Jump to content

InsanelyHacked!


ColdFusion

So it appears someone with nothing better to do took it upon themselves to bring down the site for no good reason. They used an Invision PowerBoard exploit which allowed them to gain root access to the database, and after backing it up for their own gratification and future exploitation, they deleted it. I guess this is some people's idea of fun, but the simple fact is: it's a serious crime. So serious in fact, that the investigation has been passed to the UK's Serious Organised Crime Agency (SOCA), and we have been able to provide them with a number of leads thanks to some sterling work from our excellent mods!

 

We'd like to take this opportunity to appologise for the fact that your email addresses have been compromised and may be passed/sold on to third parties who may like to inform you from time to time that is indeed possible to double the size of your genitalia and perform like a god or goddess in the bedroom. This is extremely unfortunate, but we can assure you that your passwords are safely encrypted on our server so we should be free of account abuse. However, if your password is not particularly strong, we recommend you change it to something stronger ASAP. This is because commonly used passwords could be compared against a list of their encrypted versions, so passwords such "hello" are really not a wise choice. We recommend that your password be at least 8 characters long and contain a mixture of letters and numbers.

 

When we purchased InsanelyMac we wrongly assumed that it was set up securely, and since the hosting equipment was part of the purchase, we saw no immediate reason to move the hosting away from ThePlanet. Obviously this incident has forced us to look carefully at the security arrangements, and as a result we have migrated the site over to our own servers, patched the forum to the latest version and added another layer of authentication where required. We have also revised our back-up strategy so that any future incidents can be recovered from more quickly. So despite being blackmailed by those claiming to be responsible for the attack, we are pleased to announce the return of InsanelyMac, now more secure than ever.


User Feedback

Recommended Comments



i think it was apple! nasty buggers, lol. but seriously good to hear everything is back to normal! keep up the great work...

 

Thanks,

 

RandomX

Link to comment
Share on other sites

this is my first post and this site has been and is very useful to people who just love to grok just like me. it is just unfortunate that we have to bear the inconvenience wrought by some selfish people who just hate to see other people learn and gain something through the forums. thanks to all of you guys here at insanelymac for everything i have learned, you know who you guys are..BEERS!

Link to comment
Share on other sites

The site was brought up quickly, and improved: I'm happy with that. When buying equipment or a site from someone, it's smart to do a security audit in case the previous admin left it in a bad state. Hindsight, 20/20, etc.

 

 

I'm not worried about my email address being known, though I've changed the one I registered, along with my easily-guessed password (this account was hastily set up). Thank you for the notification of the security breach. I made a post that took about 5min of experimentation to get benchmark scores on, so that's all I've lost.

Link to comment
Share on other sites

I learned the hard way that you can't just sit back to collect revenue from ad money, but you also need to actively update the forum's system to avoid exploits before they happen.

 

I'm just glad I used a temporary e-mail account to sign up for these forums. I suggest everybody should do the same. As long as you check your control panel for messages, there's no need to actually have anything forwarded to your real e-mail address.

 

But u can pay to a good programer or run a program to see some exploids, or open ports, stuff like that.

 

Well im far far far far far far away from UK, but i think is faster, with two server more secure.

Link to comment
Share on other sites

We'd like to take this opportunity to appologise for the fact that your email addresses have been compromised and may be passed/sold on to third parties who may like to inform you from time to time that is indeed possible to double the size of your genitalia and perform like a god or goddess in the bedroom.

That doesn't soudn too bad! :D

Link to comment
Share on other sites

There was some supposed contact with the guy who hacked it on IRC. I don't believe it though, considering the guy appeared to be russian (from what I heard, I wasn't there).

Link to comment
Share on other sites

I used a temporary address too. You don't get SPAM, but the person who has the database can now reset your password. It's why I changed the email address and password.

Link to comment
Share on other sites

There was some supposed contact with the guy who hacked it on IRC. I don't believe it though, considering the guy appeared to be russian (from what I heard, I wasn't there).

ive heard lots of storys... most of em make sense.... :D

Link to comment
Share on other sites

BTW, I am lovin' the new sig bwhsh8r :P

haha thanks, and yet its true :thumbsdown_anim:

 

just thought i should put it there so that no one can say its my fault when theyre hacked :whistle:

Link to comment
Share on other sites



×
×
  • Create New...