Hacked!!!

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • goBigtime
    Confirmed User
    • Nov 2002
    • 7761

    #1

    Hacked!!!

    So has anyone here ever had their servers hacked into?

    What did they do?

    How did they get in?

    Tell us about it....
  • Socks
    Confirmed User
    • May 2002
    • 8475

    #2
    I'll tell you as soon as I'm done deleting your files.. sec..

    Comment

    • Dveron
      Confirmed User
      • Dec 2002
      • 2794

      #3
      Originally posted by Socks
      I'll tell you as soon as I'm done deleting your files.. sec..
      Adult Comics Club - Updated Bi-Daily. 60% Recurring Payouts. Exclusive Comic Content.

      Comment

      • goBigtime
        Confirmed User
        • Nov 2002
        • 7761

        #4
        Originally posted by Socks
        I'll tell you as soon as I'm done deleting your files.. sec..



        have fun

        Comment

        • goBigtime
          Confirmed User
          • Nov 2002
          • 7761

          #5
          I know some bigwigs in the industry have been hit in the past... so I could only imagine alot of people here have had problems.

          Comment

          • funkmaster
            So Fucking Banned
            • Sep 2001
            • 7938

            #6
            ... happens all the time, all you can do is get the latest security patches and pray.

            Comment

            • MonkeyMan
              So Fucking Banned
              • Dec 2002
              • 1026

              #7
              Theres a better way....

              If your running linux take every background process you have running and do a "______ exploit" google search on each one. (you may want to include version numbers) That often helps me know exactly what things I'm running may be at risk and respond appropriately.

              Its also good to actually learn how to hack boxes because the more you know the safer you are.

              Praying doesn't work because.... well... there is no god.

              Comment

              • res
                Confirmed User
                • Nov 2002
                • 1118

                #8
                If anyone need security audit of owns servers we can provide that. We have some posts on bugtraq and any computer security sites Contact me if interesting

                Comment

                • funkmaster
                  So Fucking Banned
                  • Sep 2001
                  • 7938

                  #9
                  "We have some posts on bugtraq and any computer security sites"

                  ... yes, this is where script kiddies hang out to get the latest exploits ... sad but true ...

                  Comment

                  • ytcracker
                    stc is the greatest
                    • Dec 2002
                    • 12403

                    #10
                    Originally posted by funkmaster
                    "We have some posts on bugtraq and any computer security sites"

                    ... yes, this is where script kiddies hang out to get the latest exploits ... sad but true ...
                    im still in the 0day loop so none of you are safe MahuahduahuaHSUHASUAHUSHAUSHuhsuahsiahds ssh owns
                    www.ytcracker.com | www.digitalgangster.com
                    i love you

                    Comment

                    • goBigtime
                      Confirmed User
                      • Nov 2002
                      • 7761

                      #11
                      Originally posted by MonkeyMan

                      Praying doesn't work because.... well... there is no god.
                      There is a god, but I think we might have just been a one night stand

                      Either way, I would wonder how much god knows about unix anyway.

                      Comment

                      • MonkeyMan
                        So Fucking Banned
                        • Dec 2002
                        • 1026

                        #12
                        Originally posted by ytcracker
                        im still in the 0day loop so none of you are safe MahuahduahuaHSUHASUAHUSHAUSHuhsuahsiahds ssh owns

                        0day?!?!?! wtf are you gonna do with that. Go Icon Creator 6.0 on my ass.... hahahahahahah

                        Comment

                        • res
                          Confirmed User
                          • Nov 2002
                          • 1118

                          #13
                          Originally posted by funkmaster
                          "We have some posts on bugtraq and any computer security sites"

                          ... yes, this is where script kiddies hang out to get the latest exploits ... sad but true ...
                          No, its not a true... My friends is security analyzers the same as cert.org... Bugtraq is only way to notify everyone...

                          Comment

                          • goBigtime
                            Confirmed User
                            • Nov 2002
                            • 7761

                            #14
                            Originally posted by res


                            No, its not a true... My friends is security analyzers the same as cert.org... Bugtraq is only way to notify everyone...

                            Huh? Can you say that again res?


                            You said your friend runs a site called "Security Analyzers" that is similar to cert.org & Bugtraq is not the only source for security updates... right?

                            (I think thats what he said)
                            Last edited by goBigtime; 01-13-2003, 06:46 AM.

                            Comment

                            • BigFrog
                              Confirmed User
                              • Sep 2002
                              • 2057

                              #15
                              Originally posted by MonkeyMan



                              0day?!?!?! wtf are you gonna do with that. Go Icon Creator 6.0 on my ass.... hahahahahahah

                              LMAO

                              Comment

                              • res
                                Confirmed User
                                • Nov 2002
                                • 1118

                                #16
                                Originally posted by goBigtime



                                Huh? Can you say that again res?


                                You said your friend runs a site called "Security Analyzers" that is similar to cert.org & Bugtraq is not the only source for security updates... right?

                                (I think thats what he said)
                                Of course we read bugtraq, but only for update our knowledge base... Also we have our research centre for security analyzing and development... We found 9 big holes in Microsoft products and 4 holes (remote roor spawm) in *nix-clones...

                                Comment

                                • strainer
                                  Confirmed User
                                  • Oct 2002
                                  • 418

                                  #17
                                  I got hacked a few months ago by a cp outfit who turned my server into a cp spam factory. What I did was:

                                  1. Reinstall the OS (Linux)

                                  2. Use iptables to block almost 100% of the server, even including common things like SSH, etc. Obviously you have to put in some back doors so you can manage it, but most importantly of all, never use plaintext protocols like telnet, ftp, etc.

                                  3. That leaves the only possible exploits as coming in through apache or dns or something you can't turn off. As long as you always run the latest patch of those, its not that likely you'll get hacked.

                                  Comment

                                  Working...