XOOPS 总站被黑客攻击,提醒大家注意网络安全 - XOOPS - 本站新闻
XOOPS : XOOPS 总站被黑客攻击,提醒大家注意网络安全
作者 XoopsChina 于 2005年07月27日 20:50:38 (1166 次阅读) 该作者发布的其他新闻

欧洲时间2005年7月25日下午5时许,总站 XOOPS.ORG 被黑客攻击,包括 www.XOOPS.ORG 和各子站均受影响;同时,XOOPS总站被攻击的消息马上被个网络安全网站报道。


总站稍后查明原因,确认黑客是通过Apache webserver而不是XOOPS的漏洞进行的攻击。
在网站关闭后,总站准备借这次关站的机会全面升级:
1 硬件采用 EPC Online 新捐赠的服务器
2 软件升级到刚刚发布的XOOPS 2.2和CBB等最新模块
3 总站界面进行更合理的安排和美化(已经被呼吁了很久)

关站两天后,总站认为这一过程需要几天时间,持续关站时间过长不合适。因此决定暂时维持原状,升级过程逐步进行。

XOOPS CHINA提醒大家,网络安全要从软件、硬件等各方面着手,时刻注意,特别是:
在第一时间升级到XOOPS最新版

by Mithrandir
Posted on: 2005/7/27 11:56
http://www.xoops.org/modules/newbb/viewtopic.php?topic_id=39102
====================================

Monday evening at around 5'ish, European time, xoops.org was hacked.

We believe the hackers exploited a hole in the Apache webserver, which we have now closed (the hole, not the webserver).

We also took the opportunity, since xoops.org was closed anyway, to move the websites to a new server - graciously donated by the great people at EPC Online - and change the structure of the XOOPS installation to facilitate future upgrades.
We also took some time to discuss the future xoops.org sites layout and thought about upgrading the xoops.org websites to XOOPS 2.2, change the themes and reorganise everything. However, this would be the wrong way of doing it. We cannot keep xoops.org closed for too long or you will start worrying. We have just released XOOPS 2.2 and you need a place to discuss it and get support.

We also already have a process of getting solution drafts from the community as to how the xoops.org sites should be organised and how they should look. It would not be right to rush it and not finish that process and get things right.

Unfortunately, the consequences of the attack is that all files we had on the server are toast and have to be recreated.

The XOOPS system files, we can of course recreate, but these elements, we cannot restore:
- User avatars
- Module releases on dev.xoops.org
- A handful of modules in the repository that were hosted on xoops.org

So it will take a while until xoops.org looks like xoops.org again.
The documentation site on http://docs.xoops.org is also down until further notice.

评分: 0.00 (0 票) - 评分 -
上一篇 - 下一篇 打印模式 转发给朋友 生成该文件的PDF


其他文章
2006年05月09日 22:20:13 - TinyD-2.2_cn简体中文版
2006年05月08日 07:35:50 - CBB 3.04 RC 测试版
2006年04月28日 16:50:00 - 4月26日 FreeBSD讲座资料
2006年04月27日 19:40:00 - Xoops China 成功举办FreeBSD讲座!
2006年04月24日 22:33:51 - xoops动态网站Rewrite成静态网页

网友个人意见,不代表本站立场。有问题请与作者联系。