
-----------------------------------

Mon Mar 14, 2005 11:44 pm

y helo thar tony
-----------------------------------
lol

-----------------------------------
AsianSensation
Tue Mar 15, 2005 12:34 am


-----------------------------------
wtf indeed. I get back from playing Starcraft and this is what I see.

DoubleEwwTeeEff?

-----------------------------------
Catalyst
Tue Mar 15, 2005 12:45 am


-----------------------------------
this cant be good

-----------------------------------
Cervantes
Tue Mar 15, 2005 8:09 am


-----------------------------------
Either Dan is drunk and fooling around, or he's left his laptop running and someone has grabbed access to it.  Or, you know, we're really screwed.

-----------------------------------
Tony
Tue Mar 15, 2005 9:23 am


-----------------------------------
Actually this is an exploit in phpBB... again :roll: well crap. I need Amailer or somebody to look into that.

-----------------------------------
Mazer
Tue Mar 15, 2005 9:59 am


-----------------------------------
Whisky Tango Foxtrot, over.

-----------------------------------
md
Tue Mar 15, 2005 12:00 pm


-----------------------------------
You'd think that a site devoted to computer science would run it's own forum software... or at least not one which is notorious for it's security holes...

-----------------------------------
rizzix
Tue Mar 15, 2005 12:04 pm


-----------------------------------
dan...  :?

-----------------------------------
GB
Tue Mar 15, 2005 12:10 pm


-----------------------------------
zerg rush kekeke
http://www.phpbb.com/phpBB/viewtopic.php?f=14&t=267563

-----------------------------------
rizzix
Tue Mar 15, 2005 12:21 pm


-----------------------------------
nice. now tony, fix it!

-----------------------------------
GB
Tue Mar 15, 2005 12:23 pm


-----------------------------------
hurry up!

-----------------------------------
GB
Tue Mar 15, 2005 12:25 pm


-----------------------------------
it was me who did this, tony didn't believe it until I showed him.

-----------------------------------
rizzix
Tue Mar 15, 2005 12:36 pm


-----------------------------------
ehm how did u exploit it?
:edit: nvm dont answer. troublesome. heh.

-----------------------------------
[Gandalf]
Tue Mar 15, 2005 1:53 pm


-----------------------------------
This was a surprise :lol: , this forum software does seem to have its bugs, we also seem to be .0.2 versions outdated :wink:...  I don't know, if you're going to change forums and don't want to make your own then two I am familiar with are Invision and vBulletin...

lol, Starcraft - I guess I was playing that a few days ago too  :? , atm though I'm *between* games.  :) 

btw, you could always grab the ip of the person who did this and match it with any users, right?  Well, I guess that won't be neccessary now.

Hope to see this bug fixed soon, and not to see many more in the future.

-----------------------------------
Tony
Tue Mar 15, 2005 2:43 pm


-----------------------------------
well I patched the bug. GB, could you confirm?

we're .0.2 versions behind because Dan broke something a while back such that we can no longer update :think: yeah... he forked off with his own development and messed a lot of code up. It made sense shortterm though.

-----------------------------------

Tue Mar 15, 2005 3:38 pm


-----------------------------------
My PC is slow (P2), so I can't really do it again :P
But if you followed the instructions, then it should be fine - but upgrade to the latest phpBB to be safe.

-----------------------------------
GB
Tue Mar 15, 2005 3:39 pm


-----------------------------------
Forgot to login - that's me.

-----------------------------------
Tony
Tue Mar 15, 2005 3:56 pm


-----------------------------------
moved to 
I am yet to understand what cpu speed has to do with creating a fake cookie :think:

-----------------------------------
GB
Tue Mar 15, 2005 4:21 pm


-----------------------------------
Because I have a Cookie Editor program, which takes up a lot of resources, and my hard drive is nearly full. I'm getting a new PC soon, so it should be all good by then.
