phpBB mass-hack being prepared (FuntKlakow-bot)?- general countermeasures

Zayne.H

New member
Feb 10, 2006
3,459
1
0
Chestnut Hill, Massachusetts
ZayneHumphrey.com
Zenny
5
Points
0
<div class='quotetop'></div><div class='quotemain'>During the last few days a bot using a name FuntKlakow, has been
registering to at least hundreds (maybe thousands) of phpBB forums.

http://www.google.com/search?hl=com&q=FuntKlakow&btnG=Hae&me ta=

Bot is also capable for posting to forums:
http://forum.uebimiau.org/search.php?search_author=FuntKlako w
http://www.alternativ.ro/forum/search.php?search_author=Funt Klakow

But most on most forums the bot keeps silent.

Ok, what is a danger?
Next time the phpBB announces a critical vulnerability, the bot would
have everything ready (just a post click away) from attacking
thousands of sites/forums.

Best defence against these kinds of bot-members, might be setting up
honeypot-forums, which the search engines can find but to which there
are no permanent links from the web. When new bot-members are
detected, such would be listed at each particular forum makers
homepage.

When a bot would then try to register to a forum, the forum program
would check the user/bot inputted user-name (or other characteristics)
and if those would match to those catched by a honeypot-forums,
registerin such user detais would be eliminated ( and possible IP
banned for some time)</div>

HOLY SHIT!!

GIMPY OR FOX..please set up secrutiy measures!! We could lose this forum!

Ill try to get to the bots program code and disable it..
 

GrayFox

New member
Feb 2, 2006
4,044
0
0
Zenny
23
Points
0
We aren't on phpBB though... so this forum isn't vulnerable to this particular attack.
 

Gimpy

New member
Jan 24, 2006
1,043
0
0
Zenny
3
Points
0
phpbb is free coding what do you expect..... you pay for good stuff. vB works on all bugs and security patches.... as of now I haven't seen a vBulletin 3.5 series hacked yet, unless someone was using beta....... which in that case can happen it's beta however now it has a full release so we are okay. Don't worry guys vB is very safe and strong. :)
 

GrayFox

New member
Feb 2, 2006
4,044
0
0
Zenny
23
Points
0
Gaming.word seems to be a phpbb forum, so make sure they take precautions over this Zayne.
 

Gimpy

New member
Jan 24, 2006
1,043
0
0
Zenny
3
Points
0
this is why you get a vbulletin, we always update it :D I'd like to see someone hack a vB 3.5.4 :D