You are missing our premiere tool bar navigation system! Register and use it for FREE!

NukeCops  
•  Home •  Downloads •  Gallery •  Your Account •  Forums • 
Readme First
- Readme First! -

Read and follow the rules, otherwise your posts will be closed
Modules
· Home
· FAQ
· Buy a Theme
· Advertising
· AvantGo
· Bookmarks
· Columbia
· Community
· Donations
· Downloads
· Feedback
· Forums
· PHP-Nuke HOWTO
· Private Messages
· Search
· Statistics
· Stories Archive
· Submit News
· Surveys
· Theme Gallery
· Top
· Topics
· Your Account
Who's Online
There are currently, 57 guest(s) and 1 member(s) that are online.

You are Anonymous user. You can register for free by clicking here
Nuke Cops :: View topic - My site have been hacked [ ]
 Forum FAQ  •  Search  •   •  Memberlist  •  Usergroups   •  Register  •  Profile •    •  Log in to check your private messages  •  Log in

 
Post new topic  Reply to topicprinter-friendly view
View previous topic Log in to check your private messages View next topic
Author Message
mvillamizar
Nuke Cadet
Nuke Cadet


Joined: Jan 26, 2005
Posts: 2


PostPosted: Wed Jul 12, 2006 3:50 pm Reply with quoteBack to top

Hi,

I've got a web site running on PHPNUKE, 3 month ago a hacker called 'CRACKER CHILD' deleted all folders and files from the modules folder.

A few days ago; I don't know if the same hacker, someone upload a folder with some files inside the modules folder. I checked those files and it was a login web page from bank of America.

Very scary.... Shocked .

First question, how on earth some one can upload or delete files from a server, without knowing the FTP user and password?

Second, it is a security issue on PHPNUKE? has anyone heard something similar.

I really appreciate if some one answer this post.


Thanks
Find all posts by mvillamizarView user's profileSend private message
Colorteck
Corporal
Corporal


Joined: Dec 26, 2003
Posts: 73


PostPosted: Wed Jul 12, 2006 7:47 pm Reply with quoteBack to top

Yes heard of it as it happens all the time if you do not keep your software up to date. I do not know what version of Nuke you are running but you need to find out.

Also make sure your phpbb forums are up to date as I think it is at 2.021 now. If you do a nuke upgrade you still will need to upgrade your phpbb forums as well. Apparently you are running a version of phpnuke that has issues.

They do not need your login info to get scripts into your account. Maybe you should also run some security features with Nuke as they are all listed here.
Find all posts by ColorteckView user's profileSend private messageVisit poster's website
gsicard
Sergeant
Sergeant


Joined: Feb 08, 2003
Posts: 105

Location: Virginia, USA

PostPosted: Thu Jul 13, 2006 5:42 am Reply with quoteBack to top

Create and .htaccess file and upload it to your modules directory with this code in it.

Quote:

<filesmatch "\.php$">
deny from all
</filesmatch>


I had to use quote because the code function seems to be disabled.

your modules copyright and forums admin will not work while this file is active but it should give you some protection.
Find all posts by gsicardView user's profileSend private messageSend e-mailMSN Messenger
mvillamizar
Nuke Cadet
Nuke Cadet


Joined: Jan 26, 2005
Posts: 2


PostPosted: Thu Jul 13, 2006 3:04 pm Reply with quoteBack to top

Thanks for your answer,

the phpnuke version is 7.6
I don't have any forum install on my web site.

My hosting does not let me create .htaccess file.
What can I do in this case?

I think i found the problem, it is a security hole in My_eGallery, I did found a c99shell.php and with that script you could deleat, create, modify a file, also create and deleat folders.

Does any one know how to secure My_eGallery?

Thanks
Find all posts by mvillamizarView user's profileSend private message
Colorteck
Corporal
Corporal


Joined: Dec 26, 2003
Posts: 73


PostPosted: Thu Jul 13, 2006 7:37 pm Reply with quoteBack to top

Most likely you will need to run the latest version of gallery. Check their website and see what the latest version is. E-Gallery the same thing as

http://www.nukedgallery.net/ ?

If not maybe you want to use this one. Very Happy
Find all posts by ColorteckView user's profileSend private messageVisit poster's website
HalJordan
Support Staff
Support Staff


Joined: Aug 07, 2004
Posts: 1117

Location: Somewhere around Hunan, China

PostPosted: Sat Jul 15, 2006 7:57 pm Reply with quoteBack to top

Get and install the chatserv patched files for 7.4.
Get and install Nuke Sentinel.
Check all your permissions on files and folders. Files should be 644 and folders 755 (only authorised ftp user can write to folders and files.

I second the motions about upgrading the forums and eGallery. I have used menalto's Gallery with no probs.

_________________
Obedezco, pero no cumplo.

Proprietor, www.computernewbie.info
Support staff, www.nukecops.com
Find all posts by HalJordanView user's profileSend private messageSend e-mailVisit poster's websiteAIM Address
Display posts from previous:      
Post new topic  Reply to topicprinter-friendly view
View previous topic Log in to check your private messages View next topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum



Powered by phpBB © 2001, 2005 phpBB Group

Ported by Nuke Cops © 2003 www.nukecops.com
:: FI Theme :: PHP-Nuke theme by coldblooded (www.nukemods.com) ::
Powered by · TOGETHER TEAM srl ITALY http://www.togetherteam.it · DONDELEO E-COMMERCE http://www.DonDeLeo.com
Web site engine's code is Copyright © 2002 by PHP-Nuke. All Rights Reserved. PHP-Nuke is Free Software released under the GNU/GPL license.
Page Generation: 0.236 Seconds - 305 pages served in past 5 minutes. Nuke Cops Founded by Paul Laudanski (Zhen-Xjell)
:: FI Theme :: PHP-Nuke theme by coldblooded (www.nukemods.com) ::