[Coco] CoCo Forums information gathering

Roger Taylor operator at coco3.com
Sun Jul 12 00:59:17 EDT 2009


At 10:21 AM 7/11/2009, you wrote:
>Roger,
>
>Could it be that when I created a new 6809er account (after the 
>hacking) it may of caused a problem for your merge process of old 
>databased into the current data.
>(The new 6809er account is not the same as the old 6809er account?)
>
>Feel free to edit/delete my current 6809er account if it will help.
>
>Thanks for all your hard work on the site and your other CoCo projects.
>We all know they are a labor of love and don't much money, if any.
>
>Steve Bjork


As I said, some of the most active users here and in the forums 
apparently were targeted.  In time, the back logs should prove who 
did it and how.

Back when I enabled the User Upload feature of the site, somebody 
managed to upload a picture that was actually a script and somehow it 
ran and messed up the database.  It was a real person who did 
this.  They uploaded into their User folder multiple files until they 
got it right.  I have a local copy of all the User folders at the 
time but haven't researched further to pinpoint the person who did 
it.  A lot of that info is misplaced somewhere on my system.  One of 
the scripts that probed the site was a HUGE PHP file chock full of 
commands.  No uploads are allowed at this time because the system in 
use doesn't filter correctly.

The rat who hacked the forums one time then posted a bragging message 
just walked in using my password they guessed.  Sadly, it was a CoCo 
user/lurker.

I just deleted 50+ inactive forum members with posts of 0, so if I 
deleted a long-time lurker, just rejoin and fill out the required 
fields so I'll know you're a person with CoCo interests.  It's cleanup time.


-- 
Roger Taylor

http://www.wordofthedayonline.com




More information about the Coco mailing list