact a majority of the current 2.0.x userbase (who would need to upgrade to get any such funtionality!). We still get posts from users running versions of phpBB released two years ago … it’s essential that admins/owners of boards take some responsbility for the software they use. So again, if you haven’t upgraded, or know of a board that hasn’t, please do the right thing.

Take it easy guys.

Admin’s… DO it!

I’ve patched a few boards already and yes your boards are vunerable.

i am sure we will get hit…lol

ANDREW!!! you arent in school right now dude… DOO EET

I asked DRE to do it about a week ago, hes our webmaster…

I suppose I can do it tommorow, I know how, but I don’t wanna break stuff. :slight_smile:

  • Andrew, signing in from TM headquarters.

^^^

eeeeeeewwww bob and andrew are together at 2am on a tuesday night… gross

So was Pavel actually…