![]() | I am Aji Issac Mathew also known as AjiNIMC at various forums. I am webby and I think webby, being a part time blogger, this blog is a documentation of my experiences and my learning. Blog Stats (06 June 2008): There are currently 306 posts and 1100 comments (and 397,307 spam comments), contained within 17 categories. | ![]() |
| I am into professional Web Marketing services which includes Web marketing strategies, SEO/SEM, Content Designing, Web Designing for usability, conversion improvement and various other things. There are limited availability per month. We don't take too many clients but we make sure that all our clients get their share of success. I worked on in-house sites for over 5 years, now is the time to help others with my experience. I have a great team helping me achieve this. A very creative and experienced team. I write at http://www.dawebmarketing.com/kb/clients/. Contact aji.issac (at the rate) digitalavenues.com and get your share of success. |
Home > Permalink NIMC forums got hacked | |
Aug
28 I was using invision, an old version, the version when it used to be free. I always wanted to shift to phpbb as it keeps the code updated for free. I think this is the time when I should shift to phpbb. I will certainly check the log files and find out the people behind these hackings. I wonder what they get out of it. Bad day, I slept only for 3 hrs yesterday because of these idiots. I have a backup of 17th Aug 2006. I did not automate the whole backup system yet, so I should do that as well. I will try to bring it back asap. | |
| This post was written by AjiNIMC aka Web Kotler at 6:34 am under category Misc(Permalink) | ![]() |
|
| |
|
| |
6 Comments »
| |
Some possible reasons for hacking,
Possibility 1:Invision Power Board 2.1.x vulnerable via injecting HTML into a post via hexidecimal HTML entities. This can’t be a reason as this is due to a changes in how regular expressions are executed in PHP 5 versus PHP 4.
Possibility 2: Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB) 2.1.5 and earlier before 20060308 allows remote attackers to inject arbitrary web script or HTML via a Private Message (PM) in certain circumstances. For the time being I have stopped any registrations.
AjiNIMC on August 28, 2006 - 10:46 pm @ 10:46 pm
Now I am trying to update it to the latest versions.
AjiNIMC on August 28, 2006 - 10:56 pm @ 10:56 pm
Sir,
as i asked u before….
is it possible to compile the back up of IPB to PHPBB….. i know it’s not possible still i’m asking it……
I would like to thankyou from bottom of my heart to get our community back to the track once again…… thanx a lot….
I think it is a conicidence that……. that day u were talking about hacking and all those things and after that day we got one damn lesson on it………a practical one….I think it is one of the most disadvantage of being famous……everybody run after to catch our neck….
Rajesh on August 29, 2006 - 8:05 am @ 8:05 am
yes and the images that guy put in to the site were really disturbing. Imagine I watching those sick images at 2:00 am, somehow managed to get a sleep. from IPB 1.x to PHPBB is easy conversion http://prdownloads.sourceforge.net/phpbb/conv_ipb2phpBB.zip but for IPB 2.x to PHPBB I will have write more scripts. In IT nothing is impossible till you do not accept it so :).
AjiNIMC on August 29, 2006 - 10:40 am @ 10:40 am
Sirrrrrrrrr….
Which pics u talking about…….
Rajesh on August 29, 2006 - 3:16 pm @ 3:16 pm
The hacker deleted all the DB and created few topics with some disturbing images. Terrible images.
AjiNIMC on August 29, 2006 - 3:26 pm @ 3:26 pm