Home | Community | Message Board

Cannabis Seeds Zamnesia
This site includes paid links. Please support our sponsors.


Welcome to the Shroomery Message Board! You are experiencing a small sample of what the site has to offer. Please login or register to post messages and view our exclusive members-only content. You'll gain access to additional forums, file attachments, board customizations, encrypted private messages, and much more!

Jump to first unread post Pages: | 1 | 2 | 3 |  [ show all ]
Re: The Recent Bulletin Board Exploit [Re: ]
    #3008378 -

Ythan, the threads can be tied back to the original poster by looking at the 're:' line of the second post...

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: ]
    #3008387 -

I tried to change my password, but cannot access the edit page. Any idea's as to why? Thank you.

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: ]
    #3008404 -

I attempted to change my password. I went to my home, and clicked the edit button next to Personal information, email, password, etc. It logged me out and returned me to the message boards main site. I have no idea how I'm supposed to change my password if it continues to do that. My apologies if this to off topic for this thread, but I thought I should bring it to someone's attention.

Edit: Oops! Didn't see the above post.

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: ]
    #3008437 -

It is not currently possible to change ones password since the files needed for this are currently disabled for security reasons until we know more.

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: Anno]
    #3008453 -

Very understandable considering the current situation. Thanks for the reply.

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: ]
    #3008769 -

i love my community!
:thumbup:


--------------------
lucidal expansion

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: shirley knott]
    #3009383 -

shirley knott said:
fortyounces2freedom said:
great job Ythan & Vampppppp! :sun:



:blowjob: :wink:



lol! i know Vamp IRL!!


--------------------
:pacman: - - - -  :pill: :mushroom2: :pill2: :mushroom2: :regularshroom: :mushroomgrow: :pill: :pill2: :mushroom2: :poison:

:sun::heart::sun:

tiny_rabid_birds said:
"your avatar is dirty."

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: 40oz]
    #3010002 -

you :blowme: vamp in real life? wow, that's quite an admission  :thumbup:


--------------------
buh

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: shirley knott]
    #3014933 -

:lol:
bastard!/bitch! whichever may apply :wink:


--------------------
:pacman: - - - -  :pill: :mushroom2: :pill2: :mushroom2: :regularshroom: :mushroomgrow: :pill: :pill2: :mushroom2: :poison:

:sun::heart::sun:

tiny_rabid_birds said:
"your avatar is dirty."

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: 40oz]
    #3021840 -

On further investigation it looks as if the exploit was created due to geokills custom name color..






















:laugh:


--------------------
./configure --without-sanity --without-logic --without-regret
01100110011101010110001101101011011110010110111101110101
jaded = safe != happy
Were not familly, we are the shroomery, and to some thats thicker than blood.

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: Vampire999]
    #3022022 -



...




--------------------

--------------------
┼ ··∙   long live the shroomery  ∙·· ┼
...╬π╥ ╥π╬...

Extras: Filter Print Post Top
h0ky h4ck3rz b4tm4n!!!!!!!!!!!!!!!!!!!222 [Re: geokills]
    #3023964 -

By changing new username id's to the old ones it should fix the old post problem, may cause a "new post problem" if they've posted before you reverted the id. Please force people to change thier passwords. It is a risk.


--------------------
The DJ's took pills to stay awake and play for seven days.

Extras: Filter Print Post Top
Re: h0ky h4ck3rz b4tm4n!!!!!!!!!!!!!!!!!!!222 [Re: tak]
    #3024427 -

This would be easy to do if people actually kept their email addresses up to date..

Obviously we cant just have them login then be forced to change their pass.. if someone had their password that would make hrmm a lack of sense. It would just be a game of chance that the right person loged in first.

If we just clear them out and force all new passwords to be recovered via email 30% of the current users would never get them because they dont keep their information up to date.

Also from the time that the attack started to the time I closed the server down was about 10 minutes.. With the size that our DB is currently you cant even use the built in board backup feature. It times out long before it could spit out the file. So the chances this person pulled anything is slim to none. You cant view passwords from the admin feature as that they are all stored MD5.


--------------------
./configure --without-sanity --without-logic --without-regret
01100110011101010110001101101011011110010110111101110101
jaded = safe != happy
Were not familly, we are the shroomery, and to some thats thicker than blood.

Extras: Filter Print Post Top
Re: h0ky h4ck3rz b4tm4n!!!!!!!!!!!!!!!!!!!222 [Re: Vampire999]
    #3027508 -

Anything to do with this? Or what? :shrug:


--------------------
Every Animal Is Someone 🌱 watchdominion.org

Extras: Filter Print Post Top
Re: h0ky h4ck3rz b4tm4n!!!!!!!!!!!!!!!!!!!222 [Re: ivi]
    #3027516 -

No. It was a loophole in the forum software.

Extras: Filter Print Post Top
Re: h0ky h4ck3rz b4tm4n!!!!!!!!!!!!!!!!!!!222 [Re: ]
    #3031774 -

Did you get an IP address?

Extras: Filter Print Post Top
Re: h0ky h4ck3rz b4tm4n!!!!!!!!!!!!!!!!!!!222 [Re: ]
    #3032401 -

if he logged into couldnt you check what ip address he logged in under then some how trace back him back to his isp?

Extras: Filter Print Post Top
Re: h0ky h4ck3rz b4tm4n!!!!!!!!!!!!!!!!!!!222 [Re: guri]
    #3034243 -

guri said:
if he logged into couldnt you check what ip address he logged in under then some how trace back him back to his isp?



We got alot more than the IP :smile:

Extras: Filter Print Post Top
Re: h0ky h4ck3rz b4tm4n!!!!!!!!!!!!!!!!!!!222 [Re: Thor]
    #3040409 -

like his mothers foot size? cause im interested.


--------------------
The DJ's took pills to stay awake and play for seven days.

Extras: Filter Print Post Top
Re: The Recent Bulletin Board Exploit [Re: ]
    #3042142 -

Good job, people! I hope you can get to the bottom of this to prevent other script kiddies from messing up our beloved 'Shroomery. :thumbup:

Extras: Filter Print Post Top
Jump to top Pages: | 1 | 2 | 3 |  [ show all ]


Similar ThreadsPosterViewsRepliesLast post
* Bulletin Board Upgrade 3DSHROOM 1,971 17 06/19/03 11:50 PM
by matts
* Re: Error message from bulletin board mjshroomer 1,339 6 07/26/99 06:38 PM
by mjshroomer
* Bulletin Board upgrade
( 1 2 3 all )
3DSHROOM 7,170 51 12/10/03 05:20 AM
by Asante
* We're a Big Board!
( 1 2 all )
YthanA 2,776 27 09/08/04 01:15 AM
by felix
* Problem with the board? RoadkillM 702 3 01/23/05 06:16 PM
by Thor
* None or you give a shit about this board
( 1 2 all )
dimitri211 5,328 36 07/24/01 06:05 PM
by lichen
* Re: This new board sucks Anonymous 3,516 15 02/10/98 01:53 PM
by Anonymous
* Big-boards.com? z@z.com 687 2 02/04/05 03:51 PM
by z@z.com

Extra information
You cannot start new topics / You cannot reply to topics
HTML is disabled / BBCode is enabled
Moderator: Ythan, Thor, Seuss, geokills
6,267 topic views. 0 members, 14 guests and 2 web crawlers are browsing this forum.
[ Show Images Only | Sort by Score | Print Topic ]
Search this thread:

Copyright 1997-2026 Mind Media. Some rights reserved.

Generated in 0.033 seconds spending 0.009 seconds on 18 queries.