Go to Post One of the big things in FIRST is going global. - JosephC [more]
Home
Go Back   Chief Delphi > Technical > IT / Communications > Website Design/Showcase
CD-Media   CD-Spy  
portal register members calendar search Today's Posts Mark Forums Read FAQ rules

 
Closed Thread
Thread Tools Rate Thread Display Modes
  #1   Spotlight this post!  
Unread 15-07-2004, 04:18
Denman's Avatar
Denman Denman is offline
Tie Wrap-Not Cable Tie or Zip tie
AKA: Stephen Denman
FRC #0759 (Systemetric)
Team Role: Mentor
 
Join Date: Jan 2004
Rookie Year: 2003
Location: Cambridge UK
Posts: 817
Denman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud of
Send a message via ICQ to Denman Send a message via AIM to Denman Send a message via MSN to Denman Send a message via Yahoo to Denman
Angry Hacked!

first let me vent my anger
grrrrrrrrrrrrraaaaaaaaaaaaaaaaahhhh

ok
our website (www.team759.org) has been hacked and it is really annoying.
Anyone know of anything that can be done? our webmaster says they have deleted everything etc and it has angered me greatly.
__________________
I am an ex-member of team 759.
759: regional winners with 522 and 233 NYC (2004)


FIRSTWiki.org - Contribute, learn, inspire.

"Teach the way of the GP and the way of the GP shall teach you" - Me
  #2   Spotlight this post!  
Unread 15-07-2004, 07:00
Ryan M. Ryan M. is offline
Programming User
FRC #1317 (Digital Fusion)
Team Role: Programmer
 
Join Date: Jan 2004
Rookie Year: 2004
Location: Ohio
Posts: 1,508
Ryan M. has much to be proud ofRyan M. has much to be proud ofRyan M. has much to be proud ofRyan M. has much to be proud ofRyan M. has much to be proud ofRyan M. has much to be proud ofRyan M. has much to be proud ofRyan M. has much to be proud ofRyan M. has much to be proud of
Re: Hacked!

No backups at all...?!? *gasp*

And you aren't on archive.org either.

Google as at least one page: http://64.233.167.104/search?q=cache...59.org/+&hl=en

If you put in the addresses for all the pages on the site, you might be able to get them all from it's cache. Maybe you won't have to redo the whole site...

Hope you get it back.
__________________

  #3   Spotlight this post!  
Unread 15-07-2004, 07:01
Bharat Nain's Avatar
Bharat Nain Bharat Nain is offline
Registered User
no team
Team Role: Alumni
 
Join Date: Jan 2004
Rookie Year: 2003
Location: New York
Posts: 2,000
Bharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond reputeBharat Nain has a reputation beyond repute
Send a message via AIM to Bharat Nain Send a message via MSN to Bharat Nain
Re: Hacked!

Quote:
Originally Posted by Denman
first let me vent my anger
grrrrrrrrrrrrraaaaaaaaaaaaaaaaahhhh

ok
our website (www.team759.org) has been hacked and it is really annoying.
Anyone know of anything that can be done? our webmaster says they have deleted everything etc and it has angered me greatly.
IM me on my SN: TeknoBramha , I might be able to help you privately, no promises though
__________________
-= Bharat Nain =-

Whatever you do, you need courage. Whatever course you decide upon, there is always someone to tell you that you are wrong. There are always difficulties arising that tempt you to believe your critics are right. To map out a course of action and follow it to an end requires some of the same courage that a soldier needs. Peace has its victories, but it takes brave men and women to win them. - Ralph Waldo Emerson
  #4   Spotlight this post!  
Unread 15-07-2004, 09:05
plutonium83
 
Posts: n/a
Re: Hacked!

Now is a good time to design a new site. Its not all that hard. You'll need it for next year anyways.

Definately work on security. If you where running ISS, FTP or a misconfigured SQL, shame on you.

Last edited by plutonium83 : 15-07-2004 at 22:39.
  #5   Spotlight this post!  
Unread 15-07-2004, 17:50
Denman's Avatar
Denman Denman is offline
Tie Wrap-Not Cable Tie or Zip tie
AKA: Stephen Denman
FRC #0759 (Systemetric)
Team Role: Mentor
 
Join Date: Jan 2004
Rookie Year: 2003
Location: Cambridge UK
Posts: 817
Denman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud of
Send a message via ICQ to Denman Send a message via AIM to Denman Send a message via MSN to Denman Send a message via Yahoo to Denman
Re: Hacked!

heh, its been pretty much sorted, they only replaced the homepage lol..........
we are redisigning for nxt year anyway .... its about 30% done or something apparently....
__________________
I am an ex-member of team 759.
759: regional winners with 522 and 233 NYC (2004)


FIRSTWiki.org - Contribute, learn, inspire.

"Teach the way of the GP and the way of the GP shall teach you" - Me
  #6   Spotlight this post!  
Unread 15-07-2004, 19:49
Joe Ross's Avatar Unsung FIRST Hero
Joe Ross Joe Ross is offline
Registered User
FRC #0330 (Beachbots)
Team Role: Engineer
 
Join Date: Jun 2001
Rookie Year: 1997
Location: Los Angeles, CA
Posts: 8,573
Joe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond reputeJoe Ross has a reputation beyond repute
Re: Hacked!

This is when you get to see how good your webhost and your webmaster
really are. Both *should* have backups. If you have a very cheap
webhost, the responisibility is almost completely on your webmaster.

When my website was hacked, my webhost had a dummy page up within an
hour (so that they whole world doesn't see the hacked message), and it
was restored from the nightly backup after about 6 hours.

Another suggestion, find a webhost that doesn't use IIS.
  #7   Spotlight this post!  
Unread 15-07-2004, 22:25
Mike AA's Avatar
Mike AA Mike AA is offline
Programmer and Mentor
AKA: Mike Aalderink
FRC #3458 (Code Blue)
Team Role: Programmer
 
Join Date: Jan 2003
Rookie Year: 1999
Location: Holland, Mi
Posts: 698
Mike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to behold
Send a message via MSN to Mike AA
Re: Hacked!

Quote:
Originally Posted by plutonium83
Now is a good time to design a new site. Its not all that hard. You'll need it for next year anyways.

Definately work on security. If you where running ISS, FTP or a misconfigured SSL, shame on you.
What would be wrong with using FTP? I use it to let users on another harddrive of mine which I have other files to download. I wasn't able to get APACHE to access the other harddrives. Would you reccamend something better than FTP?
  #8   Spotlight this post!  
Unread 15-07-2004, 22:27
Mike AA's Avatar
Mike AA Mike AA is offline
Programmer and Mentor
AKA: Mike Aalderink
FRC #3458 (Code Blue)
Team Role: Programmer
 
Join Date: Jan 2003
Rookie Year: 1999
Location: Holland, Mi
Posts: 698
Mike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to behold
Send a message via MSN to Mike AA
Re: Hacked!

Quote:
Originally Posted by Denman
heh, its been pretty much sorted, they only replaced the homepage lol..........
we are redisigning for nxt year anyway .... its about 30% done or something apparently....

Later on, if you would like a place to hold a backup of yoru page PM me or something, I've got plenty of extra space where I could allow you to upload yoru page and most of the stuff, nothing too major, I could easily allow a gig or so.

-Mike
  #9   Spotlight this post!  
Unread 15-07-2004, 22:33
JoeXIII'007's Avatar
JoeXIII'007 JoeXIII'007 is offline
Pragmatic Strategy, I try...
AKA: Joeseph Smith
FRC #0066
Team Role: Alumni
 
Join Date: Feb 2004
Rookie Year: 2001
Location: Ypsilanti, MI (Ann Arbor's shadow)
Posts: 753
JoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond reputeJoeXIII'007 has a reputation beyond repute
Send a message via AIM to JoeXIII'007
Re: Hacked!

My advice:
-Vent the rest of your anger in creative ways first.
-Then rebuild your website
-After your done with that, give some sort of protection. I can't bring anything to mind that would do that, but find some protection.

Sorry about the accident though. I can't wait until these sort of incidents stop.
__________________
Joeseph P. Smith
jpthesmithe.com
University of Michigan - Informatics (B. Sci. 2012)
General Purpose Programmer - Cooperative Institute for Limnology and Ecosystems Research (CILER) at NOAA-GLERL
  #10   Spotlight this post!  
Unread 16-07-2004, 22:36
steven114 steven114 is offline
Programming Wizard and Team Captain
AKA: Steven Schlansker
FRC #0114 (Eaglestrike)
Team Role: Programmer
 
Join Date: Feb 2004
Location: Los Altos, CA
Posts: 335
steven114 is a jewel in the roughsteven114 is a jewel in the roughsteven114 is a jewel in the rough
Send a message via AIM to steven114
Re: Hacked!

Quote:
Originally Posted by Mike AA
What would be wrong with using FTP? I use it to let users on another harddrive of mine which I have other files to download. I wasn't able to get APACHE to access the other harddrives. Would you reccamend something better than FTP?
It sends passwords in cleartext. 'Nuff said

SFTP or SCP...
__________________
Shift to the left, shift to the right!
Pop up, push down, byte, byte, byte!
  #11   Spotlight this post!  
Unread 16-07-2004, 23:07
mtaman02's Avatar
mtaman02 mtaman02 is offline
FIRST's Spare, Queuer & Tech guy =)
AKA: Mike M. / Mouse =)
no team (FRC Volunteer)
Team Role: Alumni
 
Join Date: Jun 2002
Rookie Year: 2001
Location: Staten Island, NYC
Posts: 1,504
mtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant futuremtaman02 has a brilliant future
Send a message via AIM to mtaman02 Send a message via Yahoo to mtaman02
Re: Hacked!

After hearing about 759's mis fortunate accident i'm going on to check my old teams web site that i created but haven't checked for months..... shame on me =(



Hope you get it all back up consider putting the webpage on one computer and backing it up to a cd and store the cd in a safe place if you have 2 computers create and save on one back up on another make sure your webhost has some sort of protection against hackers and make sure you have a firewall with some added computer protection.
__________________
Past FIRST Robotics Events that I proudly volunteered at:
FLL: NY State Competition '03
FRC: NYC Remote Kickoff '04 & NYC Regionals '04-'15 ,'10-'13 & NJ Regionals '06-'10, Finger Lakes Regional '09 & SBPLI Regional '08-'15 and the World Championship in '05 (Galileo Field) '07 (Newton Field) '09 (Practice Fields Attendant / FTA(A)), CeBIT Convention in '04 & NextFEST in '06 both held @ the Javitts Center, Monty Madness '07-'10, Panda-monium '08, B.Eruption '08 & '09, Ramp Riot '08, PARC '09 & '10, BR^2 '09 & Wol. Inv. '09 -'15
2015 FIRST Robotics Off Season Events that I hope to volunteer at:
Where is Wolcott Invitational
2015 FIRST Robotics Events that I will be volunteering at:
SBPLI Reg. & Championships
Volunteer Resume:
Alt & Lead Team Queuer, Field Repair/Reset, Field Setup/Breakdown, Spare Parts Attendant, Field Power Controller/Score Keeper, Co-Emcee & Official Scorer, Control System Advisor, FIRST Tech Advisor Assistant & recently Practice Field Attendant.
  #12   Spotlight this post!  
Unread 16-07-2004, 23:43
Mike AA's Avatar
Mike AA Mike AA is offline
Programmer and Mentor
AKA: Mike Aalderink
FRC #3458 (Code Blue)
Team Role: Programmer
 
Join Date: Jan 2003
Rookie Year: 1999
Location: Holland, Mi
Posts: 698
Mike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to beholdMike AA is a splendid one to behold
Send a message via MSN to Mike AA
Re: Hacked!

Quote:
Originally Posted by steven114
It sends passwords in cleartext. 'Nuff said

SFTP or SCP...

If I dont use passwords (anonymously lgged in) I dont have the password problem. I'm guessing you're referring to the sending of passwords typed as someone is logging in.

What is the actual name os SFTP or SCP and/or where could I get it? freeware? shareware? I'm using Ceasor FTP, however its spelled.
  #13   Spotlight this post!  
Unread 16-07-2004, 23:45
steven114 steven114 is offline
Programming Wizard and Team Captain
AKA: Steven Schlansker
FRC #0114 (Eaglestrike)
Team Role: Programmer
 
Join Date: Feb 2004
Location: Los Altos, CA
Posts: 335
steven114 is a jewel in the roughsteven114 is a jewel in the roughsteven114 is a jewel in the rough
Send a message via AIM to steven114
Re: Hacked!

Anonymous FTP is a problem in and of itself

Both are part of the OpenSSH package...
__________________
Shift to the left, shift to the right!
Pop up, push down, byte, byte, byte!
  #14   Spotlight this post!  
Unread 17-07-2004, 15:23
Phil 33's Avatar
Phil 33 Phil 33 is offline
Registered User
None #0033 (Killer Bees)
Team Role: Alumni
 
Join Date: Jan 2004
Rookie Year: 2002
Location: Troy, MI
Posts: 26
Phil 33 is a glorious beacon of lightPhil 33 is a glorious beacon of lightPhil 33 is a glorious beacon of lightPhil 33 is a glorious beacon of lightPhil 33 is a glorious beacon of light
Send a message via AIM to Phil 33
Re: Hacked!

Yes, FTP does use plain text to send your data, but so do most username and password login forms on the internet, including Yahoo mail and Hotmail. Furthermore, MANY servers out there are not setup to recognize the private/public key encryption method used by SFTP. Yes, there are more secure methods out there, but a lot of times you just have to settle for a reasonable level of security.

Change your password often and don't use the same password in more than one place (although many of us do anyway.) Create regular back ups. Be sure to use a reliable web host with 24/7 monitoring. Security shouldn't be a major issue for a FIRST team site. It's unfortunate your site was hacked, but realize this sort of thing is uncommon. You should only really have to worry about advanced security if your site becomes quite large (receiving thousands of hits per day.)
  #15   Spotlight this post!  
Unread 17-07-2004, 15:36
Denman's Avatar
Denman Denman is offline
Tie Wrap-Not Cable Tie or Zip tie
AKA: Stephen Denman
FRC #0759 (Systemetric)
Team Role: Mentor
 
Join Date: Jan 2004
Rookie Year: 2003
Location: Cambridge UK
Posts: 817
Denman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud ofDenman has much to be proud of
Send a message via ICQ to Denman Send a message via AIM to Denman Send a message via MSN to Denman Send a message via Yahoo to Denman
Re: Hacked!

n00b question : What is ISS?
__________________
I am an ex-member of team 759.
759: regional winners with 522 and 233 NYC (2004)


FIRSTWiki.org - Contribute, learn, inspire.

"Teach the way of the GP and the way of the GP shall teach you" - Me
Closed Thread


Thread Tools
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Talk about the 'hacking' here. Brandon Martus Chit-Chat 12 08-07-2003 15:53


All times are GMT -5. The time now is 20:59.

The Chief Delphi Forums are sponsored by Innovation First International, Inc.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2017, Jelsoft Enterprises Ltd.
Copyright © Chief Delphi