Register - Login
Views: 99824928
Main - Memberlist - Active users - Calendar - Wiki - IRC Chat - Online users
Ranks - Rules/FAQ - Stats - Latest Posts - Color Chart - Smilies
05-03-22 07:51:35 PM
Jul - NO! GO TO STAR! - Security notice for selected users New poll - New thread - Thread closed
Pages: 1 2 3 4 5 6Next newer thread | Next older thread
Xkeeper

Level: 263


Posts: 15841/25353
EXP: 297155664
For next: 1804789

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 3 days
Last activity: 12 hours

Posted on 04-30-10 07:31:55 PM (last edited by Xkeeper at 05-01-10 07:57 AM) Link
Looks like Mega Mario's back, folks, and this time he decided to research how to get past my security fixes.

It took almost two years, but it turns out I didn't anticipate PHP being as stupid as it was. In any case, the exploit has been patched.

The following users should change their passwords if they are insecure (<= 8 letters, no numbers of symbols). No other users were affected.


Bagel
Bitmap
cpubasic13
devin
FieryIce
Girlydragon
Gunstar Green
Higsby
hydrapheetz
Joe
krutomisi
Lain
Metal_Man88
Reimu
Schala
Shadic
Spontaneous Madness
Supakitsune
Tanks
Terra


1000 bonus points to Hiryuu for noticing this dumbass.


--

In other news, please use caution around any suspicious posts, especially by new members. Mega Mario is apparently planning on being a script kiddie again and I'd prefer that he not succeed, so.

He claims to be using Javascript, so take note and (if possible) disable it selectively for this domain, just to be safe. While I've updated the filters pretty significantly, given how shitty HTML is and the wide variety of ways to inject it, well...

____________________
Hiryuu

Level: 207


Posts: 13028/14435
EXP: 127628331
For next: 2155823

Since: 07-06-07


Since last post: 11.8 years
Last activity: 11.7 years

Posted on 04-30-10 07:34:54 PM Link
Or just looking at online.php most of the day.

Old habits die hard.
Shadic
Alakadoof?
Level: 151


Posts: 333/6929
EXP: 42379777
For next: 916699

Since: 07-22-07

Pronouns: he/him
From: Olympia, WA

Since last post: 6 days
Last activity: 1 day

Posted on 04-30-10 07:37:08 PM Link
Transforming cats into robots since 1989!
Posted on 04-30-10 07:38:33 PM (last edited by Lain at 04-30-10 04:39 PM) Link
Well, this is new.

e: meaning that I'm being targeted?

____________________
plushifoxed

King Yoshi
la chica dijo...

Mood: The current mood of roxiemika at www.imood.com
Level: 119


Posts: 2905/3990
EXP: 18466742
For next: 462549

Since: 08-22-07

Pronouns: it/its or she/her
From: kamihama city

Since last post: 2 days
Last activity: 1 day

Posted on 04-30-10 07:39:27 PM Link
Supakitsune
Originally posted by Shadic
Damnit.
your password was "bidoof" wasn't it

____________________


every aspect will be reborn innovatively
Join Jul's Folding@Home team and help the science get done!
Supakitsune's Tumbln' Thoughts - Catch me on Twitter!
Sails
2800
as a video game‎‎‎‏‏‎ grows old its content and‏‏‎ internal logic‏‏‎ deteriorateÿ
Level: 102


Posts: 2208/2803
EXP: 10922889
For next: 167078

Since: 07-04-07

Pronouns: He/Him
From: MA

Since last post: 120 days
Last activity: 29 days

Posted on 04-30-10 07:40:31 PM (last edited by Squiddiehoes at 05-01-10 02:43 PM) Link
I suppose my name change is what led him to not hitting me. I'd love to know exactly what it is he did...

____________________
Bitmap
Banned Forever
Banned for being a dick on the board, in private messages, and then taking that dick-ness off the board and harassing members elsewhere for it. Time to go!

Level: NaN


Posts: 4646/-5501
EXP: NaN
For next: 0

Since: 04-19-09

From: Cataula Georgia

Since last post: 9.9 years
Last activity: 9.9 years

Posted on 04-30-10 07:41:27 PM Link

Hah, come get some.

____________________
__________________________________


twitstamp.com

Girlydragon
3030
Possibly neither Girly nor Dragon.
Level: 105


Posts: 1116/3030
EXP: 12256759
For next: 5501

Since: 07-21-07

From: Sweden

Since last post: 283 days
Last activity: 46 min.

Posted on 04-30-10 07:41:38 PM Link
Originally posted by Supakitsune
Originally posted by Shadic
Damnit.
your password was "bidoof" wasn't it

No but...

Meh, my password was secure, but might as well change it, you can never be too safe.

____________________
Hiryuu

Level: 207


Posts: 13031/14435
EXP: 127628331
For next: 2155823

Since: 07-06-07


Since last post: 11.8 years
Last activity: 11.7 years

Posted on 04-30-10 07:41:44 PM Link
I'm just finding it amusing that you're still dealing with his dumb ass.
Rena
I had one (1) message in Discord deleted and proceeded to make a huge, huge mess about how it was a violation of free speech and how moderators are supposed to be spam janitors and nobody should have the right to tell me not to talk about school shootings
Level: 135


Posts: 3178/5390
EXP: 29076991
For next: 258014

Since: 07-22-07

Pronouns: he/him/whatever
From: RSP Segment 6

Since last post: 342 days
Last activity: 342 days

Posted on 04-30-10 07:43:10 PM Link
04-30-10 02:43:10 PM
Post #3178
Originally posted by Girlydragon
Originally posted by Supakitsune
Originally posted by Shadic
Damnit.
your password was "bidoof" wasn't it

No
HOW DO YOU KNOW

ARE YOU A SPY!?

____________________


witty comment
why not?
Hiryuu

Level: 207


Posts: 13032/14435
EXP: 127628331
For next: 2155823

Since: 07-06-07


Since last post: 11.8 years
Last activity: 11.7 years

Posted on 04-30-10 07:44:34 PM Link
Obviously, the password was 'bidokazam'.

Bitmap
Banned Forever
Banned for being a dick on the board, in private messages, and then taking that dick-ness off the board and harassing members elsewhere for it. Time to go!

Level: NaN


Posts: 4647/-5501
EXP: NaN
For next: 0

Since: 04-19-09

From: Cataula Georgia

Since last post: 9.9 years
Last activity: 9.9 years

Posted on 04-30-10 07:45:49 PM Link

Originally posted by Hiryuu
I'm just finding it amusing that you're still dealing with his dumb ass.


*Grins*

I can't stop grinning.

____________________
__________________________________


twitstamp.com

Hiryuu

Level: 207


Posts: 13033/14435
EXP: 127628331
For next: 2155823

Since: 07-06-07


Since last post: 11.8 years
Last activity: 11.7 years

Posted on 04-30-10 07:47:09 PM Link
Originally posted by Bitmap
Originally posted by Hiryuu
I'm just finding it amusing that you're still dealing with his dumb ass.


*Grins*

I can't stop grinning.


Seriously. It's been what...a year and a half now?

I thought my 'scenario' was stretched.
Orlandu


Holy SwordsMan
Level: 137


Posts: 538/5913
EXP: 30480553
For next: 392302

Since: 01-12-10

From: Las Vegas, NV

Since last post: 4.0 years
Last activity: 208 days

Posted on 04-30-10 07:47:28 PM Link
I'll post my password to make it easier:

13n9080fm30r9msdlk`243f0un-0enkl;sfmnaksfmiopsm-298

I have that memorized... I swear.

____________________
 
Xkeeper

Level: 263


Posts: 15842/25353
EXP: 297155664
For next: 1804789

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 3 days
Last activity: 12 hours

Posted on 04-30-10 07:48:00 PM Link
Long story short, while there are many protections against selecting onions, that protection happened to miss a special case in which you could use URL encoding that would somehow magically decode properly somewhere in PHP and then end up fucking everything up.

The firewall has since been updated.

____________________
Xkeeper

Level: 263


Posts: 15843/25353
EXP: 297155664
For next: 1804789

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 3 days
Last activity: 12 hours

Posted on 04-30-10 07:48:53 PM Link
Originally posted by Hiryuu
Originally posted by Bitmap
Originally posted by Hiryuu
I'm just finding it amusing that you're still dealing with his dumb ass.


*Grins*

I can't stop grinning.


Seriously. It's been what...a year and a half now?

I thought my 'scenario' was stretched.

One and a half years and about 150 accounts registered.

Not a joke.

____________________
Xkeeper

Level: 263


Posts: 15844/25353
EXP: 297155664
For next: 1804789

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 3 days
Last activity: 12 hours

Posted on 04-30-10 07:49:20 PM Link


____________________
Hiryuu

Level: 207


Posts: 13034/14435
EXP: 127628331
For next: 2155823

Since: 07-06-07


Since last post: 11.8 years
Last activity: 11.7 years

Posted on 04-30-10 07:49:47 PM Link
Gotta give him credit. He lives to be persistent.

The only other one I can think of that has him outclassed is Leg.

[vortex of hell opens at the mention of that name]
Sails
2800
as a video game‎‎‎‏‏‎ grows old its content and‏‏‎ internal logic‏‏‎ deteriorateÿ
Level: 102


Posts: 2209/2803
EXP: 10922889
For next: 167078

Since: 07-04-07

Pronouns: He/Him
From: MA

Since last post: 120 days
Last activity: 29 days

Posted on 04-30-10 07:50:18 PM Link
Originally posted by Orlandu
I'll post my password to make it easier:

13n9080fm30r9msdlk`243f0un-0enkl;sfmnaksfmiopsm-298

I have that memorized... I swear.

I actually knew someone who has one of those and has it memorized. :|

____________________
Tiden
Disgusting human being, just awful
Level: NaN


Posts: 5624/-6493
EXP: NaN
For next: 0

Since: 07-03-07

Pronouns: they/them

Since last post: 4.1 years
Last activity: 3.6 years

Posted on 04-30-10 07:50:48 PM Link
Heh, mega mario :smugdra:

____________________
Pages: 1 2 3 4 5 6Next newer thread | Next older thread
Jul - NO! GO TO STAR! - Security notice for selected users New poll - New thread - Thread closed


Rusted Logic

Acmlmboard - commit 47be4dc [2021-08-23]
©2000-2022 Acmlm, Xkeeper, Kaito Sinclaire, et al.

29 database queries.
Query execution time: 0.100396 seconds
Script execution time: 0.037996 seconds
Total render time: 0.138392 seconds