Web Wiz - Green Windows Web Hosting

  New Posts New Posts RSS Feed - £25 Reward
  FAQ FAQ  Forum Search   Events   Register Register  Login Login

£25 Reward

 Post Reply Post Reply Page  <1234>
Author
huwnet View Drop Down
Senior Member
Senior Member


Joined: 30 May 2003
Location: England
Status: Offline
Points: 1375
Post Options Post Options   Thanks (0) Thanks(0)   Quote huwnet Quote  Post ReplyReply Direct Link To This Post Posted: 05 July 2005 at 12:15pm
Server monitoring to check the wewbserver hasnt crashed
Back to Top
dpyers View Drop Down
Senior Member
Senior Member


Joined: 12 May 2003
Status: Offline
Points: 3937
Post Options Post Options   Thanks (0) Thanks(0)   Quote dpyers Quote  Post ReplyReply Direct Link To This Post Posted: 05 July 2005 at 1:54pm
Sounds like they may be running a script from your site. Make sure any testing scripts are in a login/password restricted directory.

Lead me not into temptation... I know the short cut, follow me.
Back to Top
Gullanian View Drop Down
Senior Member
Senior Member
Avatar

Joined: 04 January 2002
Location: England
Status: Offline
Points: 4373
Post Options Post Options   Thanks (0) Thanks(0)   Quote Gullanian Quote  Post ReplyReply Direct Link To This Post Posted: 05 July 2005 at 2:55pm
No scripts have been modified at all on the date of the attack onwards. 

I'm going to reupload everything again to make sure it's all clean just to be on the safe side.

I've also filed a criminal report with the Metropolitan Police, I'm going to forward any data on to them.

Can someone look at the login cookies for me?  I think I've done them securly enough.  When you login it stores your password and usermame in the cookie.

The password is and MD5 hash of the original password with a salt appended to it.
Back to Top
dj air View Drop Down
Senior Member
Senior Member
Avatar

Joined: 05 April 2002
Location: United Kingdom
Status: Offline
Points: 3627
Post Options Post Options   Thanks (0) Thanks(0)   Quote dj air Quote  Post ReplyReply Direct Link To This Post Posted: 05 July 2005 at 3:06pm
why not store a record/account ID number like webwiz forums that is for that perpose only,

that way you dont have cookies storiung usernames or passwords which would be seen as more secure.

also make sure anything that has it like login page etc goes though SSL
Back to Top
dpyers View Drop Down
Senior Member
Senior Member


Joined: 12 May 2003
Status: Offline
Points: 3937
Post Options Post Options   Thanks (0) Thanks(0)   Quote dpyers Quote  Post ReplyReply Direct Link To This Post Posted: 05 July 2005 at 4:20pm
Originally posted by Gullanian Gullanian wrote:

No scripts have been modified at all on the date of the attack onwards.


I was thinking more in terms of someone running existing testing scripts. You'd be amazed at how many production sites have open scripts you can run by entering somesite.com/test/ or somesite.com/test.xxx

Lead me not into temptation... I know the short cut, follow me.
Back to Top
Gullanian View Drop Down
Senior Member
Senior Member
Avatar

Joined: 04 January 2002
Location: England
Status: Offline
Points: 4373
Post Options Post Options   Thanks (0) Thanks(0)   Quote Gullanian Quote  Post ReplyReply Direct Link To This Post Posted: 05 July 2005 at 5:06pm
As far as I know there are not any testing scripts left!
Back to Top
Phat View Drop Down
Senior Member
Senior Member


Joined: 23 February 2003
Status: Offline
Points: 386
Post Options Post Options   Thanks (0) Thanks(0)   Quote Phat Quote  Post ReplyReply Direct Link To This Post Posted: 05 July 2005 at 9:35pm
No luck here. I even signed up and put credits in my account.

You don't send sms to Australia though...Cry
Back to Top
Gullanian View Drop Down
Senior Member
Senior Member
Avatar

Joined: 04 January 2002
Location: England
Status: Offline
Points: 4373
Post Options Post Options   Thanks (0) Thanks(0)   Quote Gullanian Quote  Post ReplyReply Direct Link To This Post Posted: 05 July 2005 at 10:00pm
Sites currently down Phat!

We do send to Australlia, check the prices page.  Please wait a few days for me to get service back online though.
Back to Top
 Post Reply Post Reply Page  <1234>

Forum Jump Forum Permissions View Drop Down

Forum Software by Web Wiz Forums® version 12.08
Copyright ©2001-2026 Web Wiz Ltd.


Become a Fan on Facebook Follow us on X Connect with us on LinkedIn Web Wiz Blogs
About Web Wiz | Contact Web Wiz | Terms & Conditions | Cookies | Privacy Notice

Web Wiz is the trading name of Web Wiz Ltd. Company registration No. 05977755. Registered in England and Wales.
Registered office: Web Wiz Ltd, Unit 18, The Glenmore Centre, Fancy Road, Poole, Dorset, BH12 4FB, UK.

Prices exclude VAT at 20% unless otherwise stated. VAT No. GB988999105 - $, € prices shown as a guideline only.

Copyright ©2001-2026 Web Wiz Ltd. All rights reserved.