Tara: 'Your One-Stop Spot to Shop for Lots of New-Age and Occult Items.' Catchy. Giles: Think so? Tara: Uh huh. In a... hard to say sorta way.

'Sleeper'


Buffistas Building a Better Board ++

Do you have problems, concerns, or recommendations about the technical side of the Phoenix? Air them here. Compliments also welcome.


§ ita § - Mar 05, 2012 4:54:21 am PST #3151 of 4673
Well not canonically, no, but this is transformative fiction.

Good god, Tom. Thanks for catching that.

I am curious about how they got in, too. Our admin password is decently strong--do you think it should be changed?

A cursory google doesn't show me any scriptkiddy sites with that application name or anything, but I don't know all the l33t places to go.

eta: and do you think it's something we should report to iStrata in case that's how they got in, or other customers are compromised?


Consuela - Mar 05, 2012 6:12:32 am PST #3152 of 4673
We are Buffistas. This isn't our first apocalypse. -- Pix

Wow! Thanks for catching that, Tom.


Tom Scola - Mar 05, 2012 7:29:56 am PST #3153 of 4673
Remember that the frontier of the Rebellion is everywhere. And even the smallest act of insurrection pushes our lines forward.

Looks like they got in through plesk.


§ ita § - Mar 05, 2012 7:36:35 am PST #3154 of 4673
Well not canonically, no, but this is transformative fiction.

Is there a security loophole or exploit that they used? Is our password compromised? Was it our plesk install, or one at a higher level (like iStrata admin, or something?)


Tom Scola - Mar 05, 2012 7:39:36 am PST #3155 of 4673
Remember that the frontier of the Rebellion is everywhere. And even the smallest act of insurrection pushes our lines forward.

And, in fact, I see you, ita, logging into Plesk on Thursday, the 23rd, and then the hacker is able to log in on Friday, the 24th with no failed login attempts. I'm worried that there might be a keylogger on one of your systems, ita.

Edit: Or there could be a security hole in Plesk, and the fact that you logged in the day before was just a coincidence. I'm still looking.


§ ita § - Mar 05, 2012 7:47:58 am PST #3156 of 4673
Well not canonically, no, but this is transformative fiction.

23rd of Feb? Can you email me the IP address that was from? I'm trying to think why I would have logged in. That seems too recent for the vote, and that was the last time I went in, to change the email address for the vote.


Tom Scola - Mar 05, 2012 8:00:52 am PST #3157 of 4673
Remember that the frontier of the Rebellion is everywhere. And even the smallest act of insurrection pushes our lines forward.

Insent.


§ ita § - Mar 05, 2012 8:34:24 am PST #3158 of 4673
Well not canonically, no, but this is transformative fiction.

Thanks. V. confusing. Obviously I can't keep track of when I go in, but keylogged on my Mac? Say it ain't so, Joe. Say it ain't so.


Tom Scola - Mar 05, 2012 8:38:01 am PST #3159 of 4673
Remember that the frontier of the Rebellion is everywhere. And even the smallest act of insurrection pushes our lines forward.

Seems unlikely to me, too, but how else could they have grabbed the password? Plesk uses SSL.


Tom Scola - Mar 05, 2012 9:29:39 am PST #3160 of 4673
Remember that the frontier of the Rebellion is everywhere. And even the smallest act of insurrection pushes our lines forward.

Aha!