FUGGER Posted July 11, 2016 Share Posted July 11, 2016 Doing forensics and cleanup before restore. Down for the day to patch. Quote Link to comment Share on other sites More sharing options...
Crew Don_Dan Posted July 11, 2016 Crew Share Posted July 11, 2016 Thanks for the heads-up, Charles. Quote Link to comment Share on other sites More sharing options...
M.Beier Posted July 12, 2016 Share Posted July 12, 2016 Doing forensics and cleanup before restore. Down for the day to patch. Good luck Charlie. Quote Link to comment Share on other sites More sharing options...
Apfelkuchen Posted July 13, 2016 Share Posted July 13, 2016 I was really worried there, I hope you didn't loose anything. But why would anyone target a site like this? It just doesn't make sense to me, since tech people aren't usually those who use one password for everything, so even getting all the user data wouldn't do much good. Are forums just easy prey? Or is someone salty after being banned? Quote Link to comment Share on other sites More sharing options...
FUGGER Posted July 13, 2016 Author Share Posted July 13, 2016 Just an update, I am without my main server until the FBI returns it in a few days, I will put the backup server online. Its a bit older data but at least the site will be online. It appears the vulnerability was with the vbulletin software, using javascripts. It took the hackers 5 minutes of scripts to complete, the scripts were precise to extracting user data and delete all tracks including data. Change your passwords to be safe if you use the same passwords across many sites. Quote Link to comment Share on other sites More sharing options...
Gunslinger Posted July 13, 2016 Share Posted July 13, 2016 Did they show "intent" or maybe it was just ignorance that they hacked you. I can see the FBI letting them off the hook just like Hillary. Quote Link to comment Share on other sites More sharing options...
Administrators websmile Posted July 13, 2016 Administrators Share Posted July 13, 2016 Not sure, Mike, in germany we say, the small gangsters get hung, the big ones get away with everything^^ - maybe they kick some teenagers a***s Quote Link to comment Share on other sites More sharing options...
Kal-EL Posted July 13, 2016 Share Posted July 13, 2016 Hope they getter dun. Quote Link to comment Share on other sites More sharing options...
Strong Island Posted July 13, 2016 Share Posted July 13, 2016 Just an update, I am without my main server until the FBI returns it in a few days, I will put the backup server online. Its a bit older data but at least the site will be online. It appears the vulnerability was with the vbulletin software, using javascripts. It took the hackers 5 minutes of scripts to complete, the scripts were precise to extracting user data and delete all tracks including data. Change your passwords to be safe if you use the same passwords across many sites. crazy stuff, thanks for the heads up, sorry it happened to you Quote Link to comment Share on other sites More sharing options...
FUGGER Posted July 13, 2016 Author Share Posted July 13, 2016 The main purpose to this was to get passwords, emails, IP and username fields only. They launched a .js once they had access and were done in 5 minutes. Wife losing her phone was 100x more stressful for me. It was not someone who disliked or knew XS, it was for the data and covering tracks. Quote Link to comment Share on other sites More sharing options...
M.Beier Posted July 13, 2016 Share Posted July 13, 2016 Crap... FUGGER, is my profile deleted, and if not, can I get the password sent somehow? Want to make sure I don't use same other places. Quote Link to comment Share on other sites More sharing options...
techjesse Posted July 13, 2016 Share Posted July 13, 2016 Thanks Fugger, I use a diff password on everything, safety first. When your up and running I'll change it. TJ Quote Link to comment Share on other sites More sharing options...
l0ud_sil3nc3 Posted July 14, 2016 Share Posted July 14, 2016 And here I thought you just threw the server on the cascade and started benching Quote Link to comment Share on other sites More sharing options...
frupoli Posted July 18, 2016 Share Posted July 18, 2016 Hi, how is situation now? Are there any forecasts ...? Will Xtremesystems be back in some days or longer? I have all my projects uploaded on your great forum, don't want to loose them! Thanks. Quote Link to comment Share on other sites More sharing options...
FUGGER Posted July 18, 2016 Author Share Posted July 18, 2016 I am restored and putting stuff back in place, a complete server rebuild with patching. I fixed the UDF8 encoding as well. Vbulletin forums themselves were also hacked by the same guys the same week along with a long list of other vb sites. Quote Link to comment Share on other sites More sharing options...
Oj0 Posted July 19, 2016 Share Posted July 19, 2016 w00t w00t for the encoding fix! Quote Link to comment Share on other sites More sharing options...
frupoli Posted July 19, 2016 Share Posted July 19, 2016 I am restored and putting stuff back in place, a complete server rebuild with patching. I fixed the UDF8 encoding as well. Vbulletin forums themselves were also hacked by the same guys the same week along with a long list of other vb sites. Saw the forum on, contents are not yes online. Will you please send us an advert when ready? And hope restore will proceed without problems! Thanks. :-) Quote Link to comment Share on other sites More sharing options...
xpower Posted July 21, 2016 Share Posted July 21, 2016 (edited) just joined and best wishes @ FUGGER XS long live....! Edited July 21, 2016 by xpower Quote Link to comment Share on other sites More sharing options...
FUGGER Posted July 21, 2016 Author Share Posted July 21, 2016 XS is up, work still in progress Quote Link to comment Share on other sites More sharing options...
Apfelkuchen Posted July 22, 2016 Share Posted July 22, 2016 Great to see it working again Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.