| « Security issue | b2evolution 0.9.0.11 "Paris" released » |
It is no joy to announce that our beloved forums have been hacked during the week-end. ![]()
As much as I can understand why hackers would break into a system and use it, I can hardly understand why they would destroy the existing data as they did here... what good does this do to them? ![]()
Anyway, we're currently trying to locate the most recent DB backup... in the meantime, you'll just get a fat error message. Sorry for the inconvenience.
PS: we now upgraded phpBB... of course... I wish I had done before... of course... I should have done it before... of course... I knew I had to do it before... of course I have been warned several times... you can blame me for all that.
All I can say is that once again, b2evo is not a commercial project and no one gets paid for working on it nor maintaining the site. We do that on our free time. We have daytime jobs also. And it happens that the end of the year is a very busy period for businesses... which leaves us less time for b2evo. I've been working 12 hours a day lately... sorry, I can't catch up on my b2evo mail backlog in such a period.
Anyway, I've learned a lesson here...
PS: for those of you interested in more about the phpBB 2.0.10 series of attack, you might want to check this out: http://voidmain.is-a-geek.net/forums/viewtopic.php?p=8501 (Thx Travis).
[this piece of software] is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.
The undeniable fact is that someone that cant even bothered to patch FOUR or FIVE lines of code in ONE file, cant possibly expect all of the b2evo users to to have faith in things that take longer than say, 5 minutes.
XML Parsing Error: undefined entity
Location: http://www.village-idiot.org/feed/rss/
Line Number 63, Column 1:
^
Comment from: Topanga [Member] · http://www.tenderfeelings.be
It would be nice to start over again, but have the backup as a side-forum (completely locked).
That way, a few of us, can make time to change treads into actual doc.
I now that I would love to have the answers EdB gave.
Restoring the user-accounts : a lot of 'dead'-users would come up again, so again : better to make a fresh start.
My 2 cents
Comments are closed for this post.