Another Disney Fan Site Hacked -- DisneyDatabase

Gregory

New Member
Original Poster
It seems a bunch of Disney fan sites have been hacked recently... I know WhatWouldWaltDo.com was hacked recently, and I think that I remember reading about at least one more...

This time, Jens over at DisneyDatabase.com was attacked, it seems... I'm not sure exactly how or why.. We'll have to wait for more details.. But, lets just hope hackers stay away from WDWMagic! (WWWD and DDB were hacked by different hackers.. So, its not like theres someone going after Disney sites...)
 

Figment1986

Well-Known Member
hmmmm...

hackers said:
NeverEverNoSanity WebWorm generation 15.

Aren't these names familiar from another Disney attack??

Stupid hackers need to find a new hobby.. (that and hacking can be a professional job with Microsoft..)
 

TAC

New Member
Figment1986 said:
Stupid hackers need to find a new hobby.. (that and hacking can be a professional job with Microsoft..)

Or work for the CIA, NSA, FBI, etc :lookaroun

Like that guy who released that worm/virus ? I'm sure he is making a good deal of money working for someone...
 

Gregory

New Member
Original Poster
Hmm... I see a silver lining here... Maybe Steve should hire a team of hackers, to insure that WDWMagic stays the best (by making it the only) Disney fan site around :lookaroun...

Making a website hackproof isn't up to Steve, but rather the server thats hosting him... I'd say, though, that any server that can handle the bandwidth that WDWMagic gets is good- and it probably is fairly hacker-proof... The sites that have been hit are fairly small, and probably had a fairly plain hosting plan, which didn't have too much security... So, we don't have anything to worry about here :)
 

FigmentJedi

Well-Known Member
A Godzilla Media Page(www.tokyomonsters.com) was also recently hacked by the same people.It's like some sort of epidemic!
EDIT: They're working on getting it back up on a new server and they'll put up some new Final Wars stuff when ready.
 

wdwmagic

Administrator
Moderator
Premium Member
Gregory said:
Making a website hackproof isn't up to Steve, but rather the server thats hosting him... I'd say, though, that any server that can handle the bandwidth that WDWMagic gets is good- and it probably is fairly hacker-proof... The sites that have been hit are fairly small, and probably had a fairly plain hosting plan, which didn't have too much security... So, we don't have anything to worry about here :)
LOL rather worringly it is up to me, as WDWMAGIC runs on it's own servers. We grew out of shared hosting a long while ago.
 

Gregory

New Member
Original Poster
lol... Uh oh!

Well... The one that hit DDB is due to a hole in PHPBB, another popular forum software... WDWMagic uses vBulletin, which means that the thing that 'hacked' DDB isn't a threat to WDWMagic...

But, even if it was... Whats the worst that could happen? I don't think Steve has credit card numbers on the server (for the premium passes)... So, none of us are really in too much danger.. And, I'm sure that Steve backs up the site pretty regularly.. So, at most, we'd lose a few days of posts.. Which is a fairly small price to pay...

I figured WDWMagic outgrew most hosting plans... I figured it was on a deticated server, at the very least... I didn't know that it was up to Steve, though :) But, still.. WDWMagic has nothing to worry about :)
 

Figment1986

Well-Known Member
somewhere we ahve a photo of the server... and the claimed sections for grizz, MKT, and any othe rhuge poster.... then the premium members slot.... then everyone but me... then mine is the smallest slot.. :lol: Hoopefully stevce has upgraded the firewall and made it harder to hack.... making only Bill gates and the FBI able to hcak it... or does it use linux?? Then only FBI can hack it)
 

Gregory

New Member
Original Poster
Believe me.. theres some hackers out there that could run circles around the FBI...

But, there would be nobody out there that would take the time to hack WDWMagic.. I mean, no credit card numbers to steal, and theres sites that are way bigger than WDWMagic if someone was going to voilate the law like that...

Anyways.. Figment.. do you still have that picture? I'd like to see the server :)

Oh.. and, it seems like the DDB hack didn't involve the server.. it was softcore hack, which was done through phpBB (if I'm not mistaken)... Most hackers wouldn't waste their time on a Disney fansite, unless it was easy... And, I don't think vBulliten has any big security holes...
 

Figment1986

Well-Known Member
Took me a while to find it in the archives of this forum....

here was the most current one...
attachment.php
 

tigger248

Well-Known Member
I know this will make me sound incredibly stupid, but what exactly do hackers do? Do they just break into the site and steal stuff and basically wipe it out? Are they sorta like a computer virus? Sorry, I'm just extremely computer illiterate. I'm actually almost surprised that I haven't managed to ruin my laptop yet.

Whatever they exactly did, I'm very sorry to hear about the recent hackings into other disney fan sites.
 

Dean[AU]

New Member
Just a little update,
This isnt a phpBB hole (how ever much i hate that software) but its a hole in EVERY SINGLE php script that uses a certian code.
Recently a serious exploitable issue was discovered in PHP (the scripting language in which phpBB, IPB, vB, etc. are written) versions prior to 4.3.10. The problematical functions include unserialize and realpath. phpBB (along with a great many other scripts including IPB, vB, etc.) use these two functions as a matter of course.

It has come to our attention that code has now been released which uses this exploit in PHP to obtain confidential information in phpBB. Such information includes data contained in phpBB's config.php file. We therefore recommend the following:

1) If you maintain your own server be sure to upgrade to the newest available release of PHP (both versions 4 and 5). Be aware that at this time phpBB 2.0.x has problems functioning under PHP5 without modification.

2) If you pay for hosting ensure you hosting provider has upgraded thier installation of PHP (again remember that phpBB 2.0.x and other scripts will not function under PHP5 without modification).

Please do not submit this PHP issue to our security tracker, it is beyond our control. Fixed versions of PHP do exist and as above we encourage you to ensure your system is running such a version. Equally please examine any "hacking" issues you have carefully to ensure they are not caused by this PHP problem (rather than phpBB). Remember, this is not a phpBB exploit or problem, it's a PHP issue and thus can affect any PHP script which uses the noted functions.

So some hacker isn't attacking Disney sites on purpose, they have just got the bug.
 

Gregory

New Member
Original Poster
tigger248 said:
I know this will make me sound incredibly stupid, but what exactly do hackers do? Do they just break into the site and steal stuff and basically wipe it out?

Its not really a hacker.... Yes, you got it right- that is what hackers do.. Yes, everyone (including DDB) has been calling it a hacker... But, according to the true defination, its not.. Basically, what happened was that a computer virus broke down the site...
 

tigger248

Well-Known Member
Gregory said:
Its not really a hacker.... Yes, you got it right- that is what hackers do.. Yes, everyone (including DDB) has been calling it a hacker... But, according to the true defination, its not.. Basically, what happened was that a computer virus broke down the site...

Thanks! Now I understand. Computer viruses are horrible. Our desktop computer keeps getting attacked (at least according to our virus scan software).
 

Register on WDWMAGIC. This sidebar will go away, and you'll see fewer ads.

Back
Top Bottom