You are missing our premiere tool bar navigation system! Register and use it for FREE!

NukeCops  
•  Home •  Downloads •  Gallery •  Your Account •  Forums • 
Readme First
- Readme First! -

Read and follow the rules, otherwise your posts will be closed
Modules
· Home
· FAQ
· Buy a Theme
· Advertising
· AvantGo
· Bookmarks
· Columbia
· Community
· Donations
· Downloads
· Feedback
· Forums
· PHP-Nuke HOWTO
· Private Messages
· Search
· Statistics
· Stories Archive
· Submit News
· Surveys
· Theme Gallery
· Top
· Topics
· Your Account
Who's Online
There are currently, 51 guest(s) and 0 member(s) that are online.

You are Anonymous user. You can register for free by clicking here
Nuke Cops :: View topic - Site Sucurity [ ]
 Forum FAQ  •  Search  •   •  Memberlist  •  Usergroups   •  Register  •  Profile •    •  Log in to check your private messages  •  Log in

 
This forum is locked: you cannot post, reply to, or edit topics.  This topic is locked: you cannot edit posts or make replies.printer-friendly view
View previous topic Log in to check your private messages View next topic
Author Message
scott45
Nuke Cadet
Nuke Cadet


Joined: Jul 19, 2004
Posts: 4


PostPosted: Wed Aug 25, 2004 5:40 pm Reply with quoteBack to top

I have phpnuke 7.4 I uploaded the sucurity patch for it it all seems to be working ok.

This is what the patch has added.
This website is protected by: HackerAssassins™, Sentinel™, Admin Secure, Chatserv Patches, and more...

I typed in http://www.foo.bar/index.php?hackme=666 un/*hello world!*/ion%13%10%7fselect%20apple,bananas/**/from%08juice_authors

It works ok comes up and says you have been baned from site.

The prob I.am having is I added a new user this is a made up user I used it to see if email on registration was working ok with a yahoo email of mine. THis was just for a test to see if every thing was working ok.

Its been a couple months ago Every now and then I see somone is loged in as a member using this name.

I have Ocuri also I check it for the IP address and location from there I have to ban the IP.

If I remove the user from DB will this stop them from logging in as a member.

Do you have any idea how they would be doing this they would have to have got the password from my DB I guess.

Also I had some one loged in as a member with a name that is not in the user ID in DB.

I dont know if it is the same person are not the IP are deff but they may not be on a static IP.

Any Idea what I should do I guess they cant hurt anything they have not got into the admin panel just loged in as a member at this point.

This Is a community website nothing is locked for members its open for anyone right now.

The URL is http://www.rushvilleindiana.us

I just hate to have to go through putting site back up if who ever this is gets into admin are in the DB.

Thanks scott
Find all posts by scott45View user's profileSend private messageVisit poster's website
nobleclem
Lieutenant
Lieutenant


Joined: May 27, 2003
Posts: 167

Location: Southfield, MI

PostPosted: Wed Aug 25, 2004 5:50 pm Reply with quoteBack to top

if its just a dummy user you dont use then I would remove it.

_________________
....Check Out These Great Sites....


http://HackerAssassins.com is home to PHP-Nuke 7.4 HA Enhanced | http://FatalException.us

http://Vaelio.com < -- > The Future of CMS Technology and Design Today -- coming soon
Find all posts by nobleclemView user's profileSend private messageVisit poster's websiteAIM AddressMSN MessengerICQ Number
madman
Support Mod
Support Mod


Joined: Feb 15, 2004
Posts: 806


PostPosted: Sat Aug 28, 2004 3:24 pm Reply with quoteBack to top

scott45 wrote:
The prob I.am having is I added a new user this is a made up user I used it to see if email on registration was working ok with a yahoo email of mine. THis was just for a test to see if every thing was working ok.

Its been a couple months ago Every now and then I see somone is loged in as a member using this name.

I have Ocuri also I check it for the IP address and location from there I have to ban the IP.

If I remove the user from DB will this stop them from logging in as a member.


Try logging in as that "user" and change the password. Wait and see if they can still able to login again. Also check if this account logging in from different IP/location. Sometimes, this is caused by nothing but we forgot the account cookie still resides in different browser's that we were used. Smile

scott45 wrote:
Do you have any idea how they would be doing this they would have to have got the password from my DB I guess.


Another possibility, someone had stealing all your cookie informations. Even if this is far from my conclusion, but it's not impossible.

scott45 wrote:
Also I had some one loged in as a member with a name that is not in the user ID in DB.

I dont know if it is the same person are not the IP are deff but they may not be on a static IP.

Any Idea what I should do I guess they cant hurt anything they have not got into the admin panel just loged in as a member at this point.


Do not rely on block or module that displaying users who's logged in. I have no idea what addons or modules that can track user's session precisely but consider to put additional different blocks or modules that do the similar task, just for your comparion purposes.

_________________
I'm Image
Find all posts by madmanView user's profileSend private messageVisit poster's websiteYahoo MessengerMSN Messenger
Display posts from previous:      
This forum is locked: you cannot post, reply to, or edit topics.  This topic is locked: you cannot edit posts or make replies.printer-friendly view
View previous topic Log in to check your private messages View next topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum



Powered by phpBB © 2001, 2005 phpBB Group

Ported by Nuke Cops © 2003 www.nukecops.com
:: FI Theme :: PHP-Nuke theme by coldblooded (www.nukemods.com) ::
Powered by · TOGETHER TEAM srl ITALY http://www.togetherteam.it · DONDELEO E-COMMERCE http://www.DonDeLeo.com
Web site engine's code is Copyright © 2002 by PHP-Nuke. All Rights Reserved. PHP-Nuke is Free Software released under the GNU/GPL license.
Page Generation: 0.204 Seconds - 300 pages served in past 5 minutes. Nuke Cops Founded by Paul Laudanski (Zhen-Xjell)
:: FI Theme :: PHP-Nuke theme by coldblooded (www.nukemods.com) ::