Full Disclosure mailing list archives
phpBB mass-hack being prepared (FuntKlakow-bot)?-
From: "Bipin Gautam" <gautam.bipin () gmail com>
Date: Mon, 20 Mar 2006 21:16:10 +0545
http://www.issociate.de/board/post/312809/...being_prepared_ During the last few days a bot using a name FuntKlakow, has been registering to at least hundreds (maybe thousands) of phpBB forums. Ok, what is a danger? Next time the phpBB announces a critical vulnerability, the bot would have everything ready (just a post click away) from attacking thousands of sites/forums. http://www.google.com/search?q=funtklakow a person who reported this news to a forum got 243,000 on google and 5 hours later 252,000. It could be that this is popular query, so google is tuning up, or that is 12 000 comps per 5 hours (2400/hour, 40/minute). If it is based on some worm, then this rate could grow exponential... Interesting to see how it spreads. -- Bipin Gautam http://bipin.tk Zeroth law of security: The possibility of poking a system from lower privilege is zero unless & until there is possibility of direct, indirect or consequential communication between the two...
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- phpBB mass-hack being prepared (FuntKlakow-bot)?- Bipin Gautam (Mar 20)