Xoops.org hacked?
投稿者: igor | 投稿日時: 2005-10-19 17:44 | 閲覧: 12705回
I was happily playing around with a few modules in Xoops and went to check what modules were lying around at Xoops.org when I was presented by the following basic message:
The XOOPS.org websites have fallen victim to a group of hackers. We have taken down the server to assess damage and rebuild our websites.
There was another message below this that changed twice while I popped in and out of the site (one that it was not a security hole in Xoops and another that seemed to suggest there was and that this wasn't in XoopsCube. Now it is just the above message. Interesting, interesting.
====
Update. The funky message reappeared....
The XOOPS.org websites have fallen victim to the best group of hackers, using a vulnerability in the XOOPS.com software (but not in XOOPS CUBE code). And we have taken down the server to assess damage and rebuild our websites. Yes, the hackers gain access via a hole in the XOOPS system.
We are taking this opportunity to install our newly donated mega-fast server (thanks to EPC Online once again!), and make some changes to the website to make your visits more enjoyable. Please, believe!!!
You can find all core releases on the The XOOPS Cube Project space.
As soon as we have more news, we will let you all know.
The XOOPS Team
When you look long into an abyss, the abyss looks into you.
Where's the OMFG smiley?
The XOOPS.org websites have fallen victim to a group of hackers. We have taken down the server to assess damage and rebuild our websites.
There was another message below this that changed twice while I popped in and out of the site (one that it was not a security hole in Xoops and another that seemed to suggest there was and that this wasn't in XoopsCube. Now it is just the above message. Interesting, interesting.
====
Update. The funky message reappeared....
The XOOPS.org websites have fallen victim to the best group of hackers, using a vulnerability in the XOOPS.com software (but not in XOOPS CUBE code). And we have taken down the server to assess damage and rebuild our websites. Yes, the hackers gain access via a hole in the XOOPS system.
We are taking this opportunity to install our newly donated mega-fast server (thanks to EPC Online once again!), and make some changes to the website to make your visits more enjoyable. Please, believe!!!
You can find all core releases on the The XOOPS Cube Project space.
As soon as we have more news, we will let you all know.
The XOOPS Team
When you look long into an abyss, the abyss looks into you.
Where's the OMFG smiley?
コメント(14)
新しいものから |
古いものから |
ネスト表示 |
Re: Xoops.org hacked?
Re: Xoops.org hacked?
Re: Xoops.org hacked?
投稿者: ep98 | 投稿日時: 2005-10-22 22:18
About xoops.org attacks...
XOOPS is buggy, so we know that, and what for we pick the right one, until is hacked again - www.hardware.bg, the same man, the same attack, the same (almost) code for cMS, it's called XOOPS Cube
So XOOPS 2.0.13.1 Mithrandir release (I'm not pick it, cos we have different way for XOOPS with Ian) and my favorite www.xoopsbg.org - XOOPS 2.0.12 JP (Kazumi Ono, cos is the founder and creator of this idea - XOOPS, I pick it up) are hacked both, no matter where are located this sites.
Hack attacks uses a bug in Apache 2.0 and specialy few RPM based distributions, the list is long, so I will be short:
1st attack on xoops.org was in the summer in end of july i think - Fedora Core (lovely red cap, if someone offer me, 120,000 USD per month to build and maintain hosting server with that scrap, I will not accept it)
Last attack, dont know which date is, I was on move.... but anyway, the server is almost the same, CentOS, fork (how much I hate this forks...
) of Fedora (RedCap, it's the same).
www.hardware.bg - Xoops Cube 2.0.11.2 JP plus lovely SuSe, the "best of the best" RPM based distributions, hacked several times by the same hacker, u can see it and tight now.
The hack attacks shows, how wrong some words are interpreted
Is there a secure distribution ?
Yeah, there is a secure, in short is LFS (no, it's not www.linuxfromscrath.org) it is just LFS build it from scratch, not by scripts.
Also do u know someone of you XOOPERS, no matter which base are u using, why Gentoo Developers, starts months ago project, to improve and maintain the old apache 1.3.33 ?
Don't know ?
check gentoo's forums, docs, and u will found the trouble of this attacks, they will not stop, and even if this hacker being killed.
XOOPS Cube with Kazumi and Catz (if is comeback) will be the best sollution for everything....
but both XOOPS Cores need few things to operate propertly, so dont say and write scraps like XOOPS Cube is unbeatable (www.hardware.bg) - Love XOOPS Cube, but not blind as u
XOOPS is buggy, so we know that, and what for we pick the right one, until is hacked again - www.hardware.bg, the same man, the same attack, the same (almost) code for cMS, it's called XOOPS Cube
So XOOPS 2.0.13.1 Mithrandir release (I'm not pick it, cos we have different way for XOOPS with Ian) and my favorite www.xoopsbg.org - XOOPS 2.0.12 JP (Kazumi Ono, cos is the founder and creator of this idea - XOOPS, I pick it up) are hacked both, no matter where are located this sites.
Hack attacks uses a bug in Apache 2.0 and specialy few RPM based distributions, the list is long, so I will be short:
1st attack on xoops.org was in the summer in end of july i think - Fedora Core (lovely red cap, if someone offer me, 120,000 USD per month to build and maintain hosting server with that scrap, I will not accept it)
Last attack, dont know which date is, I was on move.... but anyway, the server is almost the same, CentOS, fork (how much I hate this forks...
) of Fedora (RedCap, it's the same).www.hardware.bg - Xoops Cube 2.0.11.2 JP plus lovely SuSe, the "best of the best" RPM based distributions, hacked several times by the same hacker, u can see it and tight now.
The hack attacks shows, how wrong some words are interpreted
Is there a secure distribution ?
Yeah, there is a secure, in short is LFS (no, it's not www.linuxfromscrath.org) it is just LFS build it from scratch, not by scripts.
Also do u know someone of you XOOPERS, no matter which base are u using, why Gentoo Developers, starts months ago project, to improve and maintain the old apache 1.3.33 ?
Don't know ?
check gentoo's forums, docs, and u will found the trouble of this attacks, they will not stop, and even if this hacker being killed.
XOOPS Cube with Kazumi and Catz (if is comeback) will be the best sollution for everything....
but both XOOPS Cores need few things to operate propertly, so dont say and write scraps like XOOPS Cube is unbeatable (www.hardware.bg) - Love XOOPS Cube, but not blind as u
Re: Xoops.org hacked?
投稿者: Mikhail | 投稿日時: 2005-10-22 23:14
After this, I dont have more respect for herko's xoops.
"I may be wrong, but it's my understanding that this jerk lives in Brazil, where times are tough and life is cheap. I bet for a couple of hundred reals we could hire someone to....STOP, i HATE hate fell hate. The Xoops from Herko and norvices is dead for me.
well, back to work...
Re: Xoops.org hacked?
投稿者: Gigamaster | 投稿日時: 2005-10-23 22:59
If there's no Herko, Jan, Skalpa, or xoops.org...
... i can see on xoops.org front page
how important is the international community!
Most important of all... users!
... i can see on xoops.org front page
how important is the international community!
Most important of all... users!
Re: Xoops.org hacked?
投稿者: ep98 | 投稿日時: 2005-10-24 3:21
引用:
U're wrong, XOOPS.ORG is overtaken by Mithrandir aka Ian Pederson, and weeks ago by Keo Skalpa.
Also, check back to my previous post, as xoops.org was hacked, the same was happend and XOOPS (Cube) 2.0.11.2 JP in the same week, no one is protected.
If the enviroment is not secure, your CMS is not secure too...
Yeah the International community is a big advantage, if act as real support sites, not as current, check Russian, Japanese and Russian (Japanese not for Cube) - They says: XOOPS core is affected by bug and was hacked, but XOOPS Cube is not affected by this bug - so this means only one to me (take the answer to yourself)
XOOPS.ORG says we was hacked by blah, blah etc. and the same in long pleada - and rejected by this International communitys with the words, XOOPS was hacked by a bug in the core - this is not support, this is betrayal...
After this, I dont have more respect for herko's xoops.
U're wrong, XOOPS.ORG is overtaken by Mithrandir aka Ian Pederson, and weeks ago by Keo Skalpa.
Also, check back to my previous post, as xoops.org was hacked, the same was happend and XOOPS (Cube) 2.0.11.2 JP in the same week, no one is protected.
If the enviroment is not secure, your CMS is not secure too...
Yeah the International community is a big advantage, if act as real support sites, not as current, check Russian, Japanese and Russian (Japanese not for Cube) - They says: XOOPS core is affected by bug and was hacked, but XOOPS Cube is not affected by this bug - so this means only one to me (take the answer to yourself)
XOOPS.ORG says we was hacked by blah, blah etc. and the same in long pleada - and rejected by this International communitys with the words, XOOPS was hacked by a bug in the core - this is not support, this is betrayal...
Re: Xoops.org hacked?
投稿者: Mikhail | 投稿日時: 2005-10-24 3:59
ep98さんは書きました:
引用:
After this, I dont have more respect for herko's xoops.
Hi!!
引用:
U're wrong, XOOPS.ORG is overtaken by Mithrandir aka Ian Pederson, and weeks ago by Keo Skalpa.
yes, I know... But I think (I feel) that the great xoops project from the past is dead, and... - sorry, but I just dont believe in xoops.org owners. Is simple for me.
引用:
Also, check back to my previous post, as xoops.org was hacked,
when? what post? about what?
引用:
the same was happend and XOOPS (Cube) 2.0.11.2 JP in the same week, no one is protected.
What??????? please, details!!!
引用:
If the enviroment is not secure, your CMS is not secure too...
Well, I know about the xoops.org bug, but not in xoops cube.
[!?!?!]
引用:
Yeah the International community is a big advantage, if act as real support sites, not as current, check Russian, Japanese and Russian (Japanese not for Cube) - They says: XOOPS core is affected by bug and was hacked, but XOOPS Cube is not affected by this bug - so this means only one to me (take the answer to yourself)
I believe that is a true answer, I think... (im still thinking about your security problem with xoops cube...details! details! details, please!)
引用:
XOOPS.ORG says we was hacked by blah, blah etc. and the same in long pleada - and rejected by this International communitys with the words, XOOPS was hacked by a bug in the core - this is not support, this is betrayal...
XOOPS.ORG says the same thing ever: "Don’t worry, be happy, don’t think, don’t complain, just be happy and write good things on forums. And more blah, blah, blah, blah... etc.
Tired.
[]s from Brasil,
mikhail
Re: Xoops.org hacked?
投稿者: m0nty | 投稿日時: 2005-10-24 8:41
cut the crap mikhail. your respect for xoops died because you didn't get your own way and because you were banned from the site after numerous warnings about your blatant posts and behaviour and fighting on the forum which was nothing to do with xoops.org.. you wanted xoopstotal removed from official status because of a fallout between you and the owners of xoopstotal.
you were warned to keep your fighting off the forum, you were warned many times. in a manner of speaking everyone lost respect for YOU.. not the other way round.. you DON'T have any respect for anyone but yourself.. your continued bringing up of the subject etc etc on this site proves that you're not willing to even move on and get on with your own business.
if you have any respect for onokazu and xoops cube and their community you will cease this blatant posting on this site aswell.
after you were banned you purposely deleted all the files from the server because server permissions were not revoked when you were banned.. your actions then showed what kind of person you are, and that you have no respect.. y hurt a whole community over a grudge you have with 1 or 2 people??? i don't even expect you to give a reasonable response to this message.. and to be honest i don't really care either.
but don't try to make out that herko or mith did you any wrong doing!! because if it was left to herko and mith, you probably would not have been banned at all when you were.. there was a mass of messages from the community asking them to ban you because everyone was fed up of seeing your crap posted everywhere on every topic.. in essence herko & mith were forced to take action against you because you refused to stop! so DON'T blame them for what happened to you, blame yourself!!!
sorry to the rest of you for making this post, it's been a grim week for all concerned..
i do wish xoops cube all the best :) and my regards and respect to onokazu and the rest of the developers.
vaughan
you were warned to keep your fighting off the forum, you were warned many times. in a manner of speaking everyone lost respect for YOU.. not the other way round.. you DON'T have any respect for anyone but yourself.. your continued bringing up of the subject etc etc on this site proves that you're not willing to even move on and get on with your own business.
if you have any respect for onokazu and xoops cube and their community you will cease this blatant posting on this site aswell.
after you were banned you purposely deleted all the files from the server because server permissions were not revoked when you were banned.. your actions then showed what kind of person you are, and that you have no respect.. y hurt a whole community over a grudge you have with 1 or 2 people??? i don't even expect you to give a reasonable response to this message.. and to be honest i don't really care either.
but don't try to make out that herko or mith did you any wrong doing!! because if it was left to herko and mith, you probably would not have been banned at all when you were.. there was a mass of messages from the community asking them to ban you because everyone was fed up of seeing your crap posted everywhere on every topic.. in essence herko & mith were forced to take action against you because you refused to stop! so DON'T blame them for what happened to you, blame yourself!!!
sorry to the rest of you for making this post, it's been a grim week for all concerned..
i do wish xoops cube all the best :) and my regards and respect to onokazu and the rest of the developers.
vaughan
Re: Xoops.org hacked?
投稿者: Mikhail | 投稿日時: 2005-10-24 9:15
we all want to help one another. Human beings are like that. we want to live by each others' happiness, not by each other's misery. we don't want to hate and despise one another.
引用:
so the next time, send me an email,
really: please, delete this hate msg and
send me a copy via email: mikhail.miguelgmail.com
or call me to another forum, not here.
please, respect this project and these people.
I promisse to you, no more flames from me, but
remember: all my credits was deleted from xoops.org
and the url br.xoops.org was solded to a webhost company
But no problem. Now im in peace and hope.
Well, now I need to back to work, without hate... "only the unloved hate; the unloved and the unnatural."
more work, less talk, no flames
[ ]s,
mikhail
引用:
i do wish xoops cube all the best
so the next time, send me an email,
really: please, delete this hate msg and
send me a copy via email: mikhail.miguelgmail.com
or call me to another forum, not here.
please, respect this project and these people.
I promisse to you, no more flames from me, but
remember: all my credits was deleted from xoops.org
and the url br.xoops.org was solded to a webhost company
But no problem. Now im in peace and hope.
Well, now I need to back to work, without hate... "only the unloved hate; the unloved and the unnatural."
more work, less talk, no flames
[ ]s,
mikhail
Re: Xoops.org hacked?
Re: Xoops.org hacked?
Re: Xoops.org hacked?
Re: Xoops.org hacked?
投稿者: Shine | 投稿日時: 2005-10-24 16:43
Tjeez, Mikhail now you are flooding xoopsCube with your nonse and hatred postings!
Please cut this xoops hated postings out Mikhail. GROW UP !!
Your action(s) now here on xoopscube will only scare people and keep them away.
I can only hope Onokazu will keep a strong eye on your action here.
Monty has put it right. It was the xoops community who got sick and tired of your repetatly posting actions on xoops.org. It where the xoops users who asked several times to ban you from the website/forum. Which on the end finally happened.
As for Ono..... Lots of succes with XoopsCube. I surely keep coming here to read how this cms will develope.
Who knows perhaps I'll jump over...
Grtz., Shine
Please cut this xoops hated postings out Mikhail. GROW UP !!
Your action(s) now here on xoopscube will only scare people and keep them away.
I can only hope Onokazu will keep a strong eye on your action here.
Monty has put it right. It was the xoops community who got sick and tired of your repetatly posting actions on xoops.org. It where the xoops users who asked several times to ban you from the website/forum. Which on the end finally happened.
As for Ono..... Lots of succes with XoopsCube. I surely keep coming here to read how this cms will develope.
Who knows perhaps I'll jump over...

Grtz., Shine
Re: Xoops.org hacked?
投稿者: Mikhail | 投稿日時: 2005-10-24 23:14
Shine, I think a lot before start to write this reply for your first post here... Create a big thread and call me to reply with crap and hate each post.
But no.
And I will repeat my last post to m0nty:
you wrote:
引用:
And again, I will repeat my monty reply, now for you:
please, the next time, send me an email,
really: delete this hate msg and
send me a copy via mikhail.miguel@gmail.com
or call me to another forum, not here.
respect this project and these people.
I promisse to you, no more flames from me, but
remember: all my credits was deleted from xoops.org
and the url br.xoops.org was solded to a webhost company
But no problem. Now im in peace and hope.
Well, now I need to back to work, without hate... "only the unloved hate; the unloved and the unnatural."
more work, less talk, no flames
I dont know and I dont want know a perfect english,
but try to understand, because this is not nonse.
[ ]s,
mikhail (still coding)
-----------------------------------------------
引用:
But no.
And I will repeat my last post to m0nty:
you wrote:
引用:
As for Ono..... Lots of succes with XoopsCube. I surely keep coming here to read how this cms will develope.
Who knows perhaps I'll jump over...
Grtz., Shine
And again, I will repeat my monty reply, now for you:
please, the next time, send me an email,
really: delete this hate msg and
send me a copy via mikhail.miguel@gmail.com
or call me to another forum, not here.
respect this project and these people.
I promisse to you, no more flames from me, but
remember: all my credits was deleted from xoops.org
and the url br.xoops.org was solded to a webhost company
But no problem. Now im in peace and hope.
Well, now I need to back to work, without hate... "only the unloved hate; the unloved and the unnatural."
more work, less talk, no flames
I dont know and I dont want know a perfect english,
but try to understand, because this is not nonse.
[ ]s,
mikhail (still coding)
-----------------------------------------------
引用:
Shineさんは書きました:
Tjeez, Mikhail now you are flooding xoopsCube with your nonse and hatred postings!
Please cut this xoops hated postings out Mikhail. GROW UP !!
Your action(s) now here on xoopscube will only scare people and keep them away.
I can only hope Onokazu will keep a strong eye on your action here.
Monty has put it right. It was the xoops community who got sick and tired of your repetatly posting actions on xoops.org. It where the xoops users who asked several times to ban you from the website/forum. Which on the end finally happened.


