Forums

Go Back   Forums > Entertainment > Chatzone
Register FAQ Members List Calendar Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 11-23-2006, 11:39 AM
Jackie H.'s Avatar
Registered User
 
Join Date: Jan 2005
Location: North London
Posts: 3,339
Lanza Teccie Team

Well done guys-hope you can restore the forum to it's former glory-good luck!!


:party :party :party
__________________
Reply With Quote
  #2 (permalink)  
Old 11-23-2006, 12:03 PM
peggy's Avatar
Registered User
 
Join Date: Jan 2003
Location: Lanzarote
Posts: 349
Brilliant job, good luck with the rest.:clap :clap :clap
__________________
Reply With Quote
  #3 (permalink)  
Old 11-23-2006, 12:07 PM
Registered User
 
Join Date: May 2003
Location: Manchester
Posts: 207
Typical teccies, just got back from the pub !!

Ole :giggle
__________________
Reply With Quote
  #4 (permalink)  
Old 11-23-2006, 04:40 PM
Elle1971's Avatar
Registered User
 
Join Date: Oct 2006
Location: Playa Blanca, Lanzarote
Posts: 138
Lol Ole :giggle

Seriously though, well done guys.
__________________

Reply With Quote
  #5 (permalink)  
Old 11-23-2006, 04:46 PM
Registered User
 
Join Date: Nov 2005
Location: Nottingham
Posts: 41
I would like someone to tell me though, if the hacker actually has my e-mail address. Not at all happy with that aspect of it:rolleyes
Reply With Quote
  #6 (permalink)  
Old 11-24-2006, 12:48 AM
Administrator
 
Join Date: Nov 2006
Posts: 31
Attack details

Hi guys!

Here is Alex, the techy.

First of all I'm very sorry for the attack and I'm going to explain what happened.

The hacker used a known vulnerability of a forum php file called calendar.php. Let's say that he actually is not a hacker but a cracker.
Hackers enter to your system and let you know security holes, they do that because they find that challenging and in fact help system operators to improve security issues. Crackers enter and destroy all the data.

The cracker destroyed the referential integrity of our database, what means that all the posts are still there but in a mess, in order to restore the data we should go post by post manually and set them back to their original threads and forums. As you could imagine that's impossible considering the number of posts we had.

I will try to get and old database in order to loose just 2 or 3 months of posts, but I can't assure anything.

On the other side, I let you know that we are upgrading our forum from 2.2.8 (current version) to 3.6, it means more smilies, no security holes, and better functionality.

I have already set back bawbee account, as the cracker removed all the admin accounts, and we are going to set back all the forums we had.

Since we have to create new forums we can do whatever we want, so if you want to have new forums or change the old ones because you feel that they can be improved you can discuss and give feed back to bawbee.

Regarding your personal information, emails, virus on your computers and so on you don't have to worry, I've been checking everything for two days before writing any feedback to all of you, just to give trustable information. The attack affects only the forum database, this database has been destroyed but not backuped, so nobody has your details. Since the attack hasn't modified any forum file no virus or trojan horse has been installed.

I will keep an eye on that thread just in case you need more feedback.

I know that some of you have posted a lot on the forum, and you have some special titles like Senior member and so on. That information is kept, however if you think something is wrong feed bawbee back and he'll feed me back in order to solve the situation.

Again, I apology in the name of all lanzarote.com team, we thank to you all your effort to keep the forum alive even after such unluckily situation.

For more information about the attack you can visit this link: http://www.vbulletin.com/forum/showthread.php?t=109257


Alex
Reply With Quote
  #7 (permalink)  
Old 11-24-2006, 08:02 AM
Registered User
 
Join Date: May 2003
Location: Manchester
Posts: 207
Cheers Alex,

Any idea who the hacker is ? Or where they're from or why it struck this site ?

Is it a random thing, or did somebody selectively choose this site ?

Ole

PS, assuming the RI is 'destroyed' , which I take to mean the indexes have been deleted or corrupted, can you not rebuild the indexes ? Or has it actually corrupted the index key data.
__________________
Reply With Quote
  #8 (permalink)  
Old 11-24-2006, 10:37 AM
Registered User
 
Join Date: Nov 2002
Location: PDC, Lanzarote.
Posts: 39
Good job!

Good to see the Forum up & running again.

I agree with Willh1975 that the info posts are well worth saving, if possible?

However, if Will doesn't appreciate the other threads, (Chatzone, Fun & Games, etc), why the hell does he waste his time looking at them? No response needed Will, just thinking out loud!
__________________
watfordave
"come on you 'orns"
Reply With Quote
  #9 (permalink)  
Old 11-24-2006, 11:01 AM
peggy's Avatar
Registered User
 
Join Date: Jan 2003
Location: Lanzarote
Posts: 349
It would be nice to start from scratch, not so many "departments" we need people to ask questions. Then fine tune it from there.
__________________
Reply With Quote
  #10 (permalink)  
Old 11-24-2006, 11:48 AM
Registered User
 
Join Date: Aug 2006
Location: Playa Blanca on&off
Posts: 9
Help.

I got a couple of pop up saying I had a PM. I pressed ok ok etc but could / didn't get it.

Did someone send one or is the system still playing up. how do I access them?

Steve
Reply With Quote
  #11 (permalink)  
Old 11-24-2006, 12:16 PM
peggy's Avatar
Registered User
 
Join Date: Jan 2003
Location: Lanzarote
Posts: 349
I sent you 2 but deleted one :blush
Look at the bottom of the page it says private messages, click on there. I found 2 in my user cp when the site returned.:sigh
__________________
Reply With Quote
  #12 (permalink)  
Old 11-24-2006, 12:31 PM
Registered User
 
Join Date: Aug 2006
Location: Playa Blanca on&off
Posts: 9
Actually I got both Peggy, thanks to your guidance. Look forward to more of your sense of humour.
Reply With Quote
  #13 (permalink)  
Old 11-27-2006, 02:42 AM
Administrator
 
Join Date: Nov 2006
Posts: 31
Quote:
Originally posted by oleoleole

PS, assuming the RI is 'destroyed' , which I take to mean the indexes have been deleted or corrupted, can you not rebuild the indexes ? Or has it actually corrupted the index key data. [/b]


Hi again,

It is not a corruption on the indexes, is just an information lost. Posts are organized in three tables: forums (with forum id), threads (with thread id and forum id) and posts (with posts id and thread id). Many registers have been deleted, so there are threads pointing to a not any more existing parent forum, and the same for posts.

We are still working on that, it seems we are going to be able to recover a not corrupted copy of the database, however the last 2 or 3 months of posts are going to be lost.

Regarding the hackers, I really think they don't focuse on lanzarote.com, they should be people looking for vulnerabilities around, and if they find one, they'll exploit it.

Will keep you up to date.

Alex
Reply With Quote
  #14 (permalink)  
Old 11-27-2006, 09:16 AM
Registered User
 
Join Date: May 2003
Location: Manchester
Posts: 207
Oh Eck !!!

If it's deleted parent key data then it must have circumvented the DBMS (Assess ?), so sounds like it's well stuffed and as you say the only way back is a backup.

Anyway I'm sure it's keeping you busy.

Cheers Alex - Ole
__________________
Reply With Quote
  #15 (permalink)  
Old 11-27-2006, 03:00 PM
Administrator
 
Join Date: Nov 2006
Posts: 31
Hi again,

You'll see on the forum main page the posts I've been able to recover.

Since the forum table data was deleted I wasn't able to get the original forum titles.

I would be very grateful if Bawbee or whoever wanting to help to post something on this thread letting me know which forum title should I use instead of Foro230, Foro222, Foro221, Foro213, Foro204 and Foro203.

I will update the titles and then I'll try to migrate the forum to the new version 3.6 keeping the recovered posts.

If you manage to give me the titles today I hope to have the new version working by tomorrow.

Alex
Reply With Quote
  #16 (permalink)  
Old 11-27-2006, 07:39 PM
Registered User
 
Join Date: Nov 2002
Location: PDC, Lanzarote.
Posts: 39
Hi Alex,

There were lots of "sections" & "sub-sections".

There was a "section" called "FUN & GAMES". "Sub-sections" of this were "FANTASY FOOTBALL"(FORO221) & "JOKES"(FORO222).

There were sections on PDC, PB, CT, & OTHER AREAS. FORO230 looks like it belongs in the CT section.

There was a "section" called "CHATZONE" This contained a few "sub-sections", one of which was "CHATROOM", FORO204 was is in this. FORO203 was also in "CHATZONE" but I cant remember what the section was called.

I hope this makes sense & is of help.

Could you put my "Lanza Liga" post from today into the "Lanza Liga 2006/2007 section please?
__________________
watfordave
"come on you 'orns"
Reply With Quote
  #17 (permalink)  
Old 11-27-2006, 10:30 PM
sheik's Avatar
Administrator
 
Join Date: Nov 2006
Location: Lanzarote
Posts: 5,906
Hi Alex

From what I can recall.............

203 - Chatzone

204 - Chatroom - sub section of Chatzone


213 - no posts???

221 - Trivia Quiz/Lanza Liga - sub section of Funīnīgames

222 - Jokes - sub section of Funīnīgames

230 - Lanzarote Chat
Reply With Quote
  #18 (permalink)  
Old 11-30-2006, 07:34 AM
test
 
Posts: n/a
Post a reply test

Test from admin
Reply With Quote
  #19 (permalink)  
Old 11-30-2006, 08:00 AM
Administrator
 
Join Date: Nov 2006
Posts: 31
Changes update

Hi there,

After receiving feed back from Bawbee about problems when trying to post and when using private messages, I've find out that the new version of the forum (3.6) needs at least php 4.3.3 to work properly.

Our server had the version 4.3.2, is why we have decided to rent a new server, which besides is faster and have a better version of MySQL database.

You'll notice that the forum URL has changed, right now is forum.lanzarote.com, that's necessary till I migrate lanzarote.com site to the new server, right now www.lanzarote.com is in one server and forum.lanzarote.com is in another one.

Anyway, if you prefer for the future forum.lanzarote.com instead of www.lanzarote.com/forum we can leave it. As you wish.

I think that everything is going to work smoothly from now on, however if you find some problems just feed Bawbee back and he'll feed me back.

I understand that most of you will be disappointed with the lost of information, so do I. However I've managed to recover the user information, honestly is one of the things that most worried me, as you now the number of posts and the titles are some kind of homage to the old users...

Again let me apology in the name of lanzarote.com team, we have taken proper measures to avoid such situation in the future.

Thanks for your understanding.

Alex
Reply With Quote
  #20 (permalink)  
Old 11-30-2006, 09:07 AM
Registered User
 
Join Date: Jan 2006
Location: South Wales
Posts: 39
Thank you

Am so glad the forum is back and commend you all for your hard work to restore this forum for all that love Lanzarote. The people that cannot be on the island but love it all the same and rely on Bawbee to give us on going information, only a few years before I retire, sell my house and live where I want to - Lanzarote!
__________________
carpe Diem
Reply With Quote
  #21 (permalink)  
Old 11-30-2006, 07:46 PM
Bruce's Avatar
Registered User
 
Join Date: Dec 2002
Location: London/Kent borders
Posts: 118
Well done Alex, just got back from Lanza today and it was good to see the forum up and running

Bruce
__________________


Bruce
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 10:06 PM.



Search Engine Friendly URLs by vBSEO 3.0.1 ©2007, Crawlability, Inc.