K-Tec

Possible hacker intrusion attempt on website?

More
17 years 4 months ago #37472 by alexhowe
I noticed 3 or 4 postings in the past few hours containing apparently meaningless gobbledygook. Beware! We had the same thing happen over at the Galway Astronomy Club when we had our own forum on the website. Turned out these were exploiting a vulnerability in the forum software to upload covert pages onto the site. These pages, whilst not directly linked to our site and not visible on there to the casual browser, were spoof "eBay" & "PayPal" pages with links thereto sent out in mass spam emails as a "phishing" exercise. When it was brought to my attention, I used an FTP client to look through all the files uploaded to the site, and there the 2 pages were! Needless to say they were removed PDQ. So, check your site files carefully, guys!

Happy Xmas and hope to see you at the Galway Astronomy Festival on the 27th January.

Please Log in or Create an account to join the conversation.

More
17 years 4 months ago #37476 by albertw
Yea we noticed the junk. We just had a shortage of people with enough privileges on the forum to deal with it promptly. When we get the right people online we'll check the site and software versions etc.

Thanks.
~Albert

Albert White MSc FRAS
Chairperson, International Dark Sky Association - Irish Section
www.darksky.ie/

Please Log in or Create an account to join the conversation.

More
17 years 4 months ago #37494 by Seanie_Morris
Replied by Seanie_Morris on topic Re: Possible hacker intrusion attempt on website?
Hi folks,
there is no hack. As you all know (or should know!), all new users since last Spring had to be validated by any of the (4) Administrators. The bad accounts, some of which can be seen as spam anyway by either the username, the profile contents, or both, are deleted by us automatically as we use these boards. But, the validation process is done by clicking a link sent to us by e-mail, seperate to IFAS, to be clicked on to activate a new user. However, sometimes we are busy and simply validate the new users without checking their name/profile. This is not always needed either, as even seemingly inoccuous usernames can freely generate spam messages, as happened today (I was away at the time, but the 'offending' posts were rectified by Dave Power).

We are a secure boards, there is no need for alarm, and the posts (mostly financial/betting spam) should not deter you all from continuing to actively use these great boards!

:D

Seanie Morris.

Midlands Astronomy Club.
Radio Presenter (Midlands 103), Space Enthusiast, Astronomy Outreach Co-ordinator.
Former IFAS Chairperson and Secretary.

Please Log in or Create an account to join the conversation.

More
17 years 4 months ago #37512 by dave_lillis
Replied by dave_lillis on topic Re: Possible hacker intrusion attempt on website?
Thats great news Seanie, thanks for the update. :)

Dave L. on facebook , See my images in flickr
Chairman. Shannonside Astronomy Club (Limerick)

Carrying around my 20" obsession is going to kill me,
but what a way to go. :)
+ 12"LX200, MK67, Meade2045, 4"refractor

Please Log in or Create an account to join the conversation.

Moderators: darragh
Time to create page: 0.095 seconds
Powered by Kunena Forum