Welcome, Register for free! or Login below:
EduGeek.net RSS Feeds Register FAQ Members Social Groups User Map Calendar Search Today's Posts Mark Forums Read

EduGeek Joomla 1.0 Package Here it is, Sysmans everlasting contribution to education. The pretty website with BIG potential. Get it and advice here.

Go Back   EduGeek.net Forums > EduGeek Projects > Projects: > EduGeek Joomla 1.0 Package
Reply
 
LinkBack Thread Tools Search Thread Language
Sponsored Links
Old 18-08-2008, 04:13 PM   #1
 
mullet_man's Avatar
 
Join Date: Oct 2005
Location: Somewhere in Oldham
Posts: 377
Thanks: 2
Thanked 8 Times in 8 Posts
Rep Power: 8 mullet_man is on a distinguished road
Default Our Joolma site has been hacked

HACKED BY VURGUNCU

Our school Joomla website has just got hacked, I have informed our website technician who is on his hols, hopefully he can get it taken off asap.

Just informing you guys in case others get hacked!!
  Reply With Quote
Old 18-08-2008, 04:29 PM   #2
 
FN-GM's Avatar
 
Join Date: Jun 2007
Location: Rochdale, Lancashire
Posts: 4,807
uk
Thanks: 156
Thanked 156 Times in 150 Posts
Rep Power: 37 FN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to behold
Send a message via Skype™ to FN-GM
Default

was your database password the same as your server password?

Is your server been hacked or the domain? The server seems to be based in the isle of man.

z
  Reply With Quote
Old 18-08-2008, 04:39 PM   #3
 
danIT's Avatar
 
Join Date: Apr 2006
Location: UK
Posts: 480
Thanks: 8
Thanked 6 Times in 5 Posts
Rep Power: 7 danIT is on a distinguished road
Default

I hope your school has (regular) backups!
  Reply With Quote
Old 18-08-2008, 04:42 PM   #4
 
mullet_man's Avatar
 
Join Date: Oct 2005
Location: Somewhere in Oldham
Posts: 377
Thanks: 2
Thanked 8 Times in 8 Posts
Rep Power: 8 mullet_man is on a distinguished road
Default

Quote:
Originally Posted by FN-Greatermanchester View Post
was your database password the same as your server password?

Is your server been hacked or the domain? The server seems to be based in the isle of man.

z
I think just the joomla has been hacked not the server, the website is not hosted in school.

Regrading the backups, I have no clue if we have any, I don't deal with the website myself.
  Reply With Quote
Old 18-08-2008, 04:45 PM   #5
 
FN-GM's Avatar
 
Join Date: Jun 2007
Location: Rochdale, Lancashire
Posts: 4,807
uk
Thanks: 156
Thanked 156 Times in 150 Posts
Rep Power: 37 FN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to behold
Send a message via Skype™ to FN-GM
Default

Quote:
Originally Posted by danIT View Post
I hope your school has (regular) backups!
Sorry to hijack how often do you backup?
  Reply With Quote
Old 18-08-2008, 04:49 PM   #6
 
mullet_man's Avatar
 
Join Date: Oct 2005
Location: Somewhere in Oldham
Posts: 377
Thanks: 2
Thanked 8 Times in 8 Posts
Rep Power: 8 mullet_man is on a distinguished road
Default

The website was only recently setup, have no idea how we got targetted?

Anyway hope we have a backup
  Reply With Quote
Old 06-09-2008, 05:45 PM   #7
 
FN-GM's Avatar
 
Join Date: Jun 2007
Location: Rochdale, Lancashire
Posts: 4,807
uk
Thanks: 156
Thanked 156 Times in 150 Posts
Rep Power: 37 FN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to beholdFN-GM is a splendid one to behold
Send a message via Skype™ to FN-GM
Default

see the site is up and running was it the site or the sevrer itself that was compromised?

Z
  Reply With Quote
Old 06-09-2008, 09:30 PM   #8
 
contink's Avatar
 
Join Date: Jul 2006
Location: South Yorkshire
Posts: 2,652
uk uk yorkshire
Thanks: 101
Thanked 92 Times in 73 Posts
Rep Power: 28 contink is a name known to allcontink is a name known to allcontink is a name known to allcontink is a name known to allcontink is a name known to allcontink is a name known to all
Default

Key thing to know is what version of Joomla were you using..

There were some security exploits in earlier versions of 1.5 and you have to be careful that you don't use any apps/add-ons that also have any exploits.
  Reply With Quote
Old 06-09-2008, 11:40 PM   #9
 
Jona's Avatar
 
Join Date: May 2007
Location: Aberystwyth
Posts: 418
uk uk wales
Thanks: 7
Thanked 42 Times in 42 Posts
Rep Power: 11 Jona has a spectacular aura aboutJona has a spectacular aura aboutJona has a spectacular aura about
Default

Just to make you aware, once you get an exploit like this you should treat the whole machine as compromised until proved otherwise. We recently had an old Joomla site hacked and once in they tried to run a load of root kits against the server, fortunatly our apache is well setup to they failed.

I assume you either had a weak password or more likely as mentioned above were using a version of Joomla which had known exploits.

Cheers
Jona
  Reply With Quote
Old 07-09-2008, 09:56 AM   #10
 
Zorba's Avatar
 
Join Date: Aug 2007
Location: West Midlands
Posts: 37
Thanks: 5
Thanked 0 Times in 0 Posts
Rep Power: 0 Zorba is an unknown quantity at this point
Default

Just curious, what form did this attack take and how were you alerted?
  Reply With Quote
Reply

Register now for FREE and post messages!


Username: Password: Confirm Password: E-Mail: Confirm E-Mail:
Birthday:      
Image Verification
  I agree to forum rules 

Similar Threads
Thread Thread Starter Forum Replies Last Post
hacked? uk101man *nix 3 02-08-2007 11:22 AM
Website hacked... _Bat_ Web Development 8 27-07-2007 09:17 AM
Microsoft.com Has Been Hacked FN-GM Web Development 2 26-07-2007 08:54 PM
Are we being hacked? Paul_L General Chat 2 13-09-2006 08:31 AM



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools Search Thread
Search Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT +1. The time now is 10:20 AM.
Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 ©2008, Crawlability, Inc.
Copyright EduGeek.net