Question: Do we have a mark-all-threads as read function?
'Shindig'
Buffistas Building a Better Board ++
Do you have problems, concerns, or recommendations about the technical side of the Phoenix? Air them here. Compliments also welcome.
No.
Thanks, ita. I wasn't sure if I couldn't find it because I'm me.
The board is really slow tonight.
My home network is bogged down with a lot of large file copies, so I can't tell--are other people experiencing slowness? Hands?
It's seemed a little slow all day to me.
I'm feeling like the internet in general is slow, so yeah, also here.
The site is slow because we have been hacked.
I logged in and found the following script running: /var/www/vhosts/buffistas.org/cgi-bin/footgear.pl. Modification time of Feb 24.
The script is some kind of DDOS program. I think we have been using a shit-ton of bandwidth the past week or so.
I killed any footgear.pl processes that were running, moved the script out of the way, and made the cgi-bin directory unwritable. It will take me a while to go through the logs to see if I can figure out how they got in.
Yikes!
Good god, Tom. Thanks for catching that.
I am curious about how they got in, too. Our admin password is decently strong--do you think it should be changed?
A cursory google doesn't show me any scriptkiddy sites with that application name or anything, but I don't know all the l33t places to go.
eta: and do you think it's something we should report to iStrata in case that's how they got in, or other customers are compromised?