Register - Login
Views: 99315426
Main - Memberlist - Active users - Calendar - Wiki - IRC Chat - Online users
Ranks - Rules/FAQ - Stats - Latest Posts - Color Chart - Smilies
04-21-22 06:01:22 AM
Jul - General Chat - Hi again New poll - New thread - New reply
Next newer thread | Next older thread
Xkeeper

Level: 263


Posts: 3765/25343
EXP: 296635020
For next: 2325433

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 6 days
Last activity: 3 hours

Posted on 11-30-07 05:04:42 PM Link | Quote
Somebody decided to borrow people's passwords (Mr. BLOCKS now, I guess) so I had to take some more steps to ban him. Kind of funny, I guess...

The various bumped threads will be going back home soon, so just give it some time. I have to fix those manually, since I batch deleted them. (D'oh!)

Oh well, it helps me to create utilites to do this automagically, so I guess I can thank this guy one way or another.


PS: If you didn't see Hydra's thread, changing your passwords would be a good idea.

____________________
Pandaren
Still something.
Level: 108


Posts: 165/3196
EXP: 13229194
For next: 291305

Since: 08-17-07

From: Finland

Since last post: 1.3 years
Last activity: 93 days

Posted on 11-30-07 05:06:06 PM Link | Quote
Oooooh.

That explains alot. I was "wtf grey marios here again?".

We are being constantly attacked, lets call it war then?

____________________
Each ale drank is a blessing. Each brew done is a masterpiece.
Xkeeper

Level: 263


Posts: 3766/25343
EXP: 296635020
For next: 2325433

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 6 days
Last activity: 3 hours

Posted on 11-30-07 05:20:24 PM Link | Quote
This is amusingly fun, to be honest. Find the idiot's modus operandi and destroy him with it!

____________________
Rena
I had one (1) message in Discord deleted and proceeded to make a huge, huge mess about how it was a violation of free speech and how moderators are supposed to be spam janitors and nobody should have the right to tell me not to talk about school shootings
Level: 135


Posts: 1660/5390
EXP: 29043106
For next: 291899

Since: 07-22-07

Pronouns: he/him/whatever
From: RSP Segment 6

Since last post: 330 days
Last activity: 330 days

Posted on 11-30-07 05:22:15 PM Link | Quote
JL2 - Post #1660 - 11-30-07 12:22:15pm
So they used stolen passwords to bump a bunch of old threads? Lame, but at least it's more creative than LOL COCKS.

____________________
Xkeeper

Level: 263


Posts: 3767/25343
EXP: 296635020
For next: 2325433

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 6 days
Last activity: 3 hours

Posted on 11-30-07 05:23:44 PM Link | Quote
Originally posted by HyperHacker
So they used stolen passwords to bump a bunch of old threads? Lame, but at least it's more creative than LOL COCKS.

Yeah, he's slowly realizing that doing the same thing over and over leads to getting nowhere.

He was using "COCKS" as a user agent too (that got auto-banned), then tried using "BLOCKS" instead (also autobanned), now he's using a rather common useragent (but I have other ways of destroying him)

What can I say? It's fun!

____________________
Xkeeper

Level: 263


Posts: 3769/25343
EXP: 296635020
For next: 2325433

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 6 days
Last activity: 3 hours

Posted on 11-30-07 06:23:56 PM Link | Quote
16 Tor IPs banned by my autoblocker onw, even after he's revised his script about 7 times (judging from what he keeps trying)

It's fun to watch a billion entries zoom up the access log as he floods newreply.php, getting IP banned on his first attempt... oh well.

I'd like to believe I'm doing a good job of removing him from the system.

____________________
Xkeeper

Level: 263


Posts: 3774/25343
EXP: 296635020
For next: 2325433

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 6 days
Last activity: 3 hours

Posted on 11-30-07 07:51:21 PM Link | Quote
All of the bumped threads are back to where they should be (buried), and there's a page to fix this in the event it happens again.

Hooray.

____________________
Lyskar
12210
-The Chaos within trumps the Chaos without-
Level: 192


Posts: 822/12211
EXP: 99210677
For next: 662894

Since: 07-03-07

From: 52-2-88-7

Since last post: 7.4 years
Last activity: 7.3 years

Posted on 11-30-07 08:36:15 PM Link | Quote
11-30-07 02:36:15pm
822 posts
150 days
I don't know why I put this here.
I should change my name to password-change man. Seriously.

Ah well, at least the moron's getting blasted.

____________________
"My name is Ozymandias, king of kings: Look on my works, ye mighty, and despair!" Nothing beside remains: round the decay Of that colossal wreck, boundless and bare, The lone and level sands stretch far away. -ShelleyDeath to n00bs!
Higsby

Super Luigi

727 []

Level: 123


Posts: 366/4322
EXP: 20839359
For next: 391907

Since: 07-30-07

From: Canada

Since last post: 2.5 years
Last activity: 180 days

Posted on 11-30-07 09:32:21 PM Link | Quote
It's is good to hear that some good is coming out of all of this . Hopefully it all stops soon.
Anya

Trudging Scribe



Post 397/23359
Posted on 12-01-07 12:03:59 PM Link | Quote
I just changed my password..but I might end up changing it each day, just in case.

____________________
Xkeeper

Level: 263


Posts: 3782/25343
EXP: 296635020
For next: 2325433

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 6 days
Last activity: 3 hours

Posted on 12-01-07 12:24:39 PM Link | Quote
No reason to change it that often...

____________________
asdf
20
Level: 14


Posts: 13/28
EXP: 10868
For next: 2203

Since: 07-28-07


Since last post: 10.0 years
Last activity: 7.0 years

Posted on 12-02-07 01:41:36 AM (last edited by asdf at 12-01-07 10:41 PM) Link | Quote
How about you make a code that, when activated, prompts all users on the board to change their password? People will not be able to continue past that screen and view any part of the boards when logged into their account until they have done so. It would be highly effective in the event that everything hits the fan.
neotransotaku
Member
wonders why OSX does not come with their version of MSPaint?
Level: 52


Posts: 78/603
EXP: 1083477
For next: 363

Since: 08-24-07

From: The Landmark @ One Market

Since last post: 2.6 years
Last activity: 29 days

Posted on 12-02-07 06:50:45 AM Link | Quote
Originally posted by asdf
How about you make a code that, when activated, prompts all users on the board to change their password? People will not be able to continue past that screen and view any part of the boards when logged into their account until they have done so. It would be highly effective in the event that everything hits the fan.

Presumably, code should also be added to prevent the password being reverted to the compromised password after some period of time.
Drag
2640
Level: 99


Posts: 445/2641
EXP: 9979016
For next: 20984

Since: 07-03-07


Since last post: 4.2 years
Last activity: 3.3 years

Posted on 12-02-07 06:33:23 PM Link | Quote
Drag's Post #445
Originally posted by asdf
How about you make a code that, when activated, prompts all users on the board to change their password? People will not be able to continue past that screen and view any part of the boards when logged into their account until they have done so. It would be highly effective in the event that everything hits the fan.

The only problem with that that I saw was if the vandal has passwords for inactive accounts, he could just simply use the password he acquired, enter a new password, and then he's in. Not only that, but the victim will have a hijacked account which he/she can't log into.

Believe me, I was thinking the same thing, but I found so many problems with it that it wouldn't help during a vandalization.

____________________
John2k4
490
Bubble Bobble
Level: 48


Posts: 368/499
EXP: 817042
For next: 6501

Since: 08-05-07

From: Arizona

Since last post: 8.9 years
Last activity: 7.7 years

Posted on 12-02-07 06:48:32 PM Link | Quote

Level--> 24
EXP----> 77077


Originally posted by asdf
How about you make a code that, when activated, prompts all users on the board to change their password? People will not be able to continue past that screen and view any part of the boards when logged into their account until they have done so. It would be highly effective in the event that everything hits the fan.

But what if you know the http address of a part of the board (example http://jul.rustedlogic.net/thread.php?id=1470 This thread), then you could enter it, and bypass that screen.


____________________
Roger3245

Xkeeper

Level: 263


Posts: 3787/25343
EXP: 296635020
For next: 2325433

Since: 07-03-07

Pronouns: they/them/????????

Since last post: 6 days
Last activity: 3 hours

Posted on 12-02-07 06:51:11 PM Link | Quote
Obviously, you have no idea how the board actually works.

____________________
Hiryuu

Level: 206


Posts: 1559/14435
EXP: 127480050
For next: 133329

Since: 07-06-07


Since last post: 11.8 years
Last activity: 11.7 years

Posted on 12-02-07 09:10:19 PM Link | Quote
Ω > U
Originally posted by roger3245
Originally posted by asdf
How about you make a code that, when activated, prompts all users on the board to change their password? People will not be able to continue past that screen and view any part of the boards when logged into their account until they have done so. It would be highly effective in the event that everything hits the fan.

But what if you know the http address of a part of the board (example http://jul.rustedlogic.net/thread.php?id=1470 This thread), then you could enter it, and bypass that screen.



HAHAHAHAHAHA

I like the way this crackpot thinks!

Hey someone get me the URL for everyone's bank account so I can do some embezzling of funds...

____________________
Lyskar
12210
-The Chaos within trumps the Chaos without-
Level: 192


Posts: 830/12211
EXP: 99210677
For next: 662894

Since: 07-03-07

From: 52-2-88-7

Since last post: 7.4 years
Last activity: 7.3 years

Posted on 12-02-07 09:21:18 PM Link | Quote
12-02-07 03:21:18pm
830 posts
152 days
I don't know why I put this here.
*Metal_Man88 whistles innocently, knowing the security (and having mentioned how it could be improved) before... seems like his suggestions are being followed in some manner.

Yeah. PHP allows you to control who can see what pages, so that idea's about as bogus as opening a door because you know where the door is. Who says the page has to display if you access it?

____________________
"My name is Ozymandias, king of kings: Look on my works, ye mighty, and despair!" Nothing beside remains: round the decay Of that colossal wreck, boundless and bare, The lone and level sands stretch far away. -ShelleyDeath to n00bs!
CarCat

Level: 51


Posts: 34/572
EXP: 995883
For next: 18055

Since: 10-17-07

From: LA

Since last post: 13.0 years
Last activity: 11.9 years

Posted on 12-02-07 10:14:41 PM Link | Quote
12-02-07 07:14:41pm--->

Instead of using it as a security feature, it would would be nice to use it as a type of annoucment system that when ever you logon would display a popup message with annoucments like updates/news/or a password change note that you could mark already read. But, that's just my opinion.

____________________
That's not Justice, This... is Justus!!!
Rena
I had one (1) message in Discord deleted and proceeded to make a huge, huge mess about how it was a violation of free speech and how moderators are supposed to be spam janitors and nobody should have the right to tell me not to talk about school shootings
Level: 135


Posts: 1685/5390
EXP: 29043106
For next: 291899

Since: 07-22-07

Pronouns: he/him/whatever
From: RSP Segment 6

Since last post: 330 days
Last activity: 330 days

Posted on 12-03-07 12:51:34 AM Link | Quote
JL2 - Post #1685 - 12-02-07 07:51:34pm
Instead of mocking, I feel like actually pointing out the flaw in the logic: every page on the board calls one main script to do things like verifying passwords and connecting to the database. You'd only have to block them there and the entire board would be inaccessible.

____________________
Next newer thread | Next older thread
Jul - General Chat - Hi again New poll - New thread - New reply


Rusted Logic

Acmlmboard - commit 47be4dc [2021-08-23]
©2000-2022 Acmlm, Xkeeper, Kaito Sinclaire, et al.

31 database queries.
Query execution time: 0.099701 seconds
Script execution time: 0.051819 seconds
Total render time: 0.151520 seconds