General Chat
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Codewalkers ForumsGeneralGeneral Chat

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Codewalkers Forums Sponsor:
  #1  
Old October 23rd, 2005, 09:33 PM
pickleman78 pickleman78 is offline
Codewalkers Novice (500 - 999 posts)
 
Join Date: Apr 2007
Location: Dallas,TX,USA
Posts: 582 pickleman78 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 2
Send a message via AIM to pickleman78
Hacker issue

Alrigh, I need some help here.

On a site, We have a troublesome user who keeps doing defacement of our forums through a security hole in our login script, however he has previously uploaded malicious files and stolen passwords from our site, other sites, etc etc (though we have no real evidence of other than admission of the other sites). Regardless, is there anything we can do about this user, the web hosting company is worthless, and won't help us find anything, so is there anyone we can report him to? He already has a record with hacking and clearing other sites through some bugs. Can you help me out on what to do with this jerk?

Reply With Quote
  #2  
Old October 24th, 2005, 01:35 AM
lig's Avatar
lig lig is offline
"Forum Nazi"
Codewalkers Demi-God (4500 - 4999 posts)
 
Join Date: Apr 2007
Location: Jacksonville, Fl
Posts: 4,729 lig User rank is Private First Class (20 - 50 Reputation Level)lig User rank is Private First Class (20 - 50 Reputation Level) 
Time spent in forums: 4 Days 1 h 44 m 18 sec
Reputation Power: 6
RE: Hacker issue

Maybe the cops.. technically information theft is a crime.
Quote:
stolen passwords from our site

Reply With Quote
  #3  
Old October 24th, 2005, 01:40 AM
pickleman78 pickleman78 is offline
Codewalkers Novice (500 - 999 posts)
 
Join Date: Apr 2007
Location: Dallas,TX,USA
Posts: 582 pickleman78 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 2
Send a message via AIM to pickleman78
RE: Hacker issue

I'm just not sure what police to contact... We've informed our host, but they are lazy and don't really care. I want to see this guy go down basically, because I'm tired of him, and I'm tired of him messing with stuff

Reply With Quote
  #4  
Old October 24th, 2005, 01:30 PM
tkarkkainen's Avatar
tkarkkainen tkarkkainen is offline
Moderator
Click here for more information
 
Join Date: Apr 2007
Location: Finland
Posts: 2,327 tkarkkainen User rank is Lance Corporal (50 - 100 Reputation Level)tkarkkainen User rank is Lance Corporal (50 - 100 Reputation Level)tkarkkainen User rank is Lance Corporal (50 - 100 Reputation Level)  Folding Points: 26229 Folding Title: Starter FolderFolding Points: 26229 Folding Title: Starter Folder
Time spent in forums: 6 Days 12 h 42 m 12 sec
Reputation Power: 4
RE: Hacker issue

Your local police station should guide you forwards.

Reply With Quote
  #5  
Old October 24th, 2005, 11:48 PM
notepad notepad is offline
Codewalkers Loyal (3000 - 3499 posts)
 
Join Date: Apr 2007
Location: Central, IL USA
Posts: 3,214 notepad User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 5
Send a message via AIM to notepad
RE: Hacker issue

even if you're lucky enough to have a cyber-crime unit in your area, they probably won't be to concerned about it.. they have child molestors and fraud to worry about. just plug the hole. or, switch hosts.

Reply With Quote
  #6  
Old October 25th, 2005, 12:38 PM
Matt Matt is offline
Contributing User
Codewalkers Specialist (4000 - 4499 posts)
 
Join Date: Apr 2007
Location: Florida
Posts: 4,158 Matt User rank is Private First Class (20 - 50 Reputation Level)Matt User rank is Private First Class (20 - 50 Reputation Level) 
Time spent in forums: 4 h 10 m 20 sec
Reputation Power: 6
RE: Hacker issue

Exactly...you have to show something like $250,000 in damage for the police to care about it...

Like notepad said..plug the security holes have everyone change their passwords and move on...

Reply With Quote
  #7  
Old October 25th, 2005, 02:07 PM
pickleman78 pickleman78 is offline
Codewalkers Novice (500 - 999 posts)
 
Join Date: Apr 2007
Location: Dallas,TX,USA
Posts: 582 pickleman78 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 2
Send a message via AIM to pickleman78
RE: Hacker issue

alright, done and done.


We found out what the exploit was, and it was related to the host, not one of our scripts, which allowd him to upload the wonderful script PHP shell, and do all kinds of fun... Ironically, the host has frequently ignored our complaints about it, and now they turned off exec/system calls (only after we switched hosts, and sent them a long complaint), though they failed to do anything about the original hole that allowed him access in the first place.... oh well, its their problem now

Reply With Quote
  #8  
Old October 25th, 2005, 02:20 PM
tkarkkainen's Avatar
tkarkkainen tkarkkainen is offline
Moderator
Click here for more information
 
Join Date: Apr 2007
Location: Finland
Posts: 2,327 tkarkkainen User rank is Lance Corporal (50 - 100 Reputation Level)tkarkkainen User rank is Lance Corporal (50 - 100 Reputation Level)tkarkkainen User rank is Lance Corporal (50 - 100 Reputation Level)  Folding Points: 26229 Folding Title: Starter FolderFolding Points: 26229 Folding Title: Starter Folder
Time spent in forums: 6 Days 12 h 42 m 12 sec
Reputation Power: 4
RE: Hacker issue

If he always comes through the same IP address, you could try contacting the ISP that owns the address.

Reply With Quote
  #9  
Old October 26th, 2005, 11:02 PM
pickleman78 pickleman78 is offline
Codewalkers Novice (500 - 999 posts)
 
Join Date: Apr 2007
Location: Dallas,TX,USA
Posts: 582 pickleman78 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 2
Send a message via AIM to pickleman78
RE: Hacker issue

We're also trying that too, but since we have a horribly un-cooperative web host, they kind of won't help us out... so I guess we'll have to drop it... For other reasons, we know his name, his address, his phone number, and all sorts of stuff not related to this, but thats kind of useless if we don't have real solid proof... which could be gotten from the webhost, but they kinda won't....

Reply With Quote
  #10  
Old October 29th, 2005, 09:04 PM
brut brut is offline
Codewalkers Newbie (0 - 499 posts)
 
Join Date: Apr 2007
Posts: 367 brut User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 3 m 30 sec
Reputation Power: 2
RE: Hacker issue

You could have Tony The Wrench pay him a little visit. You know; make him an offer he can't refuse ;-)

Reply With Quote
Reply

Viewing: Codewalkers ForumsGeneralGeneral Chat > Hacker issue


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump



 Free IT White Papers!
 
How to Present Effectively Online
This white paper offers practical and actionable advice on the key steps that any presenter should consider as they plan and execute a Webinar or online meeting.

Request Your Free Technology Downloads!
 
Open Source Security Myths
Open Source Software (OSS) is computer software whose source code is available to the general public with relaxed or non-existent intellectual property restrictions (or arrangement such as the public domain), and is usually developed with the input of many contributors.

Request Your Free Technology Downloads!
 
Power and Cooling Capacity Management for Data Centers
This paper describes the principles for achieving power and cooling capacity management.

Request Your Free Technology Downloads!
 
Scalable, Fault-Tolerant NAS for Oracle - The Next Generation
For several years NAS has been evolving as a storage alternative for Oracle databases, and for good reason: NAS is quite often the simplest, most cost-effective storage approach for Oracle. Learn about the benefits that HP's approach to scalable NAS brings to Oracle environments in this comprehensive white paper.

Request Your Free Technology Downloads!
 
Understanding Web Application Security Challenges
This white paper discusses many common threats and preventive measures for Web application security, and explains what you can do to help protect your organization.

Request Your Free Technology Downloads!
 

Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 





© 2003-2009 by Developer Shed. All rights reserved. DS Cluster 3 hosted by Hostway
Stay green...Green IT