Black Hat Forum
Go Back   Black Hat Forum > BlackHatWorld Forum > BlackHat Lounge

BlackHat Lounge What’s been on your mind lately? Maybe you've come across a website that made you laugh. Almost anything goes here!

Search
 
Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 05-14-2008, 07:22 PM
Essential Clix's Avatar
Administrator
 
Join Date: Jul 2007
Location: USA
Posts: 3,006
Thanks: 280
Thanked 681 Times in 248 Posts
Activity: 89%
Longevity: 40%
Today: 0/5
Default Welcome Back

Let's see how long it lasts this time...

Everyone be sure to thank Provid0r of thel3vel for hacking the forum again.. for no obvious reason whatsoever, just like the 3 times before that...
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 05-14-2008, 07:25 PM
idk12's Avatar
Jr. VIP
 
Join Date: Mar 2008
Location: michigan
Posts: 326
Thanks: 33
Thanked 12 Times in 10 Posts
Activity: 29%
Longevity: 19%
Today: 0/5
Send a message via AIM to idk12
Default Re: Welcome Back

Quote:
Originally Posted by Essential Clix View Post
Let's see how long it lasts this time...

Everyone be sure to thank Provid0r of thel3vel for hacking the forum again.. for no obvious reason whatsoever, just like the 3 times before that...
ok seriously obviously there is a serious problem either with the server security or the security of this board. (vbulletin)

my suggestion is get a white hat hacker to hack the board and figure out its vulnerabilities so we can fix them....makes sense to me.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 05-14-2008, 07:26 PM
mightybh's Avatar
Jr. VIP
 
Join Date: Feb 2008
Location: UK
Posts: 367
Thanks: 20
Thanked 170 Times in 20 Posts
Activity: 12%
Longevity: 21%
Today: 0/5
Default Re: Welcome Back

Were they using the same exploit all these times? I love the way their server could not quite cope with redirected traffic.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #4 (permalink)  
Old 05-14-2008, 07:26 PM
Essential Clix's Avatar
Administrator
 
Join Date: Jul 2007
Location: USA
Posts: 3,006
Thanks: 280
Thanked 681 Times in 248 Posts
Activity: 89%
Longevity: 40%
Today: 0/5
Default Re: Welcome Back

We're open to any (honorable) forum member running a security scan against our forum. PM me, Dave or HaRRo with your results.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #5 (permalink)  
Old 05-14-2008, 07:28 PM
snowwhite's Avatar
Executive VIP
 
Join Date: Feb 2008
Location: Asia and Ft. Lauderdale
Posts: 880
Thanks: 15
Thanked 435 Times in 116 Posts
Activity: 64%
Longevity: 22%
Today: 1/5
Send a message via ICQ to snowwhite Send a message via AIM to snowwhite Send a message via Yahoo to snowwhite
Default Re: Welcome Back

Im happy seeing our society back. Miss you Clix!

**edited**

Iv been sick all day not being able to see the face of BHW

What exactly are the plans of the Admins to strengthen security and put an end to this?

Last edited by snowwhite; 05-14-2008 at 07:35 PM.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #6 (permalink)  
Old 05-14-2008, 07:32 PM
Essential Clix's Avatar
Administrator
 
Join Date: Jul 2007
Location: USA
Posts: 3,006
Thanks: 280
Thanked 681 Times in 248 Posts
Activity: 89%
Longevity: 40%
Today: 0/5
Default Re: Welcome Back

The problem most likely lies within the vbulletin mods (addons).

PS - The guys that hacked us read these threads...
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #7 (permalink)  
Old 05-14-2008, 07:36 PM
idk12's Avatar
Jr. VIP
 
Join Date: Mar 2008
Location: michigan
Posts: 326
Thanks: 33
Thanked 12 Times in 10 Posts
Activity: 29%
Longevity: 19%
Today: 0/5
Send a message via AIM to idk12
Default Re: Welcome Back

Quote:
Originally Posted by Essential Clix View Post
The problem most likely lies within the vbulletin mods (addons).

PS - The guys that hacked us read these threads...
yea and they are pathetic..


those guys are just a bunch of scrip kiddies.

edit: wow they have no life http://thel3vel.net/board/index.php?showtopic=4801

Last edited by idk12; 05-14-2008 at 07:41 PM.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #8 (permalink)  
Old 05-14-2008, 07:41 PM
Jr. VIP
 
Join Date: Dec 2007
Posts: 592
Thanks: 28
Thanked 98 Times in 32 Posts
Activity: 25%
Longevity: 29%
Today: 1/5
Default Re: Welcome Back

Glad to see the forum back.Damn hope not to be BH addicted as today I've felt strange without accessing it
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #9 (permalink)  
Old 05-14-2008, 07:41 PM
mentalist's Avatar
Jr. VIP
 
Join Date: Apr 2008
Posts: 211
Thanks: 10
Thanked 23 Times in 11 Posts
Activity: 10%
Longevity: 15%
Today: 1/5
Send a message via MSN to mentalist
Default Re: Welcome Back

Not one of them can spell. NOT ONE OF THEM.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #10 (permalink)  
Old 05-14-2008, 07:47 PM
mightybh's Avatar
Jr. VIP
 
Join Date: Feb 2008
Location: UK
Posts: 367
Thanks: 20
Thanked 170 Times in 20 Posts
Activity: 12%
Longevity: 21%
Today: 0/5
Default Re: Welcome Back

It just does not make any sense to me. They are either kids or just very bored. Why would anyone waste their time defacing a forum over and over again? Why not hack some basket instead and steal some credit card numbers or hijack a few paypal addys? Then they would at least be making a bit of money out of it.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #11 (permalink)  
Old 05-14-2008, 07:50 PM
enovator's Avatar
Jr. VIP
 
Join Date: Mar 2008
Posts: 482
Thanks: 8
Thanked 20 Times in 17 Posts
Activity: 10%
Longevity: 20%
Today: 2/5
Send a message via ICQ to enovator Send a message via AIM to enovator Send a message via MSN to enovator Send a message via Yahoo to enovator Send a message via Skype™ to enovator
Default Re: Welcome Back

Dame, tha "kid" has again did that.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #12 (permalink)  
Old 05-14-2008, 07:57 PM
Newbie
 
Join Date: Mar 2008
Posts: 13
Thanks: 1
Thanked 2 Times in 1 Post
Activity: 11%
Longevity: 19%
Today: 0/5
Default Re: Welcome Back

Quote:
Originally Posted by MoneyMafia View Post
Glad to see the forum back.Damn hope not to be BH addicted as today I've felt strange without accessing it
LMAO I totally agree with ya - I've been going through BHW withdrawls - I think I need to check into the BHW anonymous because I am totally addicted.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #13 (permalink)  
Old 05-14-2008, 07:59 PM
idk12's Avatar
Jr. VIP
 
Join Date: Mar 2008
Location: michigan
Posts: 326
Thanks: 33
Thanked 12 Times in 10 Posts
Activity: 29%
Longevity: 19%
Today: 0/5
Send a message via AIM to idk12
Default Re: Welcome Back

seeing that this board is vbulletin software 3.7.0.

from some research the only exploit i can see on vbulletin side is this mod.

mod:
Code:
http://www.vbulletin.org/forum/showthread.php?t=144869
source:
Code:
http://www.cyber-warrior.org/Forum/display_topic_threads.asp?ForumID=32&TopicID=262531&PagePosition=&showActive=&ReturnPage=Active
im not sure if we have that mod installed but i believe that could be the one if we do have that one.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #14 (permalink)  
Old 05-14-2008, 08:02 PM
navin's Avatar
Jr. VIP
 
Join Date: Mar 2007
Posts: 146
Thanks: 2
Thanked 1 Time in 1 Post
Activity: 0%
Longevity: 53%
Today: 0/5