MMOC site hacked
Forum rules
By using this site, you agree to our rules. Please see: Terms of Use
By using this site, you agree to our rules. Please see: Terms of Use
-
- Minor Friendly
- Posts: 35
- Joined: Tue Feb 26, 2002 12:00 am
- Location: Yorkshire
- MMOC Member: No
MMOC site hacked
Yeah, we've been hacked again. It's getting boring isn't it?
If you've experienced any glitches in the MMOC website over the past couple of days, then this is due to a some sad individuals who hacked into our website, deleted numerous important files and replaced them with messages of their own. Now only does this mean that the entire website was affected, but that we had to sepnd hours rebuilding it all again.
We're doing everything we possibly can to prevent this, and also to get the site up and running as quickly as possible. But it's difficult to compete against people who have no lives, personality or friends, and who spend 24/7 welded to their computers.
In the meantime, please accept our apologies. If you notice anything strange or inappropriate, please notify MMOC officials and Moderators as soon as possible.
Normal service will be resumed as soon as possible.
If you've experienced any glitches in the MMOC website over the past couple of days, then this is due to a some sad individuals who hacked into our website, deleted numerous important files and replaced them with messages of their own. Now only does this mean that the entire website was affected, but that we had to sepnd hours rebuilding it all again.
We're doing everything we possibly can to prevent this, and also to get the site up and running as quickly as possible. But it's difficult to compete against people who have no lives, personality or friends, and who spend 24/7 welded to their computers.
In the meantime, please accept our apologies. If you notice anything strange or inappropriate, please notify MMOC officials and Moderators as soon as possible.
Normal service will be resumed as soon as possible.
Andrew Booth
MMOC Website Editor
[img]http://www.morrisminoroc.co.uk/Images/nov2001thu.jpg[/img]
MMOC Website Editor
[img]http://www.morrisminoroc.co.uk/Images/nov2001thu.jpg[/img]
-
- Minor Legend
- Posts: 4064
- Joined: Tue Dec 07, 2004 8:50 am
- Location: Margate, East Kent
- MMOC Member: No
RE: MMOC site hacked
Well done for getting it back Andrew!
Is there any way of stopping them other than changing the user name/ password and re-loading the site???
Is there any way of stopping them other than changing the user name/ password and re-loading the site???
Cheers John - all comments IMHO
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
-
- Moderator
- Posts: 5108
- Joined: Mon May 20, 2002 1:00 am
- Location: Stoke-on-Trent, Staffordshire, UK
- MMOC Member: No
RE: MMOC site hacked
Well, it's a little more involved than that unfortunately. These little 'script kiddies' are finding access points and running malicious programs on our server which routes out certain files and deletes/replaces them with abusive text files...
It's a shame that they can't find something constructive to do, but that's what happens I guess when your computer is your only friend.
It's a shame that they can't find something constructive to do, but that's what happens I guess when your computer is your only friend.
-
- Minor Fan
- Posts: 158
- Joined: Sat Nov 13, 2004 4:43 pm
- Location: Bristol
- MMOC Member: No
RE: MMOC site hacked
No need to apologise - we know you're doing your best... and a grand job it is too
[url]http://www.guydenning.org[/url]
[url]http://www.40wc.org.uk[/url]
[img]http://guydenning.org/guyorg/vehicles.jpg[/img]
[url]http://www.40wc.org.uk[/url]
[img]http://guydenning.org/guyorg/vehicles.jpg[/img]
-
- Minor Legend
- Posts: 4064
- Joined: Tue Dec 07, 2004 8:50 am
- Location: Margate, East Kent
- MMOC Member: No
RE: MMOC site hacked
Could you not put a firewall on your server?? (If that would work, I don't know that much about server security).
Sort of puts arguing about Mig wire size into perspective! ;)
Sort of puts arguing about Mig wire size into perspective! ;)
Cheers John - all comments IMHO
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
-
- Moderator
- Posts: 5108
- Joined: Mon May 20, 2002 1:00 am
- Location: Stoke-on-Trent, Staffordshire, UK
- MMOC Member: No
RE: MMOC site hacked
Yes as far as I'm aware we have one, but even those don't offer 100% protection. There are ways and means which it's best not to go into on here.
Arguing about mig wire?? Discussing surely!
Arguing about mig wire?? Discussing surely!
-
- Moderator
- Posts: 7679
- Joined: Fri Nov 01, 2002 2:55 pm
- Location: LEAMINGTON SPA
- MMOC Member: No
RE: MMOC site hacked
Well I though everyone was discussing and sharing their experiences and tips. Maybe someone was arguing?! ;-)Arguing about mig wire?? Discussing surely!
And many many thanks to Andrew / Billy for keeping the site up and running, and for their hours of work yet again due to these hackers. We are really greatful
Ray. MMOC#47368. Forum moderator.
Jan 06: The Minor SII Africa adventure: http://www.minor-detour.com
Oct 06: back from Dresden with my Trabant 601 Kombi
Jan 07: back from a month thru North Africa (via Timbuktu) in a S3 Landy
June 07 - back from Zwickau Trabi Treffen
Aug 07 & Aug 08 - back from the Lands End to Orkney in 71 pickup
Sept 2010 - finally gave up breaking down in a SII Landy...
where to break down next?
2013... managed to seize my 1275 just by driving it round the block
Jan 06: The Minor SII Africa adventure: http://www.minor-detour.com
Oct 06: back from Dresden with my Trabant 601 Kombi
Jan 07: back from a month thru North Africa (via Timbuktu) in a S3 Landy
June 07 - back from Zwickau Trabi Treffen
Aug 07 & Aug 08 - back from the Lands End to Orkney in 71 pickup
Sept 2010 - finally gave up breaking down in a SII Landy...
where to break down next?
2013... managed to seize my 1275 just by driving it round the block
-
- Minor Legend
- Posts: 4064
- Joined: Tue Dec 07, 2004 8:50 am
- Location: Margate, East Kent
- MMOC Member: No
RE: MMOC site hacked
Whether you use 0.6 or 0.8mm wire- at least you're doing something constructive! Constructing a restored car from an old wreck.
Unlike the cybervandals who seem to get enjoyment from deconstructing a useful resource to Moggie fans everywhere.
I meant "arguing" in a "discussing" kind of way, its easy to misunderstand the meaning behind the text in e-mails and internet posts without the tone of voice and non- verbal expression one gets from face to face communications. Wasn't it said that 90% of communication is non verbal!
and lastly, why don;t the skykids get a Morris Minor and learn how to do it up, surely much more worthwhile use of time and energy than wrecking message boards.
Unlike the cybervandals who seem to get enjoyment from deconstructing a useful resource to Moggie fans everywhere.
I meant "arguing" in a "discussing" kind of way, its easy to misunderstand the meaning behind the text in e-mails and internet posts without the tone of voice and non- verbal expression one gets from face to face communications. Wasn't it said that 90% of communication is non verbal!
and lastly, why don;t the skykids get a Morris Minor and learn how to do it up, surely much more worthwhile use of time and energy than wrecking message boards.
Cheers John - all comments IMHO
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
-
- Moderator
- Posts: 5108
- Joined: Mon May 20, 2002 1:00 am
- Location: Stoke-on-Trent, Staffordshire, UK
- MMOC Member: No
RE: MMOC site hacked
Perhaps they will John when they get through puberty!
RE: MMOC site hacked
BORING FACT - Did you know that the Russian for discussion is 'Argument'. I did the sound for years on a programme called Argument, couldn't work out why everyone was so calm and friendly... I don't think we ever got onto MIG wire though.
a
a
Last edited by bigginger on Thu Aug 18, 2005 11:42 pm, edited 1 time in total.
RE: MMOC site hacked
Well done sorting out the problem - but I did see in today's paper something about a Windows glitch/faults which was letting hackers in - I believe there is a patch available for it.
-
- Moderator
- Posts: 5108
- Joined: Mon May 20, 2002 1:00 am
- Location: Stoke-on-Trent, Staffordshire, UK
- MMOC Member: No
RE: MMOC site hacked
I don't think the server that this forum is hosted on is running windows. I'm pretty sure it's unix/linux based.
RE: MMOC site hacked
I love hackers!!!! This last lot did a great job so I was up until 3am sorting it out. FYI :We are indeed running on a linux server so if any of you are linux internet security expert or even a friendly hasker wanting to help secure the website, please feel free to contact me!
Mike Dean
MMOC Webmaster
MMOC Webmaster
-
- Minor Legend
- Posts: 4064
- Joined: Tue Dec 07, 2004 8:50 am
- Location: Margate, East Kent
- MMOC Member: No
RE: MMOC site hacked
Its well known that Apple computers are much more secure than other computers- there are currently no known viruses or worms for Mac OSX. Maybe you could get a 2nd hand Mac running OSX and run that as a server.
Macs are dead easy to use as well. Not cheap though! although considering the cost of your guys time it might we worth a though.
Macs are dead easy to use as well. Not cheap though! although considering the cost of your guys time it might we worth a though.
Cheers John - all comments IMHO
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
-
- Moderator
- Posts: 5108
- Joined: Mon May 20, 2002 1:00 am
- Location: Stoke-on-Trent, Staffordshire, UK
- MMOC Member: No
RE: MMOC site hacked
Actually there ARE viruses for Macs, but they are very few and far between. This is not a virus problem in the conventional sense though (although it's similar). It's hackers gaining entry and spawning programs to do damage. The security issue is preventing them gaining access in the first place.
I *think* the server is currently just a paid for service and as such we can't specify the equipment, but Linux/Unix is pretty much recognised as the OS choice for secure servers. Trouble is that nothing is totally secure and (like cars) if they want to break in badly enough they will do.
Unfortunately my knowledge of computer security (and unix) is badly out of date now so I don't think I can help although I'd love to...
But perhaps we could consider using SSH instead of FTP?
I *think* the server is currently just a paid for service and as such we can't specify the equipment, but Linux/Unix is pretty much recognised as the OS choice for secure servers. Trouble is that nothing is totally secure and (like cars) if they want to break in badly enough they will do.
Unfortunately my knowledge of computer security (and unix) is badly out of date now so I don't think I can help although I'd love to...
But perhaps we could consider using SSH instead of FTP?
-
- Minor Legend
- Posts: 4064
- Joined: Tue Dec 07, 2004 8:50 am
- Location: Margate, East Kent
- MMOC Member: No
RE: MMOC site hacked
Cam there were a few viruses for the old Mac OS9 and earlier but since the Unix based OS X (OS 10) there are no known viruses.
http://www.eweek.com/article2/0,1759,1777202,00.asp
Its one of the benefits! trouble free internet usage!
With all the computer jiggerypokery in modern cars, it wont be long before they are affected by viruses and worms too! a benefit of running a moggie!
http://www.eweek.com/article2/0,1759,1777202,00.asp
Its one of the benefits! trouble free internet usage!
With all the computer jiggerypokery in modern cars, it wont be long before they are affected by viruses and worms too! a benefit of running a moggie!
Cheers John - all comments IMHO
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
-
- Moderator
- Posts: 5108
- Joined: Mon May 20, 2002 1:00 am
- Location: Stoke-on-Trent, Staffordshire, UK
- MMOC Member: No
RE: MMOC site hacked
John, from the article:
The Mac is a truly great machine and I seriously considered buying one until I saw the price!
Also, being as I currently share lots of windows files between machines I can't practically have a non-windows machine for compatability reasons.
I tried the various Linux versions on the PC for better security but they were more trouble than they were worth. So, I'm back with Windows but with an anti-virus program. It's the cheapest and easiest solution, and like you now I have trouble free internet usage! (at a fraction of the cost ).
Viva la Mog!
How do I know there are no Mac OS X viruses and malware out there?
Because the Mac product manager of one of the major security software companies told me so.
Despite the good news, I am not telling you to turn off the anti-virus software that's running on your Macintosh. And I still encourage you to purchase anti-virus protection for all your machines.
Why spend the money?
First, because it's possible the guy was wrong. Second, someone may have created a threat in the two weeks since I spoke to him (or may be about to). Third, your Mac probably has some Windows viruses or malware on it.
To read more about a possible exploit that could affect computers running Mac OS X and Mac OS X Server versions 10.0.0 through 10.3.7, click here.
While these won't damage the Mac, if you are on a network or just send e-mail, you can innocently send the pathogenic software to Windows users.
No, that is not the point of owning a Mac.
I've already alluded to why Mac OS X is essentially virus-free: because almost nobody uses it.
The Mac is a truly great machine and I seriously considered buying one until I saw the price!
Also, being as I currently share lots of windows files between machines I can't practically have a non-windows machine for compatability reasons.
I tried the various Linux versions on the PC for better security but they were more trouble than they were worth. So, I'm back with Windows but with an anti-virus program. It's the cheapest and easiest solution, and like you now I have trouble free internet usage! (at a fraction of the cost ).
Only if they are DAFT enough to connect them to an external network, and to be honest I think they ARE that daft!With all the computer jiggerypokery in modern cars, it wont be long before they are affected by viruses and worms too! a benefit of running a moggie!
Viva la Mog!
-
- Minor Legend
- Posts: 4064
- Joined: Tue Dec 07, 2004 8:50 am
- Location: Margate, East Kent
- MMOC Member: No
RE: MMOC site hacked
The next incarnation of Sat Nav/nanny state vehicle usage control will be the networked car, hopefully they will leave us 0.2% classic owners alone!
Cheers John - all comments IMHO
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
- Come to this years Kent branches Hop rally! http://www.kenthop.co.uk
(check out the East Kent branch website http://www.ekmm.co.uk )
-
- Minor Addict
- Posts: 986
- Joined: Fri May 28, 2004 10:22 pm
- Location: Washington State, US.
- MMOC Member: No
RE: MMOC site hacked
One of the easiest security measures is, indeed, to turn of FTP and use SSH (there are SSH visual file clients for windows, free ones, too) instead.
In this case, it's most likely not so much a linux issue as a PHP/BB2 issue, I would guess. Unfortunately my experience as a linux sysadmin is... well.. out of date, and I never did worry that much about security beyond really basic measures.
Improving the firewall however, will also give you much greater security...
In this case, it's most likely not so much a linux issue as a PHP/BB2 issue, I would guess. Unfortunately my experience as a linux sysadmin is... well.. out of date, and I never did worry that much about security beyond really basic measures.
Improving the firewall however, will also give you much greater security...
Pyoor Kate
The Electric Minor Project
The Current Fleet:
1969 Morris 'thou, 4 Door. 2010 Mitsubishi iMiEV. 1920s BSA Pushbike. 1930s Raleigh pushbike.
The Ex-Fleet:
1974 & 1975 Daf 44s, 1975 Enfield 8000 EV, 1989 Yugo 45, 1981 Golf Mk1, 1971 Vauxhall Viva, 1989 MZ ETZ 125, 1989 Volvo Vario 340, 1990, 1996 & 1997 MZ/Kanuni ETZ 251s
Desires:
Trabant 601, Tatra T603, Series II Landy, Moskvitch-401, Vincent HRD Black Shadow, Huge garage, Job in Washington State.
The Electric Minor Project
The Current Fleet:
1969 Morris 'thou, 4 Door. 2010 Mitsubishi iMiEV. 1920s BSA Pushbike. 1930s Raleigh pushbike.
The Ex-Fleet:
1974 & 1975 Daf 44s, 1975 Enfield 8000 EV, 1989 Yugo 45, 1981 Golf Mk1, 1971 Vauxhall Viva, 1989 MZ ETZ 125, 1989 Volvo Vario 340, 1990, 1996 & 1997 MZ/Kanuni ETZ 251s
Desires:
Trabant 601, Tatra T603, Series II Landy, Moskvitch-401, Vincent HRD Black Shadow, Huge garage, Job in Washington State.
-
- Moderator
- Posts: 5108
- Joined: Mon May 20, 2002 1:00 am
- Location: Stoke-on-Trent, Staffordshire, UK
- MMOC Member: No
Re: RE: MMOC site hacked
Well for the messageboard, yes, but other areas of the site (non PHP/BB2) were attacked too and the index.html files overwritten by a robot program that searched them out. The security issue there is of course remote access to the server to allow you to upload and spawn a process of that nature!Pyoor_Kate wrote:In this case, it's most likely not so much a linux issue as a PHP/BB2 issue, I would guess.