SporeBase Forum
January 18, 2018, 11:14:56 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Welcome to SporeBase! Enjoy your stay. If anything bothers you, feel free to contact the SporeBase staff via pm. We will try to get back to you as soon as possible.
 
   Home   Help Arcade Search Shop Articles Links Gallery Login Register Wiki  
Pages: [1] 2 3 ... 5
  Print  
Author Topic: SporeBase hacked  (Read 10827 times)
SporeCheater
Administrator
Officer
*******
Posts: 875
3518.05 Spice

View Inventory
Send Money to SporeCheater


View Profile
« on: October 26, 2010, 08:21:46 AM »

Well at least one of the administrative assistants has been hacked.
Whoever did this used a system that is hard to prevent. They used brute force and it looks like about 400 IPs where used to brake that A.A.'s password and do the damage. We will be trying to fix the damage that has been done.
Sorry,
SporeCheater
« Last Edit: October 26, 2010, 12:02:24 PM by SporeCheater » Logged


Basil!
1st Commendation
Reporter
Lieutenant
**
Posts: 1369
7048.70 Spice

View Inventory
Send Money to Basil!

This is me...


View Profile
« Reply #1 on: October 26, 2010, 08:35:12 AM »

400 computers! Holyshi-! Why would someone put all that effort into hacking our small forum?
Logged



(click to show/hide)
SporeCheater
Administrator
Officer
*******
Posts: 875
3518.05 Spice

View Inventory
Send Money to SporeCheater


View Profile
« Reply #2 on: October 26, 2010, 11:37:26 AM »

I do not know why he would do this, but it looks like it was Jake. I went through the error logs and its seems like Jake was trying to use admin commands to ban someone at around 12am east cost USA time (he lives in Australia). The IP used has been his IP for at least 20 days in which he made posts from. After those commands failed to be used, he started attempting to log onto chaos's account (which is the account that ended up being hacked and did all the damage) and after 2 attempts using his IP, a brute force login attack onto his and other accounts started and used different IP's. He also tried to make us think its not him by banning his own account, but his account is the only one that does not contain all possible bans triggers but just for his account name and email used.
It might not have been 400 computers, but close to 400IPs after this where connected to Chaos's account.
I don't know why Jake did this and the damage might not be repairable.
« Last Edit: October 26, 2010, 12:01:58 PM by SporeCheater » Logged


Slender Man
(Banned by Request)
Captain
*******
Posts: 1889
11393.70 Spice

View Inventory
Send Money to Slender Man

This is clever.


View Profile
« Reply #3 on: October 26, 2010, 12:27:38 PM »

I do not know why he would do this, but it looks like it was Jake. I went through the error logs and its seems like Jake was trying to use admin commands to ban someone at around 12am east cost USA time (he lives in Australia). The IP used has been his IP for at least 20 days in which he made posts from. After those commands failed to be used, he started attempting to log onto chaos's account (which is the account that ended up being hacked and did all the damage) and after 2 attempts using his IP, a brute force login attack onto his and other accounts started and used different IP's. He also tried to make us think its not him by banning his own account, but his account is the only one that does not contain all possible bans triggers but just for his account name and email used.
It might not have been 400 computers, but close to 400IPs after this where connected to Chaos's account.
I don't know why Jake did this and the damage might not be repairable.
what about the backup?

the one that crashed the site?

do you still have that?
Logged

Oh, yeah, I forgot about these, I had them disabled for the longest time...
SporeCheater
Administrator
Officer
*******
Posts: 875
3518.05 Spice

View Inventory
Send Money to SporeCheater


View Profile
« Reply #4 on: October 26, 2010, 12:36:53 PM »

I will have to check and see, I should still have it, but I wonder if I can merge the two somehow... Keep whats left of the new and bring in whats gone from the old.
Logged


Kaos
PM me if you need help with anything
Administrator
Captain
*******
Posts: 1955
6606.30 Spice

View Inventory
Send Money to Kaos

Watching out for everyone.


View Profile
« Reply #5 on: October 26, 2010, 12:49:49 PM »

Would be for the best. I'll look at the logs now, SC.
Logged


Slender Man
(Banned by Request)
Captain
*******
Posts: 1889
11393.70 Spice

View Inventory
Send Money to Slender Man

This is clever.


View Profile
« Reply #6 on: October 26, 2010, 12:53:48 PM »

i say everyone make a backup account.

now.
Logged

Oh, yeah, I forgot about these, I had them disabled for the longest time...
Vagabond6
POLICE OFFICER ~ AXE COP
Global Moderator
Marine Elite
*****
Posts: 445
2059.20 Spice

View Inventory
Send Money to Vagabond6


View Profile
« Reply #7 on: October 26, 2010, 12:58:10 PM »

glad we're back online chief. It may have been Jake or sifer but really it was a lot of effort to go to just to do this to us.

how can you go about reseting the forums so I can have my old account.
Logged


“A thing is a hole in the thing that it is not” - Carl Andre
Kaos
PM me if you need help with anything
Administrator
Captain
*******
Posts: 1955
6606.30 Spice

View Inventory
Send Money to Kaos

Watching out for everyone.


View Profile
« Reply #8 on: October 26, 2010, 01:04:59 PM »

SC, I have some interesting developments. Facebook chat would be good.
Logged


Skilltone
Marine Recruit
**
Posts: 88
197.60 Spice

View Inventory
Send Money to Skilltone

My four wheeler ^


View Profile
« Reply #9 on: October 26, 2010, 01:16:15 PM »

v_v
Logged

Marine Recruit ^_^
Nicmaster
Marine Recruit
**
Posts: 76
489.20 Spice

View Inventory
Send Money to Nicmaster


View Profile
« Reply #10 on: October 26, 2010, 01:27:05 PM »

I do not know why he would do this, but it looks like it was Jake. I went through the error logs and its seems like Jake was trying to use admin commands to ban someone at around 12am east cost USA time (he lives in Australia). The IP used has been his IP for at least 20 days in which he made posts from. After those commands failed to be used, he started attempting to log onto chaos's account (which is the account that ended up being hacked and did all the damage) and after 2 attempts using his IP, a brute force login attack onto his and other accounts started and used different IP's. He also tried to make us think its not him by banning his own account, but his account is the only one that does not contain all possible bans triggers but just for his account name and email used.
It might not have been 400 computers, but close to 400IPs after this where connected to Chaos's account.
I don't know why Jake did this and the damage might not be repairable.

I knew it. In a way. I saw the site hacked  and then I mthought of jake. That crazy little bit.ch.
« Last Edit: October 26, 2010, 01:27:29 PM by Nicmaster » Logged
Amber
MISUSE OF AA PRIVILEGES HERE
Administrative Assistant
Captain
*****
Posts: 1989
1370.90 Spice

View Inventory
Send Money to Amber

Mountain Dew is my life's blood


View Profile
« Reply #11 on: October 26, 2010, 01:28:33 PM »

I don't blame either of them. I am on good terms with both of them, and they would have no reason at all to delete my profile and all my posts as if I never existed. It's got to be someone alien to our community who does not know us.
Logged

Kaos
PM me if you need help with anything
Administrator
Captain
*******
Posts: 1955
6606.30 Spice

View Inventory
Send Money to Kaos

Watching out for everyone.


View Profile
« Reply #12 on: October 26, 2010, 01:29:12 PM »

I don't know anymore, Amber. I don't know.
Logged


Vagabond6
POLICE OFFICER ~ AXE COP
Global Moderator
Marine Elite
*****
Posts: 445
2059.20 Spice

View Inventory
Send Money to Vagabond6


View Profile
« Reply #13 on: October 26, 2010, 01:30:38 PM »

does everyone realise that when even guest accounts were banned, it said **Bloodsh*t** on the error message?
Logged


“A thing is a hole in the thing that it is not” - Carl Andre
Amber
MISUSE OF AA PRIVILEGES HERE
Administrative Assistant
Captain
*****
Posts: 1989
1370.90 Spice

View Inventory
Send Money to Amber

Mountain Dew is my life's blood


View Profile
« Reply #14 on: October 26, 2010, 01:32:14 PM »

I wouldn't be surprised if he or she was the culprit. They took down Spore Addict the same way...
Logged

Pages: [1] 2 3 ... 5
  Print  
 
Jump to:  


+-Today's Birthdays
land9robin (38), slipdancer28 (42), beetauthor5 (41), june7double (37), lunch25kidney (39), gray57store (39), golf2virgo (41), fly0rate (39), winter19women (34), bubble15ship (36), silk56move (40), streampaint72 (39), Ray (218), sofa68carol (39), gander7age (37), coachcrocus89 (37), llama4notify (43), bitecare71 (37), radishdrawer5 (43), tire82detail (41), regretfaucet2 (35), vacuumnews2 (36), canvas4leo (42), pig46chance (36), zebranut4 (43), corn0sponge (36), memorylathe7 (40), santacopy4 (37), squash45napkin (39), pumpcanada8 (39), bubble9mom (41), Mike2 (38), Salabasama (28), AsteriskExpert (45), Calista59 (41)
Powered by EzPortal
Powered by MySQL Powered by PHP Powered by SMF 1.1.21 | SMF © 2015, Simple Machines
SMF customization services by 2by2host.com
Valid XHTML 1.0! Valid CSS!