SUBSIM Radio Room Forums



SUBSIM: The Web's #1 resource for all submarine & naval simulations since 1997

Go Back   SUBSIM Radio Room Forums > Silent Hunter 3 - 4 - 5 > Silent Hunter III
Forget password? Reset here

Reply
 
Thread Tools Display Modes
Old 07-12-06, 01:23 AM   #46
shegeek72
WAV
 
Join Date: Sep 2005
Location: somewhere in the Pacific
Posts: 603
Downloads: 95
Uploads: 0
Default

Quote:
Originally Posted by Jager
Damn it, can't these people find something else to amuse them ? I'm curious, how does someone actually "Hack" a site ?
By getting the password to the ftp files, or finding a back door: http://www.faqts.com/knowledge_base/...html/aid/11815
shegeek72 is offline   Reply With Quote
Old 07-12-06, 07:23 AM   #47
hardcampa
Watch
 
Join Date: Jun 2006
Posts: 20
Downloads: 0
Uploads: 0
Default

Quote:
Originally Posted by shegeek72
Quote:
Originally Posted by Jager
Damn it, can't these people find something else to amuse them ? I'm curious, how does someone actually "Hack" a site ?
By getting the password to the ftp files, or finding a back door: http://www.faqts.com/knowledge_base/...html/aid/11815
Lol that link was funny and completely pointless.
When someone hacks a computer in 99.999% of the cases they simply look for exploits, bad ASP or PHP code running on the web server for example, most often I would say the reason to why they succeeded is that the admin missed/didn't bother with a new patch for whatever is running on the server.
Any program that is running on a server must be kept track of and updated when there's an update.

99.9% of all web defaces etc are made by script kiddies. These guys don't know how to code or anything, they simply run bots and programs (that other have done) on computers that already been owned by some other script etc, the scripts then look for vulnerabilities at whatever sites they stumble upon. Once found they can install and deface a webpage with whatever info they want.

Admins really should follow lists like bugtraq etc to learn about new exploits, this is just common sense if you're a security aware admin.

A final note, these guys seldom, "target" a specific site. Their bot searching for vulnerabilities just happened to stumble upon a site that had a vulnerability.
__________________
Mod Downloads: ftp://gibbage.mine.nu

Last edited by hardcampa; 07-12-06 at 07:29 AM.
hardcampa is offline   Reply With Quote
Old 07-12-06, 08:02 AM   #48
U-Bones
Grey Wolf
 
Join Date: Mar 2005
Location: Treading Water
Posts: 847
Downloads: 56
Uploads: 0
Default

Quote:
Originally Posted by hardcampa
Quote:
Originally Posted by shegeek72
Quote:
Originally Posted by Jager
Damn it, can't these people find something else to amuse them ? I'm curious, how does someone actually "Hack" a site ?
By getting the password to the ftp files, or finding a back door: http://www.faqts.com/knowledge_base/...html/aid/11815
Lol that link was funny and completely pointless.
When someone hacks a computer in 99.999% of the cases they simply look for exploits, bad ASP or PHP code running on the web server for example, most often I would say the reason to why they succeeded is that the admin missed/didn't bother with a new patch for whatever is running on the server.
Any program that is running on a server must be kept track of and updated when there's an update.

99.9% of all web defaces etc are made by script kiddies. These guys don't know how to code or anything, they simply run bots and programs (that other have done) on computers that already been owned by some other script etc, the scripts then look for vulnerabilities at whatever sites they stumble upon. Once found they can install and deface a webpage with whatever info they want.

Admins really should follow lists like bugtraq etc to learn about new exploits, this is just common sense if you're a security aware admin.

A final note, these guys seldom, "target" a specific site. Their bot searching for vulnerabilities just happened to stumble upon a site that had a vulnerability.
Exactly.

One additional point. "...just happened to stumble upon a site" is perhaps downsizing what goes on. The bots actually harvest a large list of hosts with vunerabilities, which the kiddies can pick and choose from. Many (if not most) machines are insufficiently patched.
U-Bones is offline   Reply With Quote
Old 07-12-06, 09:05 AM   #49
NeonSamurai
Ocean Warrior
 
Join Date: Jan 2002
Location: Socialist Republic of Kanadia
Posts: 3,044
Downloads: 25
Uploads: 0


Default

That job looked to me like the typical wanabe hacker kiddy exploit hack. The only reason why the site was targeted was simply because they found it had the exploit they were working with.

Usualy all the political crap is just a smoke screen, they usualy do it in a lame attempt to throw off the scent.

Typicaly these wanabes dont find their own exploits, they just use published ones they find on the net. Total amatures. Sending viruses back on an email just proves that.
NeonSamurai is offline   Reply With Quote
Old 07-12-06, 09:29 AM   #50
CWorth
Grey Wolf
 
Join Date: Apr 2005
Location: Gettysburg PA
Posts: 845
Downloads: 38
Uploads: 0
Default

Looks like the site is back up on my end...hope he has closed off the vulnerabilities this time.
CWorth is offline   Reply With Quote
Old 07-12-06, 09:32 AM   #51
kiwi_2005
Eternal Patrol
 
Join Date: May 2004
Location: Aeoteroa
Posts: 7,382
Downloads: 223
Uploads: 1
Default

Script kiddies!
__________________
RIP kiwi_2005



Those who can't laugh at themselves leave the job to others.



kiwi_2005 is offline   Reply With Quote
Old 07-13-06, 09:48 AM   #52
hardcampa
Watch
 
Join Date: Jun 2006
Posts: 20
Downloads: 0
Uploads: 0
Default

Quote:
Originally Posted by U-Bones
Quote:
Originally Posted by hardcampa
Quote:
Originally Posted by shegeek72
Quote:
Originally Posted by Jager
Damn it, can't these people find something else to amuse them ? I'm curious, how does someone actually "Hack" a site ?
By getting the password to the ftp files, or finding a back door: http://www.faqts.com/knowledge_base/...html/aid/11815
Lol that link was funny and completely pointless.
When someone hacks a computer in 99.999% of the cases they simply look for exploits, bad ASP or PHP code running on the web server for example, most often I would say the reason to why they succeeded is that the admin missed/didn't bother with a new patch for whatever is running on the server.
Any program that is running on a server must be kept track of and updated when there's an update.

99.9% of all web defaces etc are made by script kiddies. These guys don't know how to code or anything, they simply run bots and programs (that other have done) on computers that already been owned by some other script etc, the scripts then look for vulnerabilities at whatever sites they stumble upon. Once found they can install and deface a webpage with whatever info they want.

Admins really should follow lists like bugtraq etc to learn about new exploits, this is just common sense if you're a security aware admin.

A final note, these guys seldom, "target" a specific site. Their bot searching for vulnerabilities just happened to stumble upon a site that had a vulnerability.
Exactly.

One additional point. "...just happened to stumble upon a site" is perhaps downsizing what goes on. The bots actually harvest a large list of hosts with vunerabilities, which the kiddies can pick and choose from. Many (if not most) machines are insufficiently patched.
Yeah, I didn't want to get too technical. They scan a range of IP's to keep it short. =>

These guys should not be mistaken for coders like the cracker groups have (Reloaded, Deviance and such), those guys are real good coders. The web defacing mess, well those are just nobodys.
__________________
Mod Downloads: ftp://gibbage.mine.nu

Last edited by hardcampa; 07-13-06 at 09:54 AM.
hardcampa is offline   Reply With Quote
Old 07-13-06, 02:43 PM   #53
shegeek72
WAV
 
Join Date: Sep 2005
Location: somewhere in the Pacific
Posts: 603
Downloads: 95
Uploads: 0
Default

Quote:
Originally Posted by hardcampa
Lol that link was funny and completely pointless.
I know. Was waiting for someone to 'get it.'
The efforts to "cover your tracks" could have been done better. Its abit
transparent about deleting windows.
--
shegeek72 is offline   Reply With Quote
Old 07-13-06, 03:31 PM   #54
Shadow9216
Frogman
 
Join Date: Jun 2005
Posts: 296
Downloads: 91
Uploads: 0
Default

And then of course there's the good old "DOS" attacks...internet extortion- pay us a sum or we shut down your site. Many of those punks have a "corporate" logo to represent their little band of thieves. Good news is that they have to leave a trace in order to get paid- bad news is they usually exist outside of US jurisdiction. Still, international law enforcement cooperates fairly well these days in such cases.
Shadow9216 is offline   Reply With Quote
Old 07-14-06, 11:28 AM   #55
Sailor Steve
Stowaway
 
Posts: n/a
Downloads:
Uploads:
Default

Jager, your sig is still awfully large. You might want to read the forum rules and tone it down a bit.
  Reply With Quote
Old 07-14-06, 09:31 PM   #56
ming
Loader
 
Join Date: Sep 2005
Posts: 90
Downloads: 138
Uploads: 0
Default

Some dl's still seem screwed up...hopefully it will all be back up soon You guys still having problems? I just need to know because I have to know that my computer has not been infected .
ming is offline   Reply With Quote
Old 07-15-06, 06:18 AM   #57
andy_311
The Old Man
 
Join Date: Apr 2005
Location: Oldham, Lancs,England
Posts: 1,312
Downloads: 82
Uploads: 0
Default

Quote:
Originally Posted by ming
Some dl's still seem screwed up...hopefully it will all be back up soon You guys still having problems? I just need to know because I have to know that my computer has not been infected .
same here tried to d/load the u-571 movie last night and that was tottally corrupt.
andy_311 is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 10:54 AM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Copyright © 1995- 2025 Subsim®
"Subsim" is a registered trademark, all rights reserved.