View Full Version : The Forum Was Compromised, But We Are 100% Back Online!
Mr. Hasselhoff
03-18-2009, 05:30 PM
As some of you may have noticed, the forum has been down for the majority of today. The reason being, is because one of the administrator accounts was compromised, and the forum was hacked. I have tracked down the hacker, and everything is now fine. The hacker sent out an e-mail to everyone advertising the hacker's site. The only down side is that I had to revert the forum to a 2-day old backup of the database. The administrators are currently setting up some more proactive defenses to prevent such attacks in the near future.
For your protection, you should change your password on ZomgStuff. If you wish, you can just add a number of several special characters at the end of your password, but changing the password altogether is recommended. If you used your password on any other sites, I recommend you change your password on the other sites (as a rule, you shouldn't use the same password on multiple sites). To change your password, follow the following link: Change Reset (http://forum.zomgstuff.net/profile.php?do=editpassword).
Do not worry, your password was not compromised, but your password hash may or may not have been. vBulletin hashes your password multiple times, making it mathimatically impossible to crack, but it is still possible to bruteforce a wordlist and compare the hash to that of yours (although vBulletin uses a special salt technique, which makes this even harder, if not impossible). The hacker would not only need to know the technique used by vBulletin to encrypt passwords, but to know your 3 character salt, which is treated like a key for a cypher, and is randomly generated for each user upon registartion
In all, the site is fine now, we are running on a 2-day old database backup, and we highly recommend you change your password.
Thank you, and we sincerely apologize about this inconvenience.
Edit:
It's come to my attention that certain avatars have become corrupted within the database, and some of you may need to reupload your avatars.
HalfL
03-18-2009, 06:07 PM
That was a traumatic experience, glad to see everything back up. that's honestly really fucking stupid of the perpetrator, hacking a pretty big forum to advertise your site, hahaha.
Mr. Hasselhoff
03-18-2009, 06:07 PM
That was a traumatic experience, glad to see everything back up. that's honestly really fucking stupid, hacking a pretty big forum to advertise your site, hahaha.
I wouldn't say we're big, but we're not small either.
HalfL
03-18-2009, 06:21 PM
That was a traumatic experience, glad to see everything back up. that's honestly really fucking stupid, hacking a pretty big forum to advertise your site, hahaha.
I wouldn't say we're big, but we're not small either.
oh you're too modest
Well, 10,000 something members is pretty big, but it seems like not a lot of people are on at one time, which also seems to be a problem with a lot of forums, people registering but not coming back.
Mr. Hasselhoff
03-18-2009, 06:23 PM
That was a traumatic experience, glad to see everything back up. that's honestly really fucking stupid, hacking a pretty big forum to advertise your site, hahaha.
I wouldn't say we're big, but we're not small either.
oh you're too modest
Well, 10,000 something members is pretty big, but it seems like not a lot of people are on at one time, which also seems to be a problem with a lot of forums, people registering but not coming back.
There have been over 15,000 registrations, but we've pruned members before.
vladh.net
03-18-2009, 06:24 PM
I'm the guy that talked to the hacker (we're both Romanian (ARGH)) and it's safe to say that the site is safe.
Mr. Hasselhoff
03-18-2009, 06:28 PM
I'm the guy that talked to the hacker (we're both Romanian (ARGH)) and it's safe to say that the site is safe.
Yes, we can all thank vlad for being the middleman.
I love how horrible there English was
Mr. Hasselhoff
03-18-2009, 06:58 PM
I love how horrible there English was
Oh the irony...
:4chan:
Spart
03-18-2009, 07:22 PM
I love how horrible there English was
Oh the irony...
:4chan:
LUL!
So all the douche did was spread his website?
Devils Reject
03-18-2009, 07:48 PM
Interesting.
Commodore
03-18-2009, 07:54 PM
I really do not like website hackers. Losers!
Sup-homie
03-18-2009, 08:03 PM
Meh, at least ZS is fine.
Brandon
03-18-2009, 08:46 PM
♥♥♥ Dunno what I would do without my zomg ♥♥♥
yeah what a fucking idiiot
mdc4115
03-18-2009, 10:15 PM
i was like wtf when i got that email. i opened up the site and it looked like shit so i closed the tab.
Djzzero
03-19-2009, 12:16 AM
Well i'm a hacker as well..
DBs can be cracked easily. There is a program out there (i won't say what it is) which loads the user:password(md5 hash):salt:email
cracks it by using a rainbow database with the salt.
So pretty much if your password is a dictionary word, most likely if the hacker did attempt to get the db your account is compromised. Also if it's a common password and could be found on a wordlist then it's probably compromised as well. I have many forum db that I crack my self and use it as a wordlist. So I recommend please change your password since the hacker may have your password hash and can crack it.
Only if the hacker had access to the db of the forum :]. Just a heads up.
vladh.net
03-19-2009, 07:48 AM
He just defaced the page and sent a mass email.
Edit:
yeah what a fucking idiiot
I really do not like website hackers. Losers!
I can assure you hackers are generally very intelligent. It's just that black hat ones act like fools when defacing (defacing being very foolish anyway).
Cobalt
03-19-2009, 10:11 AM
Strange, I never got the email from the hackers.
paddersz122
03-19-2009, 10:57 AM
I did, really strange, I was like WTF!
DaDominator
03-19-2009, 12:18 PM
How did you contact him?
vladh.net
03-19-2009, 12:45 PM
How did you contact him?
PM'd him on his forum for his IM handle.
jewishmafia
03-19-2009, 05:16 PM
I found out he was romanian. ;)
Its because im part romanian.
WarningLabel
03-19-2009, 06:18 PM
He just defaced the page and sent a mass email.
Edit:
yeah what a fucking idiiot
I really do not like website hackers. Losers!
I can assure you hackers are generally very intelligent. It's just that black hat ones act like fools when defacing (defacing being very foolish anyway).
That doesn't mean they're not losers..
Edit:
I also never got the email.
vladh.net
03-20-2009, 07:08 AM
I found out he was romanian. ;)
Its because im part romanian.
I'm properly romanian and it sucks lol.
Edit:
He just defaced the page and sent a mass email.
Edit:
yeah what a fucking idiiot
I really do not like website hackers. Losers!
I can assure you hackers are generally very intelligent. It's just that black hat ones act like fools when defacing (defacing being very foolish anyway).
That doesn't mean they're not losers..
Edit:
I also never got the email.
Well said.
DaDominator
03-20-2009, 02:34 PM
Why it suck be romanian? Romans are cool. They have horse and juleus ceeser.
Mr. Hasselhoff
03-20-2009, 02:50 PM
Why it suck be romanian? Romans are cool. They have horse and juleus ceeser.
I really hope that was a sarcastic joke, especially this coming from you...
vladh.net
03-20-2009, 03:11 PM
Why it suck be romanian? Romans are cool. They have horse and juleus ceeser.
I'm sorry but that was extremely dumb and unfunny.
jaybird
03-21-2009, 12:42 PM
Scary. Who would want to hack a forum like this??
Twisted
03-22-2009, 08:08 AM
eek. That sucks. Stupid hacker. :(
vladh.net
03-22-2009, 08:27 AM
Scary. Who would want to hack a forum like this??
Like he spent a week locked in his basement to figure out how to hack the site because he hated it and used his incredible scary h4xx skillz to take it down. http://sa.tweek.us/emots/images/emot-downs.gif
eek. That sucks. Stupid hacker. :(
http://vladh.no-ip.org/files/facepalm.gif
TachiPilot
04-07-2009, 04:54 AM
So anyone know what the haxing level is of this guy? DJ, would you say you are better than him?
WarningLabel
04-07-2009, 07:08 AM
He's around a level 75 Dj's around 79 or so, according to phonetrace.org
TachiPilot
05-26-2009, 01:58 AM
I visited the site and most of it is in Romanian. Why would he want to hack an english speaking site to recruit Romanians?
Djzzero
05-26-2009, 02:17 AM
lol why are you guys saying im a hacker :[
TachiPilot
05-26-2009, 06:35 AM
lol from page two of this thread:
Well i'm a hacker as well..
Spart
05-26-2009, 08:59 AM
I visited the site and most of it is in Romanian. Why would he want to hack an english speaking site to recruit Romanians?
When you pour blood, sweat, and tears into a forum you're willing to do just about anything to get a sizable amount of active members.
DaDominator
03-23-2010, 05:03 AM
Why it suck be romanian? Romans are cool. They have horse and juleus ceeser.
LMFAO! Either I got hacked or I was uber drunkzor :fp:. Just changed my pass to be sure.
skepter
03-23-2010, 10:32 PM
Why it suck be romanian? Romans are cool. They have horse and juleus ceeser.
I'm sorry but that was extremely dumb and unfunny.
I thought it was pretty fucking funny. Canadians are cool. They have hockey and bag milk.
yanney
03-24-2010, 10:37 AM
Why it suck be romanian? Romans are cool. They have horse and juleus ceeser.
I'm sorry but that was extremely dumb and unfunny.
I thought it was pretty fucking funny. Canadians are cool. They have hockey and bag milk.
and polarbearmobiles.
Commodore
03-24-2010, 06:09 PM
Why is this thread being dug?
Please, oh please close.
XANAX
03-30-2010, 09:57 AM
WOW! Really sorry to see this happen to ya David! Been gone for awhile and thought I would drop in. If u got hacked it just means someones jealous! Keep up the good work Bro!:wink:
Mr. Hasselhoff
03-31-2010, 11:49 AM
Glad to see you back, but I've gotta lock this thread bro. Hope you've made your comeback and shall be active again!
Powered by vBulletin™ Version 4.1.1 Copyright © 2013 vBulletin Solutions, Inc. All rights reserved.