Welcome to the forums
Community
Navigation
WC Navigation
Main Page
Article Directory
Affiliate Directory
IM Blog Directory
Download Directory
Forum Menu
Home
Register
FAQ
Members List
Calendar
Search
Today's Posts
Mark Forums Read
Mark Forums Read
View Forum Leaders


Sponsor
Klik Disini Untuk Menaja!.
Terima kasih diucapkan kepada pihak-pihak yang telah sudi menaja kewujudan website ini..



Iklan Berbayar
Klik Disini Untuk Mengiklan!.


MPAA
Web Advertising
Switch Energy Provider
Buy Anything On eBay
Debt Consolidation

 


Welcome, Unregistered.
Member Panel
Go Back   WangCyber.com - Komuniti Usahawan Internet Malaysia > Bahagian Teknikal > Pembangunan Web

Reply
 
Thread Tools Display Modes
  #1  
Old 07-27-2006, 02:15 PM
galadriel's Avatar
galadriel galadriel is offline
Moderator
 
Join Date: Jun 2006
Location: Selangor, Kuala Lumpur, Teregganu dan Sarawak.
Posts: 487
galadriel is an unknown quantity at this point
iTrader: (2)
Default Hackers Serang Webhosting Providers

A'kum...

Saya telah dapat tahu dari forum luar negara bahawa terdapat hackers yang telah hack ke beberapa Webhosting Provider, latest yang kena ialah:

hostingfree4lifeDOTcom
(saya tak nak link hosting provider tu ke forum kita ni, takut kena tempias)... :shock:

dan juga:
Quote:
- forum webhostingtalk
FatNetwork:
Today we were attacked by the Arslan group as well. It started off by them replacing every index.php file on the server with one that included their defacement message. My colleague and I overwrote those index.php files from a recent backup we had and it fixed the problem.

10 Minutes later the defacements came back and I noticed while refreshing the FTP window I had open the MODIFIED time for the index.php and index2.php files were changing even though I was not uploading anything. So it appears to me that perhaps these guys were running a script that was connected to a cronjob?

Later in the day it appears as though they hit every PHP file on the entire server we are on. This not only included index.php files but every php file on the server had this defacement message. I don't understand how one script such as phpbb or and other script like that would allow someone near root level access on a linux machine coupled with firewalls and what not.

The company we go through is an established business with a few years of experience. They were surprised and confused just as much as we were wondering how this could of happened. The server is at the data center right now under further investigation. All MYSQL data seems to be in tact and untouched which is a good thing.

Has anyone else been attacked by ARsLan and does anyone have a clue as to what may have cuased this or how this could of happened?

I will never understand the motivation behind doing things such as this. It causes nothing but anger and grief.
Hackers yang buat tu menggelar diri mereka kumpulan Arslan,
dan mengaku sebagai orang islam!
(maybe saja nak guna nama islam supaya nampak gempak le)

Ada beberapa websites yang dibawah host provider tersebut sudah kena hack - username, password semua kena access dan website mereka kena 'defaced'.

Kenapalah jadi macam ni?!
Betul2 memburukkan nama islam...

Sekarang kat forum luar negara benda ni topik hangat...
__________________
Launch Akan Datang: Coming soon on WangCyber! ... berkenaan Twitter!

Follow Kak G on Twitter here:
Twitter.com/pemasaranIM


Reply With Quote
  #2  
Old 07-27-2006, 02:30 PM
fai's Avatar
fai fai is offline
WC Premium
 
Join Date: Jul 2006
Location: Putra
Posts: 367
fai is an unknown quantity at this point
iTrader: (3)
Default

Buruk betul prangai mereka tu..

:cry:


Reply With Quote
  #3  
Old 07-30-2006, 11:29 PM
takatoo's Avatar
takatoo takatoo is offline
Junior Member
 
Join Date: Apr 2006
Location: Waseda kamo shirenai
Posts: 158
takatoo is an unknown quantity at this point
iTrader: (0)
Default

Jangan kata webhosting provider,Microsoft dan Nasa pun kena serang.
Musim2 perang ni kat internet pun diorg angkat senjata. :?

Nasa Hacked

Kita jangan jadi mangsa keadaan cukupla..[/url]
__________________
It sucks being a noob


Reply With Quote
  #4  
Old 07-31-2006, 03:04 PM
galadriel's Avatar
galadriel galadriel is offline
Moderator
 
Join Date: Jun 2006
Location: Selangor, Kuala Lumpur, Teregganu dan Sarawak.
Posts: 487
galadriel is an unknown quantity at this point
iTrader: (2)
Default

huhu...

kalo nasa yang ada sistem canggih-manggih tu pun boleh kena hack... apatah lagi orang kecik macam kita ye... :shock:

Buat masa ni memang susah nak lawan hackers ni. But biasanya mereka target website yang high profile, macam website kerajaan, website bisnes yang glamer, news website... but adakalanya website / blog orang biasa pun kena hack juga sebab kebetulan 'hack' yang mereka install tu memang khas untuk 'ganggu' dan kasi malapetaka kat platform tertentu seperti wordpress, blogger,
sometimes pada browser - seperti FireFox, IE or pada apa-apa yang berkaitan dgn Microsoft (Outlook, etc)...
pada phpbb forum, dan seperti yang kat atas tu, pada hosting provider...

kalo fikir.... memang serabut kepala ...
__________________
Launch Akan Datang: Coming soon on WangCyber! ... berkenaan Twitter!

Follow Kak G on Twitter here:
Twitter.com/pemasaranIM


Reply With Quote
  #5  
Old 07-31-2006, 05:04 PM
galadriel's Avatar
galadriel galadriel is offline
Moderator
 
Join Date: Jun 2006
Location: Selangor, Kuala Lumpur, Teregganu dan Sarawak.
Posts: 487
galadriel is an unknown quantity at this point
iTrader: (2)
Default

testing....
__________________
Launch Akan Datang: Coming soon on WangCyber! ... berkenaan Twitter!

Follow Kak G on Twitter here:
Twitter.com/pemasaranIM


Reply With Quote
  #6  
Old 07-31-2006, 05:13 PM
aku's Avatar
aku aku is offline
WC Premium
 
Join Date: Apr 2006
Posts: 2,050
aku is an unknown quantity at this point
iTrader: (16)
Default

uik.?? :shock: tengah test code ke? aa.. jangan main inject2 tau.. tak baik.. :lol:


Reply With Quote
  #7  
Old 08-02-2006, 08:22 PM
ajibtu's Avatar
ajibtu ajibtu is offline
Pioneer Member
 
Join Date: Jul 2006
Posts: 780
ajibtu is an unknown quantity at this point
Send a message via Yahoo to ajibtu
iTrader: (23)
Default

sql injection , php injection ...

web aku pun pernah ada hacker cuba2 nak masuk ...

slamat aku perasan... banyak plak tuh...

dia sempat upload file script.... tapi tu aku tak iktiraf sebagai hacker la.. sebab directory tu aku mmg set open untuk upload ...

dia boleh scan lubang2 yg open...

hati2


Reply With Quote
  #8  
Old 09-05-2006, 12:02 PM
rontol rontol is offline
Junior Member
 
Join Date: Aug 2006
Posts: 60
rontol is an unknown quantity at this point
Send a message via Yahoo to rontol
iTrader: (0)
Default

Berdasarkan ape yang aku bace la....tiada cara nk elak serangan crackers ni
wujud langkah2 pencegahan...tapi selagi si crackers2 ni jumpe lubang untuk di exploit....selagi itu la tidak selamat...

n00b2 je yg main dengan injection ni...sekali kite lupe...zasss* merane la jawapnye....

salah satu penyelesain alternatif yg aku bace kt forum luar negare...web hosting provider ni block negare2 'kritikal'....maknenye derang xbagi user2 dari negare kaki brute force ni jd user derang.....russia...vietnam....(Malaysia pn ade woii)


Reply With Quote
  #9  
Old 09-05-2006, 11:05 PM
reezluv's Avatar
reezluv reezluv is offline
WC Premium
 
Join Date: Jun 2006
Location: ee-poh
Posts: 2,234
reezluv is an unknown quantity at this point
iTrader: (25)
Default

huhuu..aku de baca iklan kat majalah PC pasal Uitm nak wat hack competition kan?ke nak create satu sistem yang bleh banteras hackers ni??

tapi aku rasa sure de hackers dari malaysia ni..member aku ade gak la hackers kecil2 lan n besar2 besaran tu tak berani depa nak wat.kang xpasal2 je..takat yang aku tau la..yang aku taktau...tahla...


Reply With Quote
  #10  
Old 09-06-2006, 10:15 AM
code7's Avatar
code7 code7 is offline
WC Premium
 
Join Date: Dec 2005
Location: On WorkStation
Posts: 1,352
code7 is on a distinguished road
Send a message via Yahoo to code7
iTrader: (2)
Default

saje diorang xde keje lain nak wat selain meng'inject' sql utk wat index defacement.. sbb tu kalo ada folder atau directory bubuh index.htm bagi ia tak dapat dibaca lubang2 tuh... pastu kalo yg guna free php scripts pepandailah patch update kalo ada.. jgn tunggu lelama nanti diterjah hackers..

pastu kalo pilih webhosting luarnegara berhati-hatilah sket, kenkadang diorang simpan file malware script dalam server tu anytime je server leh down... bukan ape member aku penah kene sbb byk sgt org pelik2 simpan virus/malware script dalam webhosting diorang sehingga org lain kene tempias..

p/s: sistem yg manusia buat tak pernah perfect.... ada je lubangnyer...
__________________


Twitter - http://twitter.com/rahsiaebiz
Facebook - Fahmy aka Code7
Download Percuma - Rahsia 30 Tools Usahawan Internet


Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Forum Jump


All times are GMT +8. The time now is 06:30 AM. - Forum style by ForumMonkeys
Powered by vBulletin® Version 3.8.0
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0