icon Get the most out of Surmunity, read our tips here! Need an interesting blog to read? You've got to read the Surpass Blog! | Welcome! Please register to access all of our features.

» Surpass Web Hosting Forums » Discussions » All Things Techy » Site Maintenance » phpBB Warning

Site Maintenance Program updates, securing your website, creating backups.

Reply
 
LinkBack Thread Tools Search this Thread
Old December 21st, 2004, 10:50 PM   #1 (permalink)
H
after g, before i
Resident.
 
H's Avatar
 
Joined in Jul 2004
Lives in N,BC,CA
8,059 posts
Gave thanks: 48
Thanked 129 times
phpBB Warning

I feel this should be brought to attention as many users here may potientially be using this software.

http://neowin.net/comments.php?id=26393&category=main

For those that don't want to click the link;

It's pretty much a warning about a virus that is hitting phpBB sites. It does not affect the visitors to the site though.
H is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old December 21st, 2004, 11:59 PM   #2 (permalink)
I'm Dope as Crack
Resident.
 
David's Avatar
 
Joined in Mar 2004
Lives in Asheboro, NC
Hosted on Pass 7
13,036 posts
Gave thanks: 7
Thanked 29 times
Thanks for bringing this to everyone's attention. I'm letting some friends who run phpbb boards know about it, so they can figure out what to do with their own sites.

so what's the key here? do you know if the new version will guard against this, or of any prevention yet? and sticky for now.

edit: ok, nevermind that. i went to the original article that was linked through yours.

http://www.kaspersky.com/news?id=156681162

Quote:
Apart from defacing infected sites with this text, the worm has no payload. It will not infect machines which are used to view infected sites. Kaspersky Lab recommends that all users of phpBB should upgrade to version 2.0.11 to prevent their sites from being defaced.
__________________
David is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old December 22nd, 2004, 12:04 AM   #3 (permalink)
innocente eth
On a golden path...
 
ethereal's Avatar
 
Joined in Jul 2004
Hosted on Opti
443 posts
Gave thanks: 0
Thanked 0 times
Soo if I update to the latest versions, will it be ok?

Edit: Say I went into the Scripts Library and updated my version through that. Is that the same as manually downloading and uploading the changed files from phpbb's 2.0.11?
__________________
Server: Opti :: Website: Etherfire.Net :: LJ: GforGina
ethereal is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old December 22nd, 2004, 12:05 AM   #4 (permalink)
I'm Dope as Crack
Resident.
 
David's Avatar
 
Joined in Mar 2004
Lives in Asheboro, NC
Hosted on Pass 7
13,036 posts
Gave thanks: 7
Thanked 29 times
according to phpbb's site, it says everything pre 2.0.11 are vulnerable

http://www.phpbb.com/phpBB/viewtopic...360995#1360995
__________________
David is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old December 22nd, 2004, 12:09 AM   #5 (permalink)
innocente eth
On a golden path...
 
ethereal's Avatar
 
Joined in Jul 2004
Hosted on Opti
443 posts
Gave thanks: 0
Thanked 0 times
Ok then updated.

Though can you please answer my query in previous post? I edited it while you were posting a reply.
__________________
Server: Opti :: Website: Etherfire.Net :: LJ: GforGina
ethereal is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old December 22nd, 2004, 12:10 AM   #6 (permalink)
I'm Dope as Crack
Resident.
 
David's Avatar
 
Joined in Mar 2004
Lives in Asheboro, NC
Hosted on Pass 7
13,036 posts
Gave thanks: 7
Thanked 29 times
Ah, I didn't even see it :p Yes, that should be the same thing.
__________________
David is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old December 22nd, 2004, 12:11 AM   #7 (permalink)
innocente eth
On a golden path...
 
ethereal's Avatar
 
Joined in Jul 2004
Hosted on Opti
443 posts
Gave thanks: 0
Thanked 0 times
Oh good, because that was soo much easier. I looked at phpbb's site, and it looked a bit confusing.
__________________
Server: Opti :: Website: Etherfire.Net :: LJ: GforGina
ethereal is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old December 22nd, 2004, 12:13 AM   #8 (permalink)
I'm Dope as Crack
Resident.
 
David's Avatar
 
Joined in Mar 2004
Lives in Asheboro, NC
Hosted on Pass 7
13,036 posts
Gave thanks: 7
Thanked 29 times
Yeah, that's what I thought when I tried to upgrade one back when I still used phpbb. I'm probably going to have to help a friend of mine upgrade hers too (unless of course she used fantastico or scripta)....she also happens to be a fellow surpasser. :p
__________________
David is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old December 22nd, 2004, 12:17 AM   #9 (permalink)
Registered User
Comfy Contributor
 
Einstein's Avatar
 
Joined in May 2004
Lives in Finland
Hosted on Centi
281 posts
Gave thanks: 0
Thanked 0 times
And I posted a message a long time ago: phpBB security
__________________

The secret to creativity is knowing how to hide your sources. - Alber Einstein
Centi: ykkosrasti.net
My sites on Pass38, reseller: kimslotte.net|mtb-o.net|perhekuvat.net|nettikuvat.net|tiedostotila.net
About me
Einstein is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On