• Thanks for stopping by. Logging in to a registered account will remove all generic ads. Please reach out with any questions or concerns.

DND hacked website,

Proably shouldnt post that kinda stuff on a public fourm.He may be innocent.Maybe his phone was comprimised.I dont care either way but the moderators may.
 
From what I can tell it's hosted by a turkish company similar to hypermart. Unless he's really dumb he would have used to a proxy server to set up the account.

From what I can gather, the software the site was running on was out dated.

Yup. [speculation on] There was also a Microsoft bulletin released last week about flaws in the indexing service that can allow the execution of code via a malformed http request (I think, I only half pay attention to them, someone who deals with microsoft stuff on a regular basis can probably give a better answer), an update was put out, but if someone was lazy about testing it and then deploying it, or was waiting to see if there was any additional fallout from the update, then it may not have been applied. But that is just speculation, there is also several years old flaws in IIS/5.0... namely that it's microsoft ;), but the point being there are many ways to do what this guy just did so... [speculation off]

The funny thing for me is that I actually called a duty officer hours ago telling them to shutdown the server... *shakes head*
 
"The funny thing for me is that I actually called a duty officer hours ago telling them to shutdown the server... *shakes head*"

- He probably sent the waitress home.

Tom
 
rcac_011 said:
Proably shouldnt post that kinda stuff on a public fourm.He may be innocent.Maybe his phone was comprimised.I dont care either way but the moderators may.

Information is already publically available. And it is most likely that this is not the culprit, but their unsecure server enabled the attack.
 
Klc said:
Information is already publically available. And it is most likely that this is not the culprit, but their unsecure server enabled the attack.
Klc.  Personal information is not to be posted without permission of the person.  I have removed your post and while I agree with your sentiments, the person whos Pers Info is posted may not be the actual person responsible.  This person was smart enough to exploit a weakness in the software, he isn't going to be dumb enough to leave his real info there.
 
Oh, there we go, they pulled it... though they need to update their "Contingency Website"

"Annual Fire/Line Safety maintenance"... lol
 
Back
Top