The CS Forums were hacked today by "Infection." The forum people are working their hardest to get it back up and running as fast as possible, but here's a pic for your silly hobos:
CS Forums Hacked
Collapse
This topic is closed.
X
X
-
Edited by [user="1457"] @ [time="1016922749"]
Russian fool ran an exploit released/found by an old IB dev group. This infectious script kiddie got his hands on it and had some fun on ikonboards of his chosing. His home page is infection.boom.ru/
He also has a site at geocities.com/nurik_m with his personal information, such as name, location, etc.
Hope you speak russian though.
Update: The exploit was made by him, read below for the juicy details.
Ahhh, drama at the forum developer level. Good times.Comment
-
Some shots stolen from barney.
csnation.counter-strike.net/barney/personal/
forum_hacked.jpg - here you can see this smart bloke linking from his personal home page. Ah, but those silly image filters geocities likes to put on all there hosted sites.
csnation.counter-strike.net/barney/personal/
forum_hacked1.jpg - for all you quake2 fans.
And my pal pinto got an email from the IB team or something of that sort.Hi this is REBELinBLUE (Ex Ikonboard Support Member, Current IBF Developer)
As you may know about 4 weeks ago the lead developer and most of the team walked out.
What has happened to you here today is related to this, the same thing happened over at the Ikonboard support forums today by the same member.
Infection was until 2 weeks ago a member of the iB3 Development team, he created the SQL Client in the Admin Centre, and the Calendar system. When we left we asked him if he would like to join the IBF Development team and the responce we got was "You can go f**k yourself". Anyway 2 weeks ago Ikonboard decided they no longer needed him and he came over to IBF b*tching that he should be on the team because he had helped code iB3 and he was told he didn't have a change now after what he had said.
I'm not sure how he did it here but this is what he did over at Ikonboard (I'm assuming he did the same thing) -
Firstly he made a post with what looked like a broken image, the image was actually javascript as he was exploiting a security hole which was present in all 4 of the major forums until recently.
The javascript made use of a security hole in Internet Explorer which allows an attacker to copy the users cookies. He simply copied the cookie to his server, then when he saw a cookie where the member name was that of an admin (don't worry the password is 1 way encrypted so he wouldn't of been able to get it) he overwrote his cookie with it, instantly giving him access to the admin account. He then simply accessed the admin centre and edited the board template, replacing the <% BOARD %> tag with the image we all saw.
Over at Ikonboard he actually gave all members admin access hoping that the waring and childish members from IBF would access it and cause damage, it didn't work and luckly they caught it
Hope that clears everything up, I would of posted this myself but I can't register for some reasonComment
-
pinchnet.nexusgaming.net/pinchy/forum_hacked
.jpg
a take off af narbys after he had switched picture routeComment
-

Comment