Web Wiz - Green Windows Web Hosting

  New Posts New Posts RSS Feed - registration exploit??
  FAQ FAQ  Forum Search   Events   Register Register  Login Login

registration exploit??

 Post Reply Post Reply
Author
redhawk View Drop Down
Newbie
Newbie


Joined: 06 January 2010
Status: Offline
Points: 17
Post Options Post Options   Thanks (0) Thanks(0)   Quote redhawk Quote  Post ReplyReply Direct Link To This Post Topic: registration exploit??
    Posted: 23 August 2011 at 10:43am
I moderate on a forum running webwiz software version 9.70
These past days it has been under attack by someone or group of hackers who have been registering accounts approximately 1500 per day.
IP addresses seem to be totally random which would indicate a bot-net attack or x-host exploit making IP banning in effective.
While some accounts are registered with hotmail.com they've found a way to register accounts without any email address.
I'm also guessing that they've bypassed the Captcha Phrase screen considering the speed of account registrations
Furthermore these email-less account are also capable of logging on to the forum thus making their presence known to the active list.
Fortunately they're not activated accounts however it does beg the question how they managed to register in the first place.

Is there some known exploit in version 9.70 that allow this kind of activity??

Will a forum update prevent such attacks??

Is it possible to set a limit on the amount of accounts created in a given time period??

Richard S.
Back to Top
WebWiz-Bruce View Drop Down
Admin Group
Admin Group
Avatar
Web Wiz Developer

Joined: 03 September 2001
Location: Bournemouth
Status: Offline
Points: 9844
Post Options Post Options   Thanks (0) Thanks(0)   Quote WebWiz-Bruce Quote  Post ReplyReply Direct Link To This Post Posted: 23 August 2011 at 11:24am
There are no known exploits to get around the CAPTCHA and I can not see how this would be possible to get around.

I suspect that these people are doing this in a different way, possibly through a modification to your forum, or another application on your website that uses the same database, but with out forensically examining your sites log files and website files as well as server security it would be imposable to tell how they would have done this.

In the meantime you can do things in the admin area like ban hotmail.com email address, enable email activation, disable new registrations, enable admin activation of new accounts, as well as other techniques to stop them.

You should also check your websites log files and see where they start on your website, you may find that they are coming in through a back door through a modification or another file on your website.
Back to Top
 Post Reply Post Reply

Forum Jump Forum Permissions View Drop Down

Forum Software by Web Wiz Forums® version 12.08
Copyright ©2001-2026 Web Wiz Ltd.


Become a Fan on Facebook Follow us on X Connect with us on LinkedIn Web Wiz Blogs
About Web Wiz | Contact Web Wiz | Terms & Conditions | Cookies | Privacy Notice

Web Wiz is the trading name of Web Wiz Ltd. Company registration No. 05977755. Registered in England and Wales.
Registered office: Web Wiz Ltd, Unit 18, The Glenmore Centre, Fancy Road, Poole, Dorset, BH12 4FB, UK.

Prices exclude VAT at 20% unless otherwise stated. VAT No. GB988999105 - $, € prices shown as a guideline only.

Copyright ©2001-2026 Web Wiz Ltd. All rights reserved.