PDA

View Full Version : Have we just lost ~12days worth of posts?



HenrikOlsson
- 11th September 2013, 16:08
Hi,
This isn't much of request, just a question on what just happened here.

Yesterday when trying to access the forum there was a message from Lester saying the forum got hacked but he didn't know about it because nobody seemed care.... That doesn't make sense to me because I for one do care and I WOULD have said something if:
A) I had even noticed. I've been visiting the forum several timer per day over the last couple of weeks without noticing anything.
B) I knew where to send the message.

Now we seem to have lost all posts made in the last 12 days or so. Does that mean the forum got hacked 12 days ago and that it had to be rolled back that far?

/Henrik.

LinkMTech
- 11th September 2013, 17:45
I posted something yesterday and didn't notice anything either but don't have special privileges.

Glad you mentioned something because I thought it was a minor glitch.

Louie

lester
- 11th September 2013, 19:26
yes, sadly many posts lost

Ioannis
- 12th September 2013, 07:45
As I am not an expert on vBulletin, cannot propose other solutions. If boss says a roll back was necessary for our personal details protection, that's fine with me. Unfortunately this things happen. Who knows how many e-mails and passwords that may have been used in other places, the attacker gained. So it really is a very serious incident.

Ioannis

lester
- 12th September 2013, 08:23
I can assure you that I did not dump the posts and roll back without due consideration.

I'm still watching closely, if there is a backdoor, we could still be vulnerable. I have taken best advise, i've used all the facilities available to me to ensure that we have removed the vulnerability and moved back to a time before the attack.

However, if the attacker is nasty enough, they could have been in, left a back door, then waited a month before coming back to make the admin accounts, then waited some more before redirecting the site to the garbage site that they prefer you to look at.

In which case, they can be sure that i have to go back some time to remove their tracks. causing the users much discomfort.

Anyone out there with good credentials want to assist me with server maintenance???? I've asked before, never any takers, but the offer is there. If you have the skills and the time and can prove that you know what you're doing, i'm interested in hearing from you.

Demon
- 13th September 2013, 05:25
I have tons of data processing experience, both hardware and software. But not server maintenance, sorry.