關於 2014 年底 phpbb.com 停機的狀態

phpBB Installation & Usage Support
phpBB 3.1.x 安裝於各類型作業平台之問題討論;外掛問題,請到相關版面依發問格式發表!
(發表文章請按照公告格式發表,違者砍文)

版主: 版主管理群

版面規則
本區是討論關於 phpBB 3.1.X 架設安裝上的問題,只要有安裝任何外掛,請到外掛討論相關版面按照公告格式發表。
(發表文章請按照公告格式發表,違者砍文)

關於 2014 年底 phpbb.com 停機的狀態

文章rex » 2014-12-17 15:03

這2天想去 phpbb.com 的網站找資料時發現了官網停機的狀態,並陸續發出了聲明稿。

相關內容擷取如下:
代碼: 選擇全部
Update #3 17-12-2014 - 01:10

At this time we are proceeding with recovery efforts and have some additional important information.

We have confirmed that initial entry was made via a team member's compromised login details and not as the result of a vulnerability in the phpBB software. The phpBB download packages were never altered.

The attackers were able to obtain access to the phpBB.com and area51 databases, meaning that user information, including hashed salted passwords, was compromised. Additionally, all logins on area51 between Dec. 12th and Dec. 15th were logged in plaintext. While the hashing algorithm utilized in phpBB will make it difficult to obtain those passwords, you should not take any chances. If you were using your phpBB.com or area51 passwords anywhere else, you must change them.

We will provide full details, including the steps we have taken since the compromise, once we are back in operation.

Update #2 15-12-2014 - 23:30

On Sunday Dec. 14th, several of the web servers powering phpBB.com were compromised. Upon discovering the ongoing attack, we immediately took our network offline to perform a thorough investigation, which is continuing.

At this time, we would like to ask everyone to follow basic security protocol. If you were using your www.phpBB.com or area51.phpBB.com passwords anywhere else, please change them to unique ones.

Your personal phpBB Forums are NOT affected by the compromise of our servers.

We will be rebuilding our systems from the ground up and verifying the integrity of all data prior to coming back online. This process will likely take several days.

Further updates will be posted here when we have additional information.

- The phpBB Team

If you need urgent assistance, please make use of the #phpbb IRC channel on Freenode. A web-based client is available at http://webchat.freenode.net.

螢幕快照 2014-12-17 下午2.58.17.png


截至目前為止
主要說明了這次斷線及攻擊事件與 phpBB 軟體安全性無關,
如果是使用 phpbb.com 或是51區的帳號密碼的會員們的帳號密碼若使用在其他地方,建議您進行更改。
全面支援 phpBB3.2.x 版本虛擬空間
phpBB3.2.x 展示網站:https://32x.kukan.tw/index.php
台灣[不限流量]虛擬主機
*可自由調整php 版本。
*免費 SSL 簽章。
https://kukan.tw/product/category/1/product/5

---------------------------------------------------------------------------
修改程式前必要的前置條件:
1.頭腦清晰。
2.備份檔案。
3.一心不二用。
4.再3確認。
缺一不可阿 @0@"
頭像
rex
版面管理員
版面管理員
 
文章: 559
註冊時間: 2001-11-01 15:28
來自: 竹貓星球

Re: 關於 2014 年底 phpbb.com 停機的狀態

文章rex » 2014-12-22 17:45

終於要恢復運作了!
預計會在24~48小時內完成維護~ (:Y)

代碼: 選擇全部
We have concluded our investigation and are actively working on bringing services back online.

We verified the integrity of all data on the machines, which took a considerable amount of work and time. The backend infrastructure has likewise been improved so things should be running better than ever.

Apologies for the long downtime. We expect this to be completed within 24-48 hours.
全面支援 phpBB3.2.x 版本虛擬空間
phpBB3.2.x 展示網站:https://32x.kukan.tw/index.php
台灣[不限流量]虛擬主機
*可自由調整php 版本。
*免費 SSL 簽章。
https://kukan.tw/product/category/1/product/5

---------------------------------------------------------------------------
修改程式前必要的前置條件:
1.頭腦清晰。
2.備份檔案。
3.一心不二用。
4.再3確認。
缺一不可阿 @0@"
頭像
rex
版面管理員
版面管理員
 
文章: 559
註冊時間: 2001-11-01 15:28
來自: 竹貓星球

Re: 關於 2014 年底 phpbb.com 停機的狀態

文章心靈捕手 » 2014-12-24 14:57

官網關閉,真叫人擔心;
所幸,他們終於回來了! :-D
施比受有福,歡迎來信賜教,謝謝 & 再見!
祝福您 好運 ^_^
歡迎加入★★心靈捕手★★ :: 討論區!!
p.s.
奉老婆之命:在晚上十一點前,得關機睡覺!!!
頭像
心靈捕手
默默耕耘的老師
默默耕耘的老師
 
文章: 8519
註冊時間: 2004-04-30 01:54
來自: Taiwan


回到 [3.1.x] 安裝與使用

誰在線上

正在瀏覽這個版面的使用者:沒有註冊會員 和 1 位訪客

Partnership: phpBBHacks.com