View previous topic - View next topic |
Author |
Message |
janus Mage
Joined: 29 Jun 2002 Posts: 464 Location: Issaquah, WA
|
Posted: Wed Mar 16, 2005 12:49 am Post subject: Update forums |
[quote] |
|
You should probably update to phpBB 2.0.13. .11 has a couple major exploits, one of which was used to take out Pixelation the other day.
Don't you just love phpBB? What a great codebase! :D
|
|
Back to top |
|
|
Bjorn Demon Hunter
Joined: 29 May 2002 Posts: 1425 Location: Germany
|
Posted: Wed Mar 16, 2005 11:49 am Post subject: |
[quote] |
|
Yeah, thanks for the reminder. I've already updated the phpBB board at The Mana World, and will try to do this one over the weekend. This one is a little more complicated to update because of my own changes. :-)
|
|
Back to top |
|
|
XMark Guitar playin' black mage
Joined: 30 May 2002 Posts: 870 Location: New Westminster, BC, Canada
|
Posted: Thu Mar 17, 2005 6:41 am Post subject: |
[quote] |
|
*sigh* and I so recently upgraded to 3.0.11 because someone hacked my site when it was an earlier version. I guess it's like the old saying "build a better mousetrap, and they'll just make better mice" or something to that effect. _________________ Mark Hall
Abstract Productions
I PLAYS THE MUSIC THAT MAKES THE PEOPLES FALL DOWN!
|
|
Back to top |
|
|
Hajo Demon Hunter
Joined: 30 Sep 2003 Posts: 779 Location: Between chair and keyboard.
|
Posted: Thu Mar 17, 2005 8:38 am Post subject: |
[quote] |
|
XMark wrote: |
"build a better mousetrap, and they'll just make better mice" or something to that effect. |
Evolution theory: only the mice that recognize/survive/escape the trap can breed. Regardless if it's social or genetic, the breed has a higher chance to know/learn the trap and how to avoid it.
But I don't think L33t H4x0rs (well, rather script kiddies) are affected by this.
|
|
Back to top |
|
|
Bjorn Demon Hunter
Joined: 29 May 2002 Posts: 1425 Location: Germany
|
Posted: Fri Apr 22, 2005 9:21 pm Post subject: |
[quote] |
|
Well, we got lucky with nobody exploiting our board (I hope). The forums are now once again sealed tight (for the moment), cause I've updated them to 2.0.14. Just one month later than intended, heh.
|
|
Back to top |
|
|
Nephilim Mage
Joined: 20 Jun 2002 Posts: 414
|
Posted: Sat Apr 23, 2005 3:44 am Post subject: |
[quote] |
|
Yeah, we got hacked through PHPbb a while ago, and had to do a complete server rebuild because they had installed some back doors on the server. Thats what you get if you don't patch within a day or two, I guess...
I have since deleted my PHPbb installations. It's not worth the hassle. _________________ Visit the Sacraments web site to play the game and read articles about its development.
|
|
Back to top |
|
|
Bjorn Demon Hunter
Joined: 29 May 2002 Posts: 1425 Location: Germany
|
Posted: Tue May 31, 2005 10:22 pm Post subject: |
[quote] |
|
Well, an update was in order again. We're at 2.0.15 now.
|
|
Back to top |
|
|
janus Mage
Joined: 29 Jun 2002 Posts: 464 Location: Issaquah, WA
|
Posted: Wed Jun 01, 2005 2:33 am Post subject: |
[quote] |
|
Bjørn wrote: | Well, an update was in order again. We're at 2.0.15 now. | Minor suggestion: http://www.simplemachines.org/
Built in updater. Has a pretty good phpbb converter, too.
|
|
Back to top |
|
|
Nodtveidt Demon Hunter
Joined: 11 Nov 2002 Posts: 786 Location: Camuy, PR
|
Posted: Wed Jun 01, 2005 4:23 am Post subject: |
[quote] |
|
SMF is definately a cut above phpbb. I use it all the time now. _________________ If you play a Microsoft CD backwards you can hear demonic voices. The scary part is that if you play it forwards it installs Windows. - wallace
|
|
Back to top |
|
|
Bjorn Demon Hunter
Joined: 29 May 2002 Posts: 1425 Location: Germany
|
Posted: Wed Jun 01, 2005 10:53 am Post subject: |
[quote] |
|
Actually this site seems to automatically update phpBB as well, but it has only been giving problems, as the amount of integration between the main site and these forums is rather big. This includes user authentication, sessions, templates, bbcode and general database usage. Switching to anything else would be a major undertaking, so if you don't mind I'll just keep doing the manual updating from time to time. :-)
Also note that phpBB is under the GPL, whereas SMF is under some custom license requiring written permission for the distribution of any modified version and requires you to pay money to get the latest versions and yadayada.
|
|
Back to top |
|
|
janus Mage
Joined: 29 Jun 2002 Posts: 464 Location: Issaquah, WA
|
Posted: Wed Jun 01, 2005 7:27 pm Post subject: |
[quote] |
|
Bjørn wrote: | Also note that phpBB is under the GPL, whereas SMF is under some custom license requiring written permission for the distribution of any modified version and requires you to pay money to get the latest versions and yadayada. | That's true, but ideally you never actually need to modify your board software. If you directly modify it, then you have to modify it each time you install updates.
SMF's mod system is *supposed* to allow you to make almost any changes you like without needing that special license and permission. I've personally downloaded and installed a dozen or so mods and they work quite well, and do a decent job of working regardless of updates.
|
|
Back to top |
|
|
Nodtveidt Demon Hunter
Joined: 11 Nov 2002 Posts: 786 Location: Camuy, PR
|
Posted: Thu Jun 02, 2005 5:09 am Post subject: |
[quote] |
|
I've only had problems with two mods; one of them was a little insignificant mod which I don't remember which one it was...it wouldn't install into 1.03. The other mod with problems is the Arcade mod...the installer is chock full of errors and you have to do a lot of modifying to get it to install properly. Other than that, I've installed about 20 mods without problems on about 5 SMF installs. _________________ If you play a Microsoft CD backwards you can hear demonic voices. The scary part is that if you play it forwards it installs Windows. - wallace
|
|
Back to top |
|
|
Tenshi Everyone's Peachy Lil' Bitch
Joined: 31 May 2002 Posts: 386 Location: Newport News
|
Posted: Thu Jun 09, 2005 5:00 pm Post subject: |
[quote] |
|
... I just write my own.
- I heard about those problems. Someone used it to kill WomenGamers' forums also...
- Can anyone elaborate on what these hacks are, exactly? I don't think the amount of coding I did on my forums rivals phpBB's... but I don't want to be coding in any hacks... _________________ - Jaeda
|
|
Back to top |
|
|
janus Mage
Joined: 29 Jun 2002 Posts: 464 Location: Issaquah, WA
|
Posted: Sat Jun 11, 2005 10:53 am Post subject: |
[quote] |
|
Most of the hacks are just the result of phpBB using built-in php functions (many of which are insecure and/or badly designed).
|
|
Back to top |
|
|
Bjorn Demon Hunter
Joined: 29 May 2002 Posts: 1425 Location: Germany
|
Posted: Sat Nov 12, 2005 4:04 am Post subject: |
[quote] |
|
Sorry for neglecting this for a while. Rest assured, the forum has now been upgraded from 2.0.15 to 2.0.18, which should bring it up to date as far as security is concerned again. It will mean all you people using autologin will need to login manually once, as they changed that system to be more secure.
Please report any errors you may encounter, as usual.
|
|
Back to top |
|
|