Got hacked!

shamzblueworld

Paragon
Joined
Oct 17, 2009
Messages
1,765
Reaction score
0
FP$
578
Well my forum Fun Forums got hacked and I've lost data of the past 3 months, all users registered during these 3 months along with the posts are gone, really pissed off at the moment.
How to cope with this? Any of you had such experience? Any help to not let this happen again?
 
shamzblueworld said:
Hacked my(admin) account that I know, is there a way to find out how?

It most likely wasn't hacked, but cracked. People who know how to hack usually don't waste their time on individual forums (unless it actually has meaning), but instead hack bigger more rewarding targets. Cracking forum accounts is very common, and is the fault of the account holder. Was your password something simple? Could people of guessed it? Was the password used for your email account something complex? Could it of been guessed?


If it was indeed a case of your account being cracked, the best and most important way to prevent it from happening again is to have a tough password, something others won't be able to guess.
 
Nope, No to all of the questions you posted, the password was generated randomly by a password manager I use.
It couldn't have been guessed.
 
shamzblueworld said:
Nope, No to all of the questions you posted, the password was generated randomly by a password manager I use.
It couldn't have been guessed.

You never know. How 'random' is this password manager? I just don't believe MyBB was hacked, or is hackable. Did you leave yourself logged in on someone else's computer? or do you have any family that may of used your computer?
 
shamzblueworld said:
Hacked my(admin) account that I know, is there a way to find out how?

They likely have your password. I'd change your password immediately.
 
I had one of my forums defaced but fortunately I had backups of everything and got it all running smoothly again... It really sucks and I hope you can move forward with this even with the loss of data.
 
Nope the password generator is lastpass which is very secure I believe, I don't use anyone else's computer, neither does anyone else use mine, and my password was changed after it was hacked/cracked.
 
Every "hacked" forum I have seen over the years has been down to one of the following things:

  • Insecure password, reusing the same password and your password being stolen or logged/stolen from another site.
  • Accessing cpanel, your email account or ftp and using these methods to cause damage or use to get access to cause damage
  • Insecure server/host compromised
  • Outdated software, plugins or themes
  • A co-admin or other staff member abusing their permissions.
I don't think I have ever seen a users forum/site here hacked for any other reason than these. How do you know your forum account was accessed? Have your checked the logs (through cpanel) to see who accessed your site and what pages there were accessing around the time your site was attacked? That can help you see how the attack was done.
 
Hacking/cracking is making the rounds again? If you're on advanced hosting, back up your files, change your password, and be seriously careful with who you grant administrator permissions to. When I was on advanced hosting, we started out doing backups every 24 hours, but then at one point we got hacked/cracked because one of my admins at the time was using a weak password, but we ended up losing quite a few hours worth of posts, so then we started doing backups every twelve hours.
 
Smitty Fan said:
Hacking/cracking is making the rounds again? If you're on advanced hosting, back up your files, change your password, and be seriously careful with who you grant administrator permissions to. When I was on advanced hosting, we started out doing backups every 24 hours, but then at one point we got hacked/cracked because one of my admins at the time was using a weak password, but we ended up losing quite a few hours worth of posts, so then we started doing backups every twelve hours.

Cracking has, and always will be around. The main reason for that is about 95% of the internet uses weak, easy to guess passwords. All it takes is for someone to get to know you and they'll be able to guess your 123456 or birthday password.
 
The Governor said:
Smitty Fan said:
Hacking/cracking is making the rounds again? If you're on advanced hosting, back up your files, change your password, and be seriously careful with who you grant administrator permissions to. When I was on advanced hosting, we started out doing backups every 24 hours, but then at one point we got hacked/cracked because one of my admins at the time was using a weak password, but we ended up losing quite a few hours worth of posts, so then we started doing backups every twelve hours.

Cracking has, and always will be around. The main reason for that is about 95% of the internet uses weak, easy to guess passwords. All it takes is for someone to get to know you and they'll be able to guess your 123456 or birthday password.

I always knew that. I just didn't realize it was that time of the year already. It seems like , from what I've seen, most hackings/crackings take place during the spring and summer months, when people don't seem to have too much time on their hands.
 
Back
Top Bottom