Likes Likes:  0
Resultaten 16 tot 30 van de 69
Pagina 2 van de 5 Eerste 1 2 3 4 ... LaatsteLaatste
Geen
  1. #16
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    de programmeur
    84 Berichten
    Ingeschreven
    13/03/09

    Locatie
    Delft

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    0 Berichten zijn liked


    Registrar SIDN: nee
    KvK nummer: 27338766
    Ondernemingsnummer: nvt

    Citaat Oorspronkelijk geplaatst door rensariens Bekijk Berichten
    Jawel, een dic. pw is te brute forcen en maakt je dus minder veilig.
    Dat is zeker zo, maar het maakt dan niet uit of de password in hash vorm zijn uitgelekt of niet. Wat jij zegt geldt altijd, en niet alleen bij WHT.com omdat die passwords nu uitgelekt zijn.

  2. #17
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    556 Berichten
    Ingeschreven
    09/09/08

    Locatie
    Amsterdam

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    3 Berichten zijn liked


    Registrar SIDN: nee
    KvK nummer: nvt
    Ondernemingsnummer: nvt

    Citaat Oorspronkelijk geplaatst door X-Hosted Bekijk Berichten
    En hoe heeft wht.nl zijn beveiliging/backups op gezet ?
    Vraag het aan Brenno die heeft een super exploit ontdekt, dat je gewoon een publieke DC kunt binnen komen en harddisken kunt jatten. (al dan niet door brute-force te gebruiken, slot-te-picken -5 minuten- of gewoon deur te openen).

  3. #18
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    72 Berichten
    Ingeschreven
    03/03/09

    Locatie
    Amsterdam

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    0 Berichten zijn liked


    Registrar SIDN: JA
    KvK nummer: nvt
    Ondernemingsnummer: nvt

    Nu de vraag heeft webhostingtalk.nl voldoende beveiligings maatregelen genomen.
    Ik hoop het wel.

  4. #19
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    699 Berichten
    Ingeschreven
    21/05/03

    Locatie
    Rotterdam

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    0 Berichten zijn liked


    Registrar SIDN: nee
    KvK nummer: nvt
    Ondernemingsnummer: nvt

    Citaat Oorspronkelijk geplaatst door jandirkse Bekijk Berichten
    Nu de vraag heeft webhostingtalk.nl voldoende beveiligings maatregelen genomen.
    Ik hoop het wel.
    "Trapt open deur": Beveiliging is zo zwak als de zwakste schakel. Of het Benno is die met de HDD's er vandoor gaat (Luks anyone?), of een gebruiker die het wachtwoord "g3heim!" heeft. Ik zou er niet vrolijk van worden als mijn gegevens op straat liggen, aan de andere kant is er genoeg over mij te vinden (whois diedx.nl?). Het moet dus wel allemaal redelijk blijven.

  5. #20
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    administrator
    21.459 Berichten
    Ingeschreven
    17/12/01

    Locatie
    Amsterdam

    Post Thanks / Like
    Mentioned
    71 Post(s)
    Tagged
    0 Thread(s)
    590 Berichten zijn liked


    Naam: Domenico Consoli
    Bedrijf: Webhostingtalk.nl
    Functie: Oprichter
    URL: webhostingtalk.nl
    Registrar SIDN: Ja
    KvK nummer: 51327317
    TrustCloud: domenico
    View domenicoconsoli's profile on LinkedIn

    Hier een status update van Dennis zelf. Pretty scary...

    Hello fellow WHTers!
    Dennis Johnson (aka SoftWareRevue)

    It's been pretty hectic around here, but I wanted to make sure as many members as possible know what's going on. At approximately 8:30 pm EST on Saturday, March 21 WebHostingTalk.com was maliciously, deliberately and systematically targeted by an (as-of-yet) unknown individual or group. They first attacked and wiped clean our off-site backups. Our IT team was quick to respond when we noticed something was going on and locked down our network. But the attacker was able to delete 3 crucial files from our db servers.

    We've tried to answer any questions or concerns in the following thread posted at http://www.webhostingtalk.com/showthread.php?t=729727

    WHT Data - Q&A Information
    ========================

    What do we know about the damage done?

    This attack was very deliberate, sophisticated and calculated. The attacker was able to circumvent our security measures and access via an arcane backdoor protected by additional firewall. We are still investigating the situation, but we know the attacker infiltrated and deleted the backups first and then deleted three databases: user/post/thread. We have no record or evidence that private message data was accessed. Absolutely no credit card or PayPal data was exposed.

    Do we know the motivation behind the attack?

    We don’t know enough at this time, so any insight would be purely speculative in nature. WHT is a platform where positive and negative information is shared and exposed about business and individuals. Under TOS policy, we cannot edit or remove user-generated content at the request of an unsatisfied third party. Therefore, WHT tends to become the target for disgruntled individuals and businesses.

    Have we been able to restore more recent back-ups?

    The offsite backup, the onsite backup and the operational data were destroyed by the attacker, so we’ve resorted to a physical back-up of last resort. Unfortunately, we are experiencing difficulty restoring from our most recent physical backup. At this point, October is the most recent backup that we were able to restore. We continue to work to extract data from a more recent set of DVDs. What is WHT focused on doing now?

    The first priority, which kicked in immediately upon discovering the hack while in process, was locking down the infrastructure to avoid further damage and restoring the site. We also had to block the potential for a repeat attack. Now we are working on investigating how much prior data is restorable, reinstating premium memberships, contacting business partners, and communicating with the community members. We are also doing everything possible to identify the attacker and bring them to justice. Disappointments happen – we are working hard to restore trust among community members and to bring things back to normal.

    Is WHT doing anything different due to this attack?

    WHT has been targeted before and our infrastructure has withstood previous attacks. However, following this well-planned and targeted attack, we will be altering aspects of our architecture to ensure that this type of attack does not happen again. Needless to say, we have learned from this situation and will address any discrepancies accordingly.

    We had three, protected data back-up units with one offsite behind a firewall and a fourth physical data back-up layer. We evaluated our disaster recovery plan as recent as late-2008, and carefully reviewed how to recover from a disaster situation. The attacker appeared to have deliberately targeted our data back-up systems, a scenario that our disaster recovery plan did not fully anticipate. We have implemented changes to our data backup and disaster recovery plans to address this weakness. And we advise others to consider a scenario of deliberate, malicious data destruction in their backup and recovery plans.

    What should members do now?

    The password encryption technology we use is strong for securing non-financial data. However, we suggest that members change their passwords frequently and do not use the same user name and password for the forum as they may use for more sensitive services like online banking. If a member feels more comfortable changing their password, then we recommend that they do what makes them feel more secure.

    A concern is that members may receive more spam because the attacker posted stolen email addresses on file sharing sites. I haven’t personally seen an increase in the amount of spam I usually receive to my email address, but it is a risk that we cannot easily alleviate. As we become aware of specific file sharing sites with these email addresses, we are requesting that the emails be removed promptly. So far, most have been quick to comply.

    What if I can’t use my WHT account?

    We are temporarily using a version of the database from October 2008. This means that if you joined WHT after October 2008, you’ll need to register again to post now. We may still be able to recover your account, but we don’t know yet. Please register with the same username you used before.

    If you joined WHT before October 2008 and get a password error, the system is probably asking for the password you were using in October 2008. If you don’t remember your previous password and have access to the email address for your WHT account in October 2008, please use the password recovery tool.

    For help accessing your account, please open a helpdesk ticket.

    If you’ve subscribed to a Premium or Corporate membership prior to October 2008, someone from iNET has contacted you by now. If you’ve subscribed (or re-subscribed) since October 2008 and haven’t heard from iNET, please contact us on the helpdesk.

    Moving forward ...

    We take the protection of user-contributed data very seriously, and we strongly regret what happened. iNET has a sophisticated infrastructure with advanced security. Yet even institutions that spend millions of dollars a year on Internet security are exploited. Anyone recall NASA being hacked some years back?

    It’s not what you’ve done, it’s what you do. And from this day forward, we continue.

    We’ve been overwhelmed by all the offers of help and support we’ve received from our members. What can I say about that beyond my heartfelt thanks? I love this community!
    ========================

    Thanks for listening. And I'll see you on the forums!

    Dennis Johnson (aka SoftWareRevue)
    iNET Community Coordinator

  6. #21
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    699 Berichten
    Ingeschreven
    21/05/03

    Locatie
    Rotterdam

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    0 Berichten zijn liked


    Registrar SIDN: nee
    KvK nummer: nvt
    Ondernemingsnummer: nvt

    Tsja,

    The offsite backup, the onsite backup and the operational data were destroyed by the attacker, so we’ve resorted to a physical back-up of last resort.
    Wat heb je aan een offsite backup op zo'n manier? Die wil je, zeker in de webhosting-branche, niet te benaderen hebben via de server.

  7. #22
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    580 Berichten
    Ingeschreven
    26/01/09

    Post Thanks / Like
    Mentioned
    4 Post(s)
    Tagged
    0 Thread(s)
    58 Berichten zijn liked


    Naam: Wim
    Registrar SIDN: nee

    This attack was very deliberate, sophisticated and calculated. The attacker was able to circumvent our security measures and access via an arcane backdoor protected by additional firewall.
    Vind ik een beetje raar...

  8. #23
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    880 Berichten
    Ingeschreven
    13/12/03

    Locatie
    zwolle

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    0 Berichten zijn liked


    Registrar SIDN: nee
    KvK nummer: nvt
    Ondernemingsnummer: nvt

    Citaat Oorspronkelijk geplaatst door cyrano Bekijk Berichten
    Vind ik een beetje raar...
    Wat is er raar aan dan?.

  9. #24
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    580 Berichten
    Ingeschreven
    26/01/09

    Post Thanks / Like
    Mentioned
    4 Post(s)
    Tagged
    0 Thread(s)
    58 Berichten zijn liked


    Naam: Wim
    Registrar SIDN: nee

    Een gesofistikeerde aanval, maar ze kwamen binnen op de ouderwetse manier, door de achterdeur...

    Ik bedoel maar, als je vergeten bent de deur op slot te doen, dan wordt het simpel. En de offsite backup was blijkbaar ook al niet echt offsite. Het geheel leest meer als een vergetelheid van de beheerders dan als een straffe inbreker.

    Neemt niet weg dat de inbreker duidelijk slechte bedoelingen had. Hij heeft veel schade aangericht en alles meteen op 't net gegooid. Maar het had nog erger gekund. Als 't een professioneel crimineel geweest was, had hij allicht geen schade veroorzaakt en geprobeerd de data ergens proberen te verkopen.

    Bij verreweg de meeste inbraken die ik zie, is er meestal ergens wel een dir met verkeerde rechten. Dat komt nog altijd veel meer voor dan "gesofistikeerde" inbraken.

    The password encryption technology we use is strong for securing non-financial data
    Is ook zo iets. Ik veronderstel dat dat MD5 oid is. OK, maar tegelijk zijn ze zeker dat er geen CC info gelekt is. Persoonlijk zie ik geen geruststelling in zo'n berichten. Dit klinkt eerder alsof het door marketing geschreven werd dan door een competente, schuldbewuste admin...

    Je mag me altijd paranoïde noemen, natuurlijk ;-)

  10. #25
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    Procy
    696 Berichten
    Ingeschreven
    23/09/08

    Locatie
    Zoetermeer

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    3 Berichten zijn liked


    Naam: Marco Mahieu
    KvK nummer: 27273470

    Inmiddels staat de laatste backup toch alweer een tijdje online?

  11. #26
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    Maarten
    508 Berichten
    Ingeschreven
    13/03/03

    Locatie
    Alkmaar

    Post Thanks / Like
    Blog Entries
    1
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    0 Berichten zijn liked


    Naam: Maarten
    Registrar SIDN: ja
    KvK nummer: 37101223
    Ondernemingsnummer: nvt

    Citaat Oorspronkelijk geplaatst door cyrano Bekijk Berichten
    OK, maar tegelijk zijn ze zeker dat er geen CC info gelekt is. Persoonlijk zie ik geen geruststelling in zo'n berichten. Dit klinkt eerder alsof het door marketing geschreven werd dan door een competente, schuldbewuste admin...
    Ik denk dat ze bedoelen dat de creditcard gegevens die zijn gebruikt voor het betalen van hun premium dienst niet in handen zijn gevallen van de hackers. Indien deze betalingen bijvoorbeeld uitgevoerd worden door een payment provider, dan kun je vrij zeker zijn dat ze niet in de database zitten. Al ben ik met je eens dat het netter is om als het om zoiets gaat om het ook even uit te leggen.

  12. #27
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    Bram V.
    487 Berichten
    Ingeschreven
    04/07/08

    Locatie
    Sint-Niklaas

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    0 Berichten zijn liked


    Registrar SIDN: nee
    KvK nummer: nvt
    Ondernemingsnummer: 0899.003.423

    Een mailtje van lxlabs:


    Dear customers,

    Unfortunately the admin password of our ticket system was the same as the one we used for wht account, and it was hacked. It is possible that the hacker was able to go through your tickets.

    Please go through your tickets, and if you have posted your login/password info in a ticket, please make sure you change the password.

    thanks.
    Dus blijkbaar is de encryptie van de paswoorden toch niet zo geweldig?

  13. #28
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    4.048 Berichten
    Ingeschreven
    24/01/03

    Locatie
    London, United Kingdom, United Kingdom

    Post Thanks / Like
    Mentioned
    7 Post(s)
    Tagged
    0 Thread(s)
    9 Berichten zijn liked


    Naam: Dennis Arslan
    Bedrijf: Rackspace
    Functie: Linux Server Specialist
    URL: www.dennisarslan.com
    Registrar SIDN: ja
    KvK nummer: 04070212
    Ondernemingsnummer: nvt
    TrustCloud: DennisArslan
    View dennisarslan's profile on LinkedIn

    Jawel, maar sommige mensen hebben hun eigen wachtwoord gepost in hun ticket van de webhostingtalk.com helpdesk. De wachtwoorden zijn wel geëncrypteerd, maar de inhoud van de helpdesk tickets natuurlijk niet.

  14. #29
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    Bram V.
    487 Berichten
    Ingeschreven
    04/07/08

    Locatie
    Sint-Niklaas

    Post Thanks / Like
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    0 Berichten zijn liked


    Registrar SIDN: nee
    KvK nummer: nvt
    Ondernemingsnummer: 0899.003.423

    Denk dat u het bericht niet goed begrijpt. Het gaat over het ticketsysteem van lxlabs dat hetzelfde paswoord was dan hun account op WHT.com .

  15. #30
    Webhostingtalk.com hacked - alle account data en PMs te downloaden
    geregistreerd gebruiker
    4.048 Berichten
    Ingeschreven
    24/01/03

    Locatie
    London, United Kingdom, United Kingdom

    Post Thanks / Like
    Mentioned
    7 Post(s)
    Tagged
    0 Thread(s)
    9 Berichten zijn liked


    Naam: Dennis Arslan
    Bedrijf: Rackspace
    Functie: Linux Server Specialist
    URL: www.dennisarslan.com
    Registrar SIDN: ja
    KvK nummer: 04070212
    Ondernemingsnummer: nvt
    TrustCloud: DennisArslan
    View dennisarslan's profile on LinkedIn

    Het feit dat webhostingtalk.com gehacked is en dat de hacker toegang heeft verkregen tot de LXLabs helpdesk heeft weinig met het statement van webhostingtalk.com dat alle wachtwoorden in de vBulletin database goed geëncrypteerd waren, dus ik snap je verwijzing naar encryptie niet echt.

Pagina 2 van de 5 Eerste 1 2 3 4 ... LaatsteLaatste

Webhostingtalk.nl

Contact

  • Rokin 113-115
  • 1012 KP, Amsterdam
  • Nederland
  • Contact
© Copyright 2001-2026 Webhostingtalk.nl.
Web Statistics