[Show all top banners]

San
Replies to this thread:

More by San
What people are reading
Subscribers
:: Subscribe
Back to: Kurakani General Refresh page to view new replies
 Sajha Blogs disabled for few days due to detection of hacking activity
[VIEWED 4205 TIMES]
SAVE! for ease of future access.
Posted on 08-07-08 12:27 AM     Reply [Subscribe]
Login in to Rate this Post:     0       ?    
 

Would like to inform you that the sajha guild came down under a malicious attack. About a week back I got a notification from google saying that the pages of sajha guild has been compromised. In checking out the data, I found that there was a string containing reference to a javascript was appended to most of the data. In essense what this does is to force uses to run a javascript when they loaded any guild page which showed partially blank pages.

I hoped this would be a random thing so I took care of the database and remove all inserted codes and just waited to see what happens.

Today also same thing from the morning, it may have been before this but thats when i noticed it. So in doing a little research this is what is going on:

Click here to see info on this script injection hack

I need a little time to get to the bottom of this so I'm disabling sajha blogs for few days until the time I have figured out a good solution. Please do read up on the above to see if you are infected. If anyone has any good ideas, please feel free to share!

It is very interesting that the exerpt from the above link reads: "excluding all end-users with the following language preferences set in their browser—Russian (RU), Chinese (ZH-CN, ZH-TW, ZH), Korean (KO), Hindi (HI), Thai (TH), and Vietnamese (VI)—as the ngg.js script suggests."

It will be interesting to find out why only these language users are excluded from the effects of the exploit.

 
Posted on 08-07-08 1:26 AM     Reply [Subscribe]
Login in to Rate this Post:     0       ?    
 

darn the crackers!:@..hehe

anyways san bro seems like some extra work for u urghh..but have fun!:oD hehe

and yeah i actually had come to shower the blog with some of my usual gibberish blabber..but wat luck!:oS..actually  its lucky i didnt do it few days ago?..had been thinkn then...errr aint i lucky?someone say so..i cant decide!plus most prob i already have been infected long time back..due to visiting sites that are infested with wat not?;oP haha..ok ok just talkn with myself here..since cant log onto the blog :o(..

hope all is well San bro :oD...

good day!and good luck!:oD

ps thumbs up the "search" function that works..its def gettn better and better here :oD
Last edited: 07-Aug-08 01:27 AM

 
Posted on 08-11-08 5:20 PM     Reply [Subscribe]
Login in to Rate this Post:     0       ?    
 

Sajha Blog is back up. It should be fine now. Any inconvenience is regretted.

Best wishes

 
Posted on 08-11-08 8:08 PM     Reply [Subscribe]
Login in to Rate this Post:     0       ?    
 

So you're using SQL.. I thought it was "MYSQL"???

Anyway thanks for letting us know.

 


Please Log in! to be able to reply! If you don't have a login, please register here.

YOU CAN ALSO



IN ORDER TO POST!




Within last 7 days
Recommended Popular Threads Controvertial Threads
TPS Re-registration case still pending ..
ढ्याउ गर्दा दसैँको खसी गनाउच
जाडो, बा र म……
NOTE: The opinions here represent the opinions of the individual posters, and not of Sajha.com. It is not possible for sajha.com to monitor all the postings, since sajha.com merely seeks to provide a cyber location for discussing ideas and concerns related to Nepal and the Nepalis. Please send an email to admin@sajha.com using a valid email address if you want any posting to be considered for deletion. Your request will be handled on a one to one basis. Sajha.com is a service please don't abuse it. - Thanks.

Sajha.com Privacy Policy

Like us in Facebook!

↑ Back to Top
free counters