Jump to content

DCP Forum Problem


JohnD

Recommended Posts

Our forum was exploited this evening by a Russian hacker that has been attacking Invision Power Board forums around the world. The nature of the exploit was a re-direction to a site that then attempted to load a WMF file that was executed by the local machine - normally those running Microsoft's Internet Explorer.

Invision has released a patch to their software to resolve the exploit and we have applied that patch to the system. In addition, we have isolated and removed the code that was causing the re-direction - so you should not have any further problems with this issue. We do our best to keep the site updated with the most recent versions of the software and security patches - as they're made available from the developer. IPB is one of the more popular forum applications in the market - so it is a natural target for those that are trying to cause problems.

The feature that permits the upload of avatars and picture files is one of the most common ways that these sorts of exploits are accomplished. So, for that reason - I am disabling the ability to upload files/graphics to the system. We're going to look for ways to restore the feature - but in a more secure fashion. Hopefully, we'll have that solution in the near term .... however, the security of the DCP forums and your systems will be our first priority.

I'm sorry for the inconvenience this may have caused. PLEASE be sure to keep your virus software/definitions up-to-date .... and we suggest the use of Mozilla FireFox as a web browser over Internet Explorer.

Thank you for your patience and support.

-john

Link to comment
Share on other sites

Glad you caught it early, John. Could've been really messy. :blink:

Link to comment
Share on other sites

Thanks for the prompt addressing of the problem! :)

Link to comment
Share on other sites

imagine it had been finals week!

Link to comment
Share on other sites

imagine it had been finals week!

DCA? :blink:

:P

I'd also like to thank some other folks who got word around to those they knew about staying off for a little bit. Probably helped save some computers from going to the big motherboard in the sky.

Link to comment
Share on other sites

that could caused a really ugly mess. Good to know things are still okay :)

Link to comment
Share on other sites

Thanks for the announcement. McAfee caught the exploit when I browsed to DCP last night and told me I had a trojan that it killed before it got to me. It scared the #### out of me, I thought my system was a goner. Thanks for letting me know what happened. Fortunately I was on Firefox, not IE! Firefox actually popped up a download to download the WMF file, but it never showed the OK button, just greyed out, so I never got the exploit downloaded. McAfee must have been blocking it from coming down. I think even with Firefox, it looks like you would not have been totally safe without an anti-virus blocking it! Anyway, I also cleared out my browser cache totally and erased all those files from the disk, just to be sure.

If DCP is interested, I still have the history.dat file in Firefox, I kept it with the info of where the browser tried to go via the exploit, if you need it for tracing the criminals.

Link to comment
Share on other sites

Thanks for the announcement. McAfee caught the exploit when I browsed to DCP last night and told me I had a trojan that it killed before it got to me. It scared the #### out of me, I thought my system was a goner. Thanks for letting me know what happened. Fortunately I was on Firefox, not IE! Firefox actually popped up a download to download the WMF file, but it never showed the OK button, just greyed out, so I never got the exploit downloaded. McAfee must have been blocking it from coming down. I think even with Firefox, it looks like you would not have been totally safe without an anti-virus blocking it! Anyway, I also cleared out my browser cache totally and erased all those files from the disk, just to be sure.

If DCP is interested, I still have the history.dat file in Firefox, I kept it with the info of where the browser tried to go via the exploit, if you need it for tracing the criminals.

Norton also caught it!

You MAC people are smiling today, aren't you? I can feel it! :)

Link to comment
Share on other sites

You MAC people are smiling today, aren't you? I can feel it! :)

:lol: b**bs b**bs b**bs

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...