Reply
Webhostingtalk hacked
Old 03-26-2009, 12:17 PM Webhostingtalk hacked
praveen's Avatar
Life is a Dream

Latest Blog Post:
Happy Diwali
Posts: 3,583
Location: in a distant land far away from reality
Trades: 0
Quote:
At approximately 8:30 pm EST on Saturday, March 21 The malicious attacker deleted all backups from the backup servers within the infrastructure before deleting tables from our db server. We were alerted of the db exploitation and quickly shut down the site to prevent further damage.
http://www.webhostingtalk.com/showthread.php?t=729727
__________________
Praveen
Smilies - Celebs - Short URLs - Indian Food - Wild Creek

Useful Threads, Tutorials and Resources
Graphics - Templates - Dreamweaver - Javascript - SEO - Ruby on Rails - Ajax Tutorials - More Ajax - CSS - More CSS
praveen is offline
Reply With Quote
View Public Profile Visit praveen's homepage!
 
 
When You Register, These Ads Go Away!
Old 03-26-2009, 01:44 PM Re: Webhostingtalk hacked
Rad_Dev's Avatar
Experienced Talker

Posts: 37
Trades: 0
****! That really sucks. If their DB server can get hacked, anyone's can. I hope they have off-site backups!
__________________
My software never has bugs... It just has random features.
Internet Web Hosting & Professional Website Design
Open Forum for Living Green
Rad_Dev is offline
Reply With Quote
View Public Profile Visit Rad_Dev's homepage!
 
Old 03-26-2009, 06:04 PM Re: Webhostingtalk hacked
andrei155's Avatar
CEO of BLD Hosting

Latest Blog Post:
Cpanel Update
Posts: 1,340
Name: Andrei
Location: Canada
Trades: 6
Quote:
Originally Posted by Rad_Dev View Post
****! That really sucks. If their DB server can get hacked, anyone's can. I hope they have off-site backups!
They do, but that was hacked too.
__________________
No Overselling Guarantee
Now Includes a Free Domain
BLD Hosting - Web Hosting | Web Hosting Blog
andrei155 is offline
Reply With Quote
View Public Profile Visit andrei155's homepage!
 
Old 03-27-2009, 11:23 AM Re: Webhostingtalk hacked
Novice Talker

Posts: 8
Trades: 0
What the hell... why would anyone do this? Maybe a hosting company didn't like a review? xD
rosefox911 is offline
Reply With Quote
View Public Profile
 
Old 03-27-2009, 06:27 PM Re: Webhostingtalk hacked
andrei155's Avatar
CEO of BLD Hosting

Latest Blog Post:
Cpanel Update
Posts: 1,340
Name: Andrei
Location: Canada
Trades: 6
Considering that website is mainly the river of all web hosting knowledge... that hacker must be **** good.
__________________
No Overselling Guarantee
Now Includes a Free Domain
BLD Hosting - Web Hosting | Web Hosting Blog
andrei155 is offline
Reply With Quote
View Public Profile Visit andrei155's homepage!
 
Old 03-29-2009, 04:31 AM Re: Webhostingtalk hacked
Extreme Talker

Posts: 172
Trades: 0
oh its bad luck...was in last week.. but lost much posting....around 300
shakir is offline
Reply With Quote
View Public Profile
 
Old 03-29-2009, 11:07 AM Re: Webhostingtalk hacked
MoForce's Avatar
Skilled Talker

Posts: 83
Name: Jack Shalt
Trades: 0
I didn't even know there was a webhostingtalk
MoForce is offline
Reply With Quote
View Public Profile
 
Old 03-29-2009, 03:04 PM Re: Webhostingtalk hacked
dyer's Avatar
Ultra Talker

Posts: 259
Name: Dyer
Trades: 0
They lost several databses like user informations. they also mentioned the users who signup recently should register again, if they not able to login with thier Ids.

That was a planned attack.
__________________
Reliable Live Support | Email Support
Cheap Web Hosting | Selling PR 3 Links
dyer is offline
Reply With Quote
View Public Profile Visit dyer's homepage!
 
Old 03-29-2009, 08:21 PM Re: Webhostingtalk hacked
Skilled Talker

Posts: 89
Name: Alvin
Trades: 0
I was a member there with about 100+ post and now I can't even log in because I only signed up after their last workable backup.

I wonder what's the intention of the hackers who hacked into WHT... ?
__________________
Over 1700 Web Host and counting. Reliable Web Host Reviews - CheckWebHosting
tim84 is offline
Reply With Quote
View Public Profile
 
Old 03-30-2009, 04:46 AM Re: Webhostingtalk hacked
~ServerPoint~'s Avatar
never mind

Posts: 1,100
Name: Travis
Trades: 0
They have big team of the specialists and I believe they will get that sorted soon
__________________
ServerPoint.com - a true hosting company offering online presence solutions since 1998
Web Hosting, colocation, dedicated servers, Virtual Private Server (VPS) hosting
Wholly owned multi homed network, servers and facilities
~ServerPoint~ is offline
Reply With Quote
View Public Profile
 
Old 03-30-2009, 06:18 AM Re: Webhostingtalk hacked
The-Pixel's Avatar
I <3 Pixel's

Posts: 879
Name: Lindi Wheaton
Location: In Photoshop
Trades: 0
Quote:
Originally Posted by andrei155 View Post
Considering that website is mainly the river of all web hosting knowledge... that hacker must be **** good.
I'll 2nd that. From what I remember this is the 2nd time they have been hacked in the past 4 or 5 months. It happened not to long ago and you had to login and change your passwords.
__________________
Lindi Wheaton - Twitter: @lindiwheaton
TheHosted LLC :: Hey, guess what? We do NOT oversell!
The-Pixel :: Customized just for YOU, my personal guarantee!
The-Pixel is offline
Reply With Quote
View Public Profile Visit The-Pixel's homepage!
 
Old 03-30-2009, 04:12 PM Re: Webhostingtalk hacked
Novice Talker

Posts: 6
Trades: 0
They have been having some issues with just basic protocal. Yes I would agree it was a planned attack, most certainly, fortunately, I don't exchange any sensitive information inside of PM's. and don't worry about my "post count."
__________________
Dedicatednow.com
973.572.1069/sales@dedicatednow.com
Special Pricing on Fully Managed Servers
FortressDewey is offline
Reply With Quote
View Public Profile
 
Old 03-30-2009, 11:07 PM Re: Webhostingtalk hacked
LaneHost's Avatar
Average Talker

Posts: 23
Location: Houston, TX
Trades: 0
They are still trying to restore their databases, hopefully they will have it all sorted.

Yes, that was a very deliberate hack.
__________________
LaneHost Solutions, Inc. | Professional Web Hosting Solutions
Premium Shared Hosting, Reseller Hosting & Dedicated Servers At Great Prices!
Complete Solution To Affordable Reseller Web Hosting
LaneHost is offline
Reply With Quote
View Public Profile Visit LaneHost's homepage!
 
Old 03-31-2009, 05:50 AM Re: Webhostingtalk hacked
SiberForum's Avatar
Webmaster Talker

Posts: 621
Trades: 0
As far as I understand they have lost only part of the DB. As I had abot 800 posts there and now that is less 250. I suppose that people will forgive them even if they lost that part.
__________________
Sibername.com
Canadian Domain Name Registration and Web Site Hosting Services
http://www.sibername.com
SiberForum is online now
Reply With Quote
View Public Profile
 
Old 03-31-2009, 09:57 AM Re: Webhostingtalk hacked
Skilled Talker

Posts: 86
Name: Matt
Trades: 0
Quote:
Originally Posted by SiberForum View Post
As far as I understand they have lost only part of the DB. As I had abot 800 posts there and now that is less 250. I suppose that people will forgive them even if they lost that part.
The back up now running is from October I think. All posts after October has lost and the users signed up after October have lost their user IDs. It is a sad experience but they are trying hard to retrieve it, hopefully we can expect every thing will be fine soon.
__________________
iHubNet Ltd - Premium Hosting Solutions 4 ALL
Solid Support Solid Equipment Solid Network
Shared Hosting / Reseller Hosting /Managed Server
iHubNet-Matt is offline
Reply With Quote
View Public Profile
 
Old 03-31-2009, 04:14 PM Re: Webhostingtalk hacked
gastong's Avatar
Super Talker

Posts: 123
Location: Argentina
Trades: 0
whoever did this must be very experienced
__________________
Gastón Greco - Gestão Escolar
gastong is offline
Reply With Quote
View Public Profile Visit gastong's homepage!
 
Old 03-31-2009, 05:24 PM Re: Webhostingtalk hacked
Skilled Talker

Posts: 59
Location: Random places
Trades: 0
Yikes - taking out the backups too. That was just cruel of the hacker folks Hope they track him down and get him locked up.
__________________
Random Generators - Ugly website, great ideas
Try: Linkbait Maker . Business Ideas . Game Generator
Generator is offline
Reply With Quote
View Public Profile Visit Generator's homepage!
 
Old 04-02-2009, 03:27 AM Re: Webhostingtalk hacked
~ServerPoint~'s Avatar
never mind

Posts: 1,100
Name: Travis
Trades: 0
Well. Do you really sure they be able to catch the hacker?
__________________
ServerPoint.com - a true hosting company offering online presence solutions since 1998
Web Hosting, colocation, dedicated servers, Virtual Private Server (VPS) hosting
Wholly owned multi homed network, servers and facilities
~ServerPoint~ is offline
Reply With Quote
View Public Profile
 
Old 04-02-2009, 03:55 PM Re: Webhostingtalk hacked
Skilled Talker

Posts: 59
Name: Andy Dixon
Trades: 0
This is bad news, thanks for the heads up I will change my password
__________________
Magmahost.com - Hosting Services. Since 2007
Shared $1.00 | Reseller $6.95 Click here to visit Magmahost.com
MH-Andy is offline
Reply With Quote
View Public Profile
 
Old 04-08-2009, 05:01 PM Re: Webhostingtalk hacked
LaneHost's Avatar
Average Talker

Posts: 23
Location: Houston, TX
Trades: 0
And this story continues....Webhostingtalk was down again yesterday...here is what iNET wrote:

Quote:
This morning, the hacker who attacked WHT initiated further communication. He provided evidence that credit card information on one of our database servers was, in fact, compromised on March 21st. What data was compromised? At this point, we know that the hacker compromised and has publicly posted credit card information from our self-service billing system currently used for sticky posts (located at http://myinet.inetinteractive.com). This system was also used for display (banner) advertising in prior to December 2007. What about premium and corporate members? Or display advertisers? If you've purchased a premium or corporate membership or you are a display (banner ad) advertiser from December 2007 or later, your data is safe. These products run on a newer billing platform that does not store credit card information. What is WHT and iNET Interactive doing about it? If we have evidence or suspicion that your credit card information was leaked, you will be receiving further communication from WHT and iNET Interactive. Why is WHT down and when do we expect it to be back up? We're currently doing a full security sweep of our cluster to ensure the servers are secure. The site will be back up once this security review is complete.
Here is from the README.txt file, some parts are censored...

Quote:
Ok so backup only was not enough for you ******, HERE, have some credit cards too You know, it's ******* hilarious you ****** backed up some bull**** backup and users still got the same passwords.
Well some did change, to be precise, 1348 users out of 200,000. AWE-*******-SOME, no? You ******* couldn't even bother changing your ******* HOST.
Why the **** are you looking into your ****** server? GO LOOK AT YOUR HOSTER, RACK-****-EDGE YES GO.
NEWAYS, what I noticed in the helpdesk **** **** you got, you say you can't give out information about ur server?
IT'S **** PEOPLE. 2GB ram for a site like this? gimmeh a break ****. Also all those ************* who were bragging the haxored thread at forums,
you ****** think I give a **** you say 'bout me? I can rape your ******* life easy as 1,2,3 and this just proves the fact that I can.
Anyway, hopefuly this is the last time I have to "try" get into ur ****** servers(COUGH RACKEDGE COUGH) to back the **** up, I wonder if u **** gonna get sued over this ****. ;-) lolz

OOH before I finnish, u **** reported the box I posted backup from the 1st time, what would you do if i posted from ur own box now ******? I got more places to post from than u got hair on ur head or mby ur bald lolz

k peace out **** and dont mess with me ;-)
This is the format of the table that was dumped found on another forum,...

Quote:
# Dumped by NEGRO SHELL.
# Home page: http://negro.com
#
# Host settings:
# MySQL version: (4.0.27-standard-log) running on 69.20.126.7 (www.webhostingtalk.com)
# Date: ##/##/####
# DB: "ioms"
#---------------------------------------------------------
DROP TABLE IF EXISTS `creditcard`;
CREATE TABLE `creditcard` (
`card_id` int(11) NOT NULL auto_increment,
`account_id` int(11) NOT NULL default '0',
`address_id` int(11) NOT NULL default '0',
`cardnumber` bigint(20) NOT NULL default '0',
`expdate` varchar(10) NOT NULL default '',
`cardcode` varchar(5) NOT NULL default '0',
`issueingbank` varchar(50) NOT NULL default '',
`nameoncard` varchar(50) NOT NULL default '',
`status` enum('valid','removed','modified','fraud','chargeback','other') NOT NULL default 'valid',
`friendlyname` varchar(100) NOT NULL default '',
`admin_note_id` int(11) NOT NULL default '0',
`customer_note_id` int(11) NOT NULL default '0',
`creation_timestamp` bigint(20) NOT NULL default '0',
`creation_session_id` int(11) NOT NULL default '0',
`modify_timestamp` bigint(20) NOT NULL default '0',
`modify_session_id` int(11) NOT NULL default '0',
`removal_timestamp` bigint(20) NOT NULL default '0',
`removal_session_id` int(11) NOT NULL default '0',
PRIMARY KEY (`card_id`),
KEY `account_id` (`account_id`,`address_id`,`cardnumber`)
) TYPE=MyISAM PACK_KEYS=0;
__________________
LaneHost Solutions, Inc. | Professional Web Hosting Solutions
Premium Shared Hosting, Reseller Hosting & Dedicated Servers At Great Prices!
Complete Solution To Affordable Reseller Web Hosting
LaneHost is offline
Reply With Quote
View Public Profile Visit LaneHost's homepage!
 
Reply     « Reply to Webhostingtalk hacked

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off





   
RSS Feed  Feeds: RSS   JS   XML
RSS Feed  Feeds for this forum: RSS   JS   XML

 



Page generated in 0.21710 seconds with 13 queries