IPB

Welcome Guest ( Log In | Register )

 
Reply to this topicStart new topic
> The On-Going Hacker Attack
Elemental Crisis
post May 17 2006, 12:15 AM
Post #1


Administrator
*****

Group: Owner
Posts: 309
Joined: 23-January 06
From: Cali
Member No.: 1



For those of you who dont know as of lately (past couple of months) someone/some goup or multiple groups has been finding exploits in the IPB code allowing things like SQL Injection, changing admin account(s) passwords and other ways basiclly with a goal or runing someones forums.

Even here we've had about 5 attempts using exploits snice this started, but no worries i've been able to stop this and with the release of IPB 2.1.6 all KNOWN exploits have been fixed. 2.1.6 was released because of all the recent exploits, it was not planned at all.

At RPGCrisis in order for you to start posting you have to activate your account by accessing your e-mail and clicking on the link. A almost sure and garenteed way to stop these hack attempts here at RPGCrisis would be to ban all free e-mail service providers. I dont want to do this because almost everyone uses hotmail, yahoo GMail or another free e-mail service. But if whoever is making these exploits continue then this will pose a greater risk to RPGCrisis and I will ban all free e-mail services.

I can always ban reported IP's but anyone can change their IP, its not hard at all. Im open for suggestions so if you have any go ahead and post them here.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
ndrd
post May 17 2006, 12:32 PM
Post #2


Panda Ball King
*****

Group: Member
Posts: 372
Joined: 9-March 06
Member No.: 23



one question... if it gets to the point where there are no more free email sign ups... will we be able to keep our account with our current hotmail-like accounts? also if we only have a hotmail or orther free email service, if the site goes down again can we email you to ask for the ability to sign up using them? if not that would suck because last time that happened to me i tried my hotmail (didnt work) and my gmail (also didnt work (IMG:style_emoticons/default/sad.gif) ) until finally i had to use one i havnt used in about 5-7 years... luckily it still worked but for those who dont have one of those may not be able to sign up and that would reduce member a fair bit... anyway just thought id ask
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
Elemental Crisis
post May 17 2006, 10:06 PM
Post #3


Administrator
*****

Group: Owner
Posts: 309
Joined: 23-January 06
From: Cali
Member No.: 1



Only new registrations would not be allowed to use them, I may just make it where I have to approve every new registration.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
The_Sick_Boy
post May 22 2006, 12:32 AM
Post #4


Tech Admin
****

Group: Administrators
Posts: 222
Joined: 25-January 06
Member No.: 13



That would be the best way to do it...otherwise, you would turn off alot of newcomers. Who wants to pay for an email account when we can get really good ones for free?
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
mylittlewindmill
post May 23 2006, 01:33 AM
Post #5


RPGCrisis Level 3
***

Group: Member
Posts: 70
Joined: 31-January 06
Member No.: 16



that's what happened to www.rpg-palace.com
lucky nothing's happened here yet
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
ndrd
post Jun 3 2006, 01:29 PM
Post #6


Panda Ball King
*****

Group: Member
Posts: 372
Joined: 9-March 06
Member No.: 23



But you have to imaging that it could become a pain in the ass to validate every new registration, especially if this site starts to pick up the pace a little. One solution to this problem would be to allow mods and maybe staff to be able to validate them aswell. but then there could be and issue, i no a bit unlikly, of corruption amongst the mods. EC could choose which mods could do it though...
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
« Next Oldest · Announcements · Next Newest »

Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 

Display Mode: Standard · Switch to: Linear+ · Switch to: Outline

Track this topic · Email this topic · Print this topic · Subscribe to this forum

Lo-Fi Version Time is now: 28th June 2006 - 04:33 PM