Announcement

Collapse
No announcement yet.

Horribly HACKED :( - not vBulletin's fault (so FYI...)

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Horribly HACKED :( - not vBulletin's fault (so FYI...)

    My site with 100's of users using it everyday has been hacked. This is not the fault of vBulletin - but another company sent me this email:


    =========================
    Dear valued customer.
    We regret to report that the database where we store our customers ftp and application logins has been compromised. Please change your FTP and your oscommerce/creloaded admin passwords immediately.
    About the compromise. The passwords stored in tasklife.com are stored for use in during projects. There was an exploit that was closed once notified by the developers. However, someone was able to get the database during this exposure.
    In the future we will not store FTP passwords in the database, only host and usernames. Also we will not ask for admin access to your stores, but rather have you create new admin users for our project sales rep, who will create admin users for the developers.
    Using this method for admin access, the passwords are all emailed directly to the developer and the developer will change the admin password once logged into the admin.

    We apologize for the incident and will work with you to repair any files altered. Please do not reply to this email, if you need assistance please contact us via the tasklife.com system on your project.
    Regards,

    Salvatore F. Iozzia
    Founder, President and CTO
    Chain Reaction Web and Ecommerce
    www.chainreactionweb.com - www.creloaded.com


    This is the worst possible thing that could happen. I'm currently travelling, I have had to turn off my site: www.mazdarotaryclub.com for now.

    These hackers now have 1000's of legitimate email addresses for spamming now - I feel sick to the stomach!!!!!!!

    A restore may get things going again, but this is just so bad. I hope no-one else has had this issue.

    Thanks and regards,
    Glenn
    www.mazdarotaryclub.com/forums
    www.rotorstock.com/forums
    www.pierhead-lock.com/forum
    www.rhousepta.co.uk/forum

    Not a vBulletin Guru - but I love it!

  • #2
    Originally posted by gbutcher View Post
    My site with 100's of users using it everyday has been hacked. This is not the fault of vBulletin - but another company sent me this email:


    =========================


    This is the worst possible thing that could happen. I'm currently travelling, I have had to turn off my site: www.mazdarotaryclub.com for now.

    These hackers now have 1000's of legitimate email addresses for spamming now - I feel sick to the stomach!!!!!!!

    A restore may get things going again, but this is just so bad. I hope no-one else has had this issue.

    [/size][/font]
    I'm sure its nothing to worry about for now, as for the spamming well, the Script Kiddy's may have them but I'm sure if they start spamming you could always nock up your filters or change your email.

    MOST Web Hosts have backups that they can press 2 links and wait 3 minutes, and boom everything is restored.

    Which reminds me, I've got to DL some backups.

    Comment

    widgetinstance 262 (Related Topics) skipped due to lack of content & hide_module_if_empty option.
    Working...
    X