eh
Miscellaneous Forums/General Discussion/eh
www.leadwerks.com
poor ol' josh...
Sigh!
Things like this get on my nerves. Hows he going to get his website back now?
That's pathetic. Well it's *always* pathetic, but even more so when it's a site belonging to an individual and it's their livelihood that's being screwed with.
Hopefully they just replaced the start page. They got his forums too. He JUST switched from phpbb to punbb and I wonder if that opened a back door.
I shall investigate this.
The good news is this does not appear to be a targetted attack. This is an opportunist attack.
Hate crime
Vatan is one of the games being developed using Leadwerks tools afaik.
IPete2.
Time to set the folders permission correctly...
I had a similaire attack, it is a script that is replacing every starting pages (index.htm... index.asp...default.php...) that has a ''bad'' folder permissions setup.
Hope this help.
Yes, other sites attacked by them have the same problem. I checked another site and the forums were still there.
www.leadwerks.com/forum
the old /forums phpbb is still there for archival purposes. the above /forum link is the new forum.
I don't want to alarm anyone but do not look at the www.leadwerks.com as there is a hidden flash script embedded in that page, which may have hacked your system or something. If you've got "click to activate flash player" activated in firefox you can see it just before "Netteki Atesiz". There is an 'F' icon there.
Therefore if you've already looked at that page and didn't have flash switched off, then best get your system checked out incase you got something nasty. BACK UP YOUR WORK NOW! Just incase :)
Thank god for FlashBlock, and these people need to get a life.
They probably aren't very good hax0rs, since hacking these sorts of regular web sites has turned into an everyday thing.
People like this are just being lame.
Hack something difficult for once!
(And I hope you get arrested for it).
I remember coming across a Linux program once that would scan my web folders for any known security holes.
I'm not sure if it still exists or ever existed, though.
Did a full scan with Symantec and came up with nothing.
Roughly 7 days after switching on my site I found repeated attacks against my site hunting for joomla vulnerabilities.
I thought it was someone with a grudge at first, until I dug deeper into the search engine stats, which showed a few searches for joomla code in the URL, which was obviously picked up by a bot of some sort.
Luckily I was patched to hell and back, but my hosting company added a few additional blocks on my behalf (after 'accidentally' disabling the ones I had when they where trying to explore a problem with their hosting!).
I really can't understand the mentality behind this sort of thing.. Complete pains in the butt.
Wow, those guys are really leet. I was in the ER yesterday undergoing outpatient surgery while this happened. Today is my birthday, and my roommates are also getting married today.
Way to go dude, you sure stuck it to evil corporate America.
I had have been getting ready to change servers to godaddy, so I guess this is a good time to do it.
Poor old "halo" - sniffage.
Still, Happy Birthday.
Those Turkish hackers used to advertise their own sites when attacking other sites. Let's just hope they have been taking just as much of a battering as they have been inflicting.
They've got tons of bases they operate from, but everything is in Turkish and I can't understand a thing.
Still, I'm sure I'll turn out to be an irritation to them.
I did a full scan with Windows Defender and came up with nothing. I did, however, have a very good hardware and software firewall in place, so I wouldn't want to give anyone the impression they shouldn't check.
do hacks like this ever strike twice?