Snitz Forums 2000
Snitz Forums 2000
Home | Profile | Register | Active Topics | Members | Search | FAQ
Username:
Password:
Save Password
Forgot your Password?

 All Forums
 Announcements
 Announcements: Community
 New User Registration has been disabled.
 New Topic  Topic Locked
 Printer Friendly
Next Page
Author Previous Topic Topic Next Topic
Page: of 7

RichardKinser
Snitz Forums Admin

USA
16655 Posts

Posted - 04 December 2002 :  01:04:06  Show Profile
As of right now, we are not accepting any new registrations.

eggyfarts
Junior Member

New Zealand
200 Posts

Posted - 04 December 2002 :  01:35:50  Show Profile
Is this permanent or just temporary because of the recent abnormality?

Cheers,
WeeVaa.

Go to Top of Page

RichardKinser
Snitz Forums Admin

USA
16655 Posts

Posted - 04 December 2002 :  01:38:50  Show Profile
not sure yet. Not up to me. Personally, I am rethinking my commitment to this project at the moment because of the actions of children who have nothing better to do (the recent abnormality).

bblh (babylearnhack@yahoo.com) - 61.11.245.7

tuananh (anhtuanhnams@yahoo.com) - 61.11.245.6 & 61.11.245.7

* NEW *
geni (anhtuan_ams@yahoo.com) - 61.11.245.6 - (tried to register, but I didn't approve it )
geni (anhtuan_ams@yahoo.com) - 61.11.245.5 - (tried to register, but I didn't approve it )
imposter30 (imposter30@yahoo.com) - 61.11.245.5 - (tried to register, but I didn't approve it )
zeussun (khanhvandung@yahoo.com) - 61.11.245.5 - (tried to register, but I didn't approve it )
imposter2002 (imposter@alibaba.com) - 61.11.245.5 - (tried to register, but I didn't approve it )
zeuscoldsun (ngoanhdung@hotmail.com) - 61.11.245.5 - (tried to register, but I didn't approve it )
geni (asd@asd.com) - 61.11.245.5 - (tried to register, but I didn't approve it )

http://babyhack2002.topcities.com
Go to Top of Page

eggyfarts
Junior Member

New Zealand
200 Posts

Posted - 04 December 2002 :  01:51:31  Show Profile
Was this issue server based or a forum access thing? My guess is server, and most likely inc_header.asp changed.

Cheers,
WeeVaa.

Go to Top of Page

RichardKinser
Snitz Forums Admin

USA
16655 Posts

Posted - 04 December 2002 :  01:54:08  Show Profile
The Forum Title had been changed to include a script command for document.location to the address shown above and the two users mentioned were Admins. Not sure how they were Admins, but they were.
Go to Top of Page

eggyfarts
Junior Member

New Zealand
200 Posts

Posted - 04 December 2002 :  02:00:06  Show Profile
Well, at least the issue was resolved quickly so that the stupid people who attempte it will not be able to brag. So I guess they will (hopefully) not attempt it again. Any ideas/theories as to how they gained admin rights?

Cheers,
WeeVaa.

Go to Top of Page

RichardKinser
Snitz Forums Admin

USA
16655 Posts

Posted - 04 December 2002 :  02:05:25  Show Profile
No, I don't have any ideas or theories.
Go to Top of Page

seahorse
Senior Member

USA
1075 Posts

Posted - 04 December 2002 :  02:07:34  Show Profile  Visit seahorse's Homepage
quote:
Originally posted by RichardKinser

The Forum Title had been changed to include a script command for document.location to the address shown above and the two users mentioned were Admins. Not sure how they were Admins, but they were.



Has anyone reported this to the legal authorities? It probably wouldn't amount to much, but anyone who would try something like this is bound to try again somewhere else.

Ken
===============
Worldwide Partner Group
Microsoft
Go to Top of Page

@tomic
Senior Member

USA
1790 Posts

Posted - 04 December 2002 :  02:08:20  Show Profile  Visit @tomic's Homepage  Send @tomic an ICQ Message
Well hell, am I the only other one closing his forum's registration? Yeah, seems silly if they are accessing the server itself but I am wondering if there's a new server vulnerability out there.

@tomic

SportsBettingAcumen.com

Edited by - @tomic on 04 December 2002 02:10:46
Go to Top of Page

seahorse
Senior Member

USA
1075 Posts

Posted - 04 December 2002 :  02:09:11  Show Profile  Visit seahorse's Homepage
quote:
Originally posted by RichardKinser

The Forum Title had been changed to include a script command for document.location to the address shown above and the two users mentioned were Admins. Not sure how they were Admins, but they were.



Has anyone reported this to the legal authorities? It probably wouldn't amount to much, but anyone who would try something like this is bound to try again somewhere else.

Ken
===============
Worldwide Partner Group
Microsoft
Go to Top of Page

RichardKinser
Snitz Forums Admin

USA
16655 Posts

Posted - 04 December 2002 :  02:14:13  Show Profile
http://www.apnic.net/info/faq/abuse/hacking.html
Go to Top of Page

ajhvdb
Junior Member

Netherlands
392 Posts

Posted - 04 December 2002 :  03:56:58  Show Profile
quote:
Originally posted by @tomic

Well hell, am I the only other one closing his forum's registration? Yeah, seems silly if they are accessing the server itself but I am wondering if there's a new server vulnerability out there.

@tomic



Like to have more info also...

Edited by - ajhvdb on 04 December 2002 03:58:04
Go to Top of Page

RichardKinser
Snitz Forums Admin

USA
16655 Posts

Posted - 04 December 2002 :  04:29:27  Show Profile
I've given all the info I have.
Go to Top of Page

s0110282
Starting Member

USA
20 Posts

Posted - 04 December 2002 :  08:43:21  Show Profile  Send s0110282 an AOL message  Send s0110282 a Yahoo! Message
Richard - don't rethink your commitment. Although people like this get a feeling of power and enjoy making a mess of someone's hard work, we can learn something.
It's obvious there's a loophole somewhere that needs to be fixed (code, server, whatever). Just remember that all great code is always going to have some type of way to be hacked - not to mention people are always going to try to hack it.
It's important that people like you stick with it and help out the thousands of others that use Snitz code. I'm sure it can be frustrating, but please don't let us all down for some slime balls.
Go to Top of Page

Kent
Junior Member

United States
193 Posts

Posted - 04 December 2002 :  11:16:54  Show Profile
I concur wholeheartedly with s0110282's comments. I think the reason that Snitz is targeted by hackers is absolutely because of its success and widespread implementation -- much like viruses are targeted at the Microsoft office suite. Who ever hears of a virus attacking the Corel suite (i.e. WordPerfect & Lotus remnants)?

I understand you're frustrations, and hope you direct them to the guilty ones and that they bear the full brunt of those frustrations. I also watch HuwR go through similar frustrations.... These hackers are "cyber-terrorists" IMO, and should receive NO mercy!

Kent
Go to Top of Page

David K
Junior Member

494 Posts

Posted - 05 December 2002 :  02:52:43  Show Profile  Send David K an AOL message  Send David K an ICQ Message  Send David K a Yahoo! Message
I think someone should test this volrnability on a test server (same software but not same hardware) If someone can get Admin privs around here, what can insignifecent people who don't know ASP do?
I know plenty of people that hardly know ASP but use Snitz, and I think we should take care of this, at least for their sake.
If someone had Admin privs, I think that wer are very lucky they\he\she didn't change anything really bad!
Go to Top of Page
Page: of 7 Previous Topic Topic Next Topic  
Next Page
 New Topic  Topic Locked
 Printer Friendly
Jump To:
Snitz Forums 2000 © 2000-2021 Snitz™ Communications Go To Top Of Page
This page was generated in 0.23 seconds. Powered By: Snitz Forums 2000 Version 3.4.07