Remember me
Lost Password Register


It looks like spammers...
11-18-2008, 06:26 PM,
#5
Re: It looks like spammers...
Well it has been quite the fun day.  Shortly after my last posting I noticed the advertising that DetectorGuy was talking about.  This was definitely a software injection attack.  It took me a couple hours to clean up the advertising from the forum.  Then I began to do some forensic work to figure out how the evildoer managed to get in.  I discovered that he used a vulnerability in the Coppermine gallery software to rewrite some of the SMF forum files.  Sneaky bastard.  They used this same vulnerability to patch files on the wiscuba site as well -- although that site wasn't displaying ads.  I upgraded the Coppermine gallery software to the latest version and I cleaned out the code changes the script kiddie made.  Hopefully he is gone.  I may need to install some extra security safeguards to ensure he was fully removed.
--Jason
Reply


Messages In This Thread
It looks like spammers... - by DetectorGuy - 11-18-2008, 08:29 AM
Re: It looks like spammers... - by tullibee - 11-18-2008, 09:51 AM
Re: It looks like spammers... - by jasondbaker - 11-18-2008, 11:39 AM
Re: It looks like spammers... - by jasondbaker - 11-18-2008, 06:26 PM

Forum Jump:


Users browsing this thread: 5 Guest(s)