Quick links:  Login  |  Sign up  |  Site Rules  |  Support TMLfans

Sincere Apologies - please read

Started by Rick Couchman, November 03, 2022, 12:41:16 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Rick Couchman

We have been hacked three times in the past 3 days.  I did everything I could to remedy it. My host, Siteground, did everything they could. Our friend Jeff Lewis looked at it and didn't have a good solution - and neither did his techie friends.

So I resorted to deleting everything off the TMLfans servers, except for the forums.  And was forced to do a backup from BEFORE the issues started.  A week ago.  So we lost all posts from the last week.  I hated doing that - but it was the only thing I could try.

Sorry!  Go Leafs go!

herman

No need to apologize, Rick. Thanks for all the hard work.

If only the Leafs could erase the last week or two of their season...
#27

Frank E

This past week was some of my best work ever.  RIP Frank E posts.

Rick Couchman

These freaking hackers are such asses. Destruction for no reason.  This was one of the hacks. They used a script to change every board, topic and post title to this.  Pure evil.  Why the Habs? I'd rather they chose any other team - or a porn name.  Anything but the stupid Habs!


Bender

What I don't understand is why Tmlfans and why now? Is it related to the server change? I mean, you'd think they'd have enough security... So bizarre.
"They say you can judge a man by the company he keeps. So here is the professor's oldest friend, a grotesque, stinking lobster." - Bender

Rick Couchman

Quote from: Bender on November 03, 2022, 12:56:59 PMWhat I don't understand is why Tmlfans and why now? Is it related to the server change? I mean, you'd think they'd have enough security... So bizarre.

I really don't know.  It's the same server, we just upgraded the SMF forum software (three weeks ago when we had the long outage).  I have other websites on my server and they only hit the TMLfans area.  Bizarre indeed.

herman

They must've slipped a backdoor in there to inject a SQL script; I assume all post, thread, board titles are stored in a database table and just that column got replaced with the same statement each time.
#27

Bill_Berg_is_pissed_off

It's probably some Canadians fan. You can tell by the poor grammar.

CarltonTheBear

Quote from: herman on November 03, 2022, 01:13:05 PMThey must've slipped a backdoor in there to inject a SQL script; I assume all post, thread, board titles are stored in a database table and just that column got replaced with the same statement each time.

Yeah I thought it was weird that that's all that was being affected.

Rick Couchman

Quote from: herman on November 03, 2022, 01:13:05 PMThey must've slipped a backdoor in there to inject a SQL script; I assume all post, thread, board titles are stored in a database table and just that column got replaced with the same statement each time.

I agree. That's why I resorted to using a backup from a week ago.  My assumption is that Mr Hacker found access and uploaded something in the past three days. I've shut every possible backdoor that I could find.

We wait and see and cross fingers collectively. What a headache. This hacker is a small, idiotic, imbecile with no life.

herman

Block all attachments and make sure every user entry field gets sanitized before the server runs

It doesn't seem like the database credentials were compromised
#27

bustaheims

"Everyone is entitled to his own opinion, but not his own facts." - Daniel Patrick Moynihan

Dappleganger


azzurri63

Quote from: Bill_Berg_is_sad on November 03, 2022, 01:25:24 PMIt's probably some Canadians fan. You can tell by the poor grammar.

I was thinking the same thing lol.

Zee

No need to apologize Rick, this Habs fan who did this is a huge loser.