English Amiga Board


Go Back   English Amiga Board > News

 
 
Thread Tools
Old 20 August 2020, 17:27   #1
solarmon
Registered User

solarmon's Avatar
 
Join Date: Dec 2018
Location: UK
Posts: 1,180
Lemon Amiga forum hacked!

Hi,

Sorry if this is the wrong place.

It seems the Lemon Amiga forum have been hacked and compromised.

The admins and moderators might want to be extra vigilant and review the security of this forum too.
solarmon is offline  
Old 20 August 2020, 17:54   #2
lilalurl
Global Moderator
lilalurl's Avatar
 
Join Date: Aug 2001
Location: France
Age: 41
Posts: 3,228
Send a message via ICQ to lilalurl
I lock the thread for the time being, given that I don't have any more details about this.
It might be informative though.

If Predseda (or someone else from Lemon) has any information about that, please PM me and we will see if there is need for the thread to be open to discussion or not. Of course, any assistance needed we will be happy to provide.


Edit: Thread open. I have received details about a sort of spam attack going on on their forums, so I guess some people might want to discuss it. No speculation or other stuff like that please, let's keep the thread as informative as possible. And thanks solarmon for the starting the thread.

Last edited by lilalurl; 20 August 2020 at 18:10.
lilalurl is offline  
Old 20 August 2020, 18:15   #3
solarmon
Registered User

solarmon's Avatar
 
Join Date: Dec 2018
Location: UK
Posts: 1,180
From the Lemon Amiga Facebook page:
-----
Sad news. The Lemon Amiga forum has been hacked. The hacker can assume any login, even hijacking existing and regular users accounts. There isnt much we can do about this, as the hacker knowns how to access our passwords and bypass things such as locked threads and quarantine systems. The site will most likely go down at some point, due to this, so please be aware this could be the end of our beloved site.
Also please do not visit any of the links provided by him, as I would not trust a hack of Doom made by a hacker who thinks its ok to flood forums with 1400 posts a day. If you know of any hackers, please remove their genitals for me, and string them up around their neck.
In the meantime, hacking is not cool or clever, and is pure evil, so please dont do it. btw, Happy Birthday Simon Humphrey. ?
------
solarmon is offline  
Old 20 August 2020, 19:30   #4
malko
Ex nihilo nihil

malko's Avatar
 
Join Date: Oct 2017
Location: CH
Posts: 2,911
Do we have to change the lemon user account passwords ? Or is it useless for the moment ?
malko is offline  
Old 20 August 2020, 23:51   #5
DamienD
disengaged
DamienD's Avatar
 
Join Date: Aug 2005
Location: London / Sydney
Age: 43
Posts: 18,169
Not good news

Who bothers to hack an Amiga website / forum; which are very niche???

LAME!!!

...was this "mcm" a real LemonAmiga user; or an account that was hacked / used to spam the forum?
DamienD is offline  
Old 21 August 2020, 00:01   #6
-Acid-
Registered User
 
Join Date: Oct 2012
Location: South Shields
Posts: 760
There has been 4 or 5 accounts hacked in the last week that i have seen, the first couple actually made posts that were usually negative towards users who had asked questions but now it is just spam. Most of them are accounts with 1 post that were made over 10 years ago so obviously dormant users that used piss poor passwords being brute forced by the looks of it.
-Acid- is offline  
Old 21 August 2020, 00:46   #7
matburton
Registered User

matburton's Avatar
 
Join Date: Apr 2017
Location: Cambridge
Posts: 105
Quote:
Originally Posted by solarmon View Post
From the Lemon Amiga Facebook page:
the hacker knowns how to access our passwords
Owch! Does this mean that the passwords weren't stored as hashes?

Should they be warning people that if they used the same password or similar passwords on other sites they need to change them pronto?
matburton is offline  
Old 21 August 2020, 03:18   #8
LongLifeA1200
Registered User

LongLifeA1200's Avatar
 
Join Date: Nov 2017
Location: Amiga Kingdom
Posts: 281
Quote:
Originally Posted by DamienD View Post
...was this "mcm" a real LemonAmiga user; or an account that was hacked / used to spam the forum?
That account too was hacked into. Most of the hacked accounts (around 60 of them) are from 2005 and haven't logged on in half a decade or more.

As '-Acid-' pointed out, initially it was just troll bait, some of which I fell for. Later it became about marketing.

Quote:
Originally Posted by matburton View Post
Should they be warning people that if they used the same password or similar passwords on other sites they need to change them pronto?
That has been a discussion on the forum over the past year. As to whether or not members took the advice to have unique passwords is uncertain. Current advice is to have a password you wouldn't find in a dictionary.

The old dormant accounts are unlikely to be updated and are the ones most likely to have a very basic password.

I have attached a list of accounts I know to have been hacked (hacker used them all to up-vote the game 'Doom' to the top spot on the website).
Attached Files
File Type: txt Lemon Amiga Accounts Hacked.txt (563 Bytes, 123 views)

Last edited by LongLifeA1200; 21 August 2020 at 03:31. Reason: Alphabetized account list.
LongLifeA1200 is offline  
Old 21 August 2020, 07:59   #9
RichL
Registered User

 
Join Date: Jul 2020
Location: Birmingham, UK
Age: 46
Posts: 37
Bastards! Good luck hope you can save the forum.
RichL is offline  
Old 21 August 2020, 08:01   #10
chip
Amiga Demoscene Archive !
 
Join Date: Oct 2012
Location: Italy
Age: 45
Posts: 1,953
What actually hackers want to demonstrate with these kind of actions ?
chip is offline  
Old 21 August 2020, 08:53   #11
manossg
Registered User

 
Join Date: Nov 2019
Location: Greece
Posts: 433
What lamers.
manossg is offline  
Old 21 August 2020, 09:01   #12
AMike
Registered User
AMike's Avatar
 
Join Date: Jan 2007
Location: near Vienna/Austria
Posts: 264
Quote:
Originally Posted by LongLifeA1200 View Post

I have attached a list of accounts I know to have been hacked (hacker used them all to up-vote the game 'Doom' to the top spot on the website).
Thanks for the info - I know one person on the list - it's a still active user. All to best - hope you can fix the breach.
AMike is offline  
Old 21 August 2020, 09:15   #13
SunSpire
Registered User

 
Join Date: Jul 2017
Location: Germany
Posts: 23
Not sure if related or just pure coincidence, but the libretro / Retroarch servers have also been hacked these days
SunSpire is offline  
Old 21 August 2020, 10:36   #14
gimbal
cheeky scoundrel

gimbal's Avatar
 
Join Date: Nov 2004
Location: Spijkenisse/Netherlands
Age: 39
Posts: 3,807
Quote:
Originally Posted by chip View Post
What actually hackers want to demonstrate with these kind of actions ?
Nothing, some people just want to watch the world burn.
gimbal is offline  
Old 21 August 2020, 10:58   #15
chip
Amiga Demoscene Archive !
 
Join Date: Oct 2012
Location: Italy
Age: 45
Posts: 1,953
Perhaps you are right gimbal

I strongly believe there's always a motivation behind our actions

But in this case i seriously miss the logic
chip is offline  
Old 21 August 2020, 11:11   #16
modrobert
old bearded fool

modrobert's Avatar
 
Join Date: Jan 2010
Location: Bangkok
Age: 53
Posts: 537
Quote:
Powered by phpBB © 2001, 2005 phpBB Group
Perhaps time for a forum upgrade? If customized and not possible to upgrade it needs to be manually patched against SQL injection.
modrobert is offline  
Old 21 August 2020, 11:12   #17
hexaae
Bug hunter

hexaae's Avatar
 
Join Date: Jul 2006
Location: Italy
Age: 44
Posts: 1,522
Quote:
Originally Posted by DamienD View Post
Not good news

Who bothers to hack an Amiga website / forum; which are very niche???
They probably hope to find users with the same pass used on Lemon for his/her Google account and more... even though we know today Google, PayPal, Microsoft, Banking... all have 2 steps verification!
hexaae is online now  
Old 21 August 2020, 12:14   #18
Jope
-
Jope's Avatar
 
Join Date: Jul 2003
Location: Helsinki / Finland
Age: 40
Posts: 8,005
https://www.lemonamiga.com/forum/vie...=155860#155860

The server is not hacked apparently.
Jope is offline  
Old 21 August 2020, 12:26   #19
mcgeezer
Registered User

 
Join Date: Oct 2017
Location: Sunderland, England
Posts: 1,933
When you tun a content management system that is 15 years out of date you’re gonna run into trouble like this. Also, nobody should br able to brute force accounts as they should have something like apache modsecurity in place.

Weak passwords or not, something like recapcha would solve the problem.

Ultimately though the forum needs a controlled restore and upgrade.
mcgeezer is offline  
Old 21 August 2020, 12:36   #20
DamienD
disengaged
DamienD's Avatar
 
Join Date: Aug 2005
Location: London / Sydney
Age: 43
Posts: 18,169
What would you know Graeme; do you work in IT Security or something as a profession?

<joking of course, I know you do>
DamienD is offline  
 


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Similar Threads
Thread Thread Starter Forum Replies Last Post
amiga magix website is hacked Retro-Nerd Amiga scene 19 14 July 2006 03:31
The Lemon Amiga forum is Launched Lemon News 13 15 July 2004 23:03
Amiga.com hacked ! RCK Amiga scene 34 29 December 2002 01:01
Another Amiga WebPage Hacked Carlos Ace Amiga scene 13 11 May 2002 01:21
Amiga.org Hacked/Down Galahad/FLT Amiga scene 3 24 December 2001 16:35

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT +2. The time now is 01:25.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2020, vBulletin Solutions Inc.
Page generated in 0.11642 seconds with 13 queries