Freerails Home 
Home Search search Menu menu Not logged in - Login | Register

Freerails IS ACCEPTING new Members ... To join Freerails ... See how to Register as a Member in the 'Joining Freerails' Forum

TROUBLE !
 Moderated by: .
New Topic Reply Printer Friendly
 Rate Topic 
AuthorPost
 Posted: Wed Mar 16th, 2016 06:28 pm
  PMQuoteReply
1st Post
Herb Kephart
Moderator


Joined: Thu Jul 19th, 2007
Location: Glen Mills, Pennsylvania USA
Posts: 5980
Status: 
Offline
Freerails was hacked on the afternoon of 3/15. Thanks to quick work of our host, he got right on the problem, once I notified him. Minimal damage was done, we did lose all of the posts from 3/15--but it could have been a lot worse.

Onward and upward !

Herb



____________________
Fix it again, Mr Gates--it still works!"
Back To Top

 Posted: Wed Mar 16th, 2016 09:15 pm
  PMQuoteReply
2nd Post
Steve L
Registered


Joined: Fri May 1st, 2015
Location: Moncton, New Brunswick Canada
Posts: 17
Status: 
Offline
Anonymous must be after all our secrets

Steve L
Drowning in Louisiana



____________________
Steve (SnakeEater) Landry
Snowy New Brunswick Canada
modeling On30 DCC
KTMRR
Back To Top

 Posted: Wed Mar 16th, 2016 11:01 pm
  PMQuoteReply
3rd Post
loggeron30
Registered


Joined: Wed Jan 25th, 2006
Location: Castle Rock, Colorado USA
Posts: 1247
Status: 
Offline
Hello, I'm just letting you know that the host has actually fixed the exploit that allowed attackers to get access. There is still a possibility that somebody with bad intentions still has access to the database from this website and because of that I'd recommend you to notify everybody to change their passwords.
Hopefully all is alright now,
- Ace.



____________________
Operations manager for the Tall Timber Railroad.

Visit my No Frills Picture CD Model Railroading CD guides at:
http://www.steamandmorephotography.com
Back To Top

 Posted: Wed Mar 16th, 2016 11:01 pm
  PMQuoteReply
4th Post
loggeron30
Registered


Joined: Wed Jan 25th, 2006
Location: Castle Rock, Colorado USA
Posts: 1247
Status: 
Offline

Just showing that it is more than possible for attackers to get access still but I don't want that to happen, as I said the only reason I'd changed anything on the site was to warn off members and hopefully get them to change their passwords. I apologize for the inconvenience I may have caused but if it were someone with the wrong intentions then your website and personal data would have not been safe. Glad that the low level exploit is patched now though and I hope your community can carry on as normal from now on. :)

Last edited on Wed Mar 16th, 2016 11:11 pm by loggeron30



____________________
Operations manager for the Tall Timber Railroad.

Visit my No Frills Picture CD Model Railroading CD guides at:
http://www.steamandmorephotography.com
Back To Top

 Posted: Thu Mar 17th, 2016 04:20 am
  PMQuoteReply
5th Post
Herb Kephart
Moderator


Joined: Thu Jul 19th, 2007
Location: Glen Mills, Pennsylvania USA
Posts: 5980
Status: 
Offline
Probably a very good idea. Even the Host--Jim--isn't able to tell what the P/W's are as they are encrypted. According to Jim he/she/it got in by copying the Md5 hash. Now does that change with a P/W change--I don't know--all that I know is that the one that was copied was a dormant Admin. name that I have removed.

But a periodic P/W change is always a good idea. Thanks Ken!

Herb



____________________
Fix it again, Mr Gates--it still works!"
Back To Top

 Posted: Thu Mar 17th, 2016 04:30 am
  PMQuoteReply
6th Post
Kitbash0n30
Registered


Joined: Mon Dec 10th, 2012
Location: Boonville, Missouri USA
Posts: 754
Status: 
Offline
What was that famous line about the ides of March?



____________________
See y'all later, Forrest.
Screw the rivets, I'm building for atmosphere
Back To Top

 Posted: Thu Mar 17th, 2016 06:07 am
  PMQuoteReply
7th Post
NevadaBlue
Registered


Joined: Mon Apr 7th, 2014
Location: Under The Blue Nevada Sky, Nevada USA
Posts: 668
Status: 
Offline
tiny print on this page too... secret stuff



____________________
Ken

Back To Top


 Current time is 06:22 pm

Top



UltraBB 1.172 Copyright © 2007-2016 Data 1 Systems