2006-06-13, 11:43 PM
2006-06-14, 12:22 AM
Hmm...I had an install recently that I didn't have posted anywhere. So yes..he is finding sites with Google or another search engine looking for the Powered By line...
How can we prevent this since removing that line is against copyright?
Will you guys allow the removal of that text and changing it to an image?
How can we prevent this since removing that line is against copyright?
Will you guys allow the removal of that text and changing it to an image?
2006-06-14, 01:14 AM
I hope they allow it, cuz I've done it. To any observer, it looks like the normal text copyright, but as an image it prevents the name of your forum software from being picked up by search engines. I used an image map to retain the links to mybboard.com as they were in the text version. I don't see any problem with it, since the copyright is NOT removed, it's just in a different form.
2006-06-14, 01:30 AM
Maybe this should be default
2006-06-14, 02:38 AM
Not a bad idea, but then the board is not friendly to non-graphical browsers and for the blind.
2006-06-14, 03:15 AM
how you check ??? to see if anyone like this on my forum can someone tell how can i look for it
thanks
thanks
2006-06-14, 04:34 AM
The Wicked Flea Wrote:MyBB 1.1.2 was protected from the attack as well. At least upon my board it was.
1.1.2 is vulnerable from this exploit. Please upgrade to 1.1.3
2006-06-14, 05:24 AM
80.242.79.132
and more signups...this is annoying..I added '.system( to the username ban list but it appears not to have worked
I added just the word system to see if that does it.
Also how can I ban all .ru email signups? Such as *@*.ru works on most forums but will it work for mybb?
We need a better solution to prevent this guy from signing up so much.
This is scary what he is trying...
'.system($_POST[cmd]).'
and more signups...this is annoying..I added '.system( to the username ban list but it appears not to have worked
I added just the word system to see if that does it.
Also how can I ban all .ru email signups? Such as *@*.ru works on most forums but will it work for mybb?
We need a better solution to prevent this guy from signing up so much.
This is scary what he is trying...
'.system($_POST[cmd]).'
2006-06-14, 05:48 AM
Quote:and more signups...this is annoying..I added '.system( to the username ban list but it appears not to have workedUse the plugin posted in the announcements forum and it will prevent it completely.
2006-06-14, 05:49 AM
labrocca Wrote:We need a better solution to prevent this guy from signing up so much.It's not just one guy. There's a Perl script floating around that automates the whole exploit process, so anyone who can run a Perl script can try to exploit a MyBBoard.