funsec mailing list archives

More FuntKlakow: Bot Authors Targeting phpBB Forums


From: "Fergie" <fergdawg () netzero net>
Date: Mon, 20 Mar 2006 16:17:24 GMT

More on FuntKlakow, via Netcraft.

[snip]

Bots are registering user accounts on thousands of phpBB forums across the Internet, raising concerns that the bot's 
authors are laying the groundwork for mass exploitation down the road. The activity of a bot named FuntKlakow was 
discussed in a Digg thread Sunday, with many forum owners confirming that FuntKlakow had created accounts and even 
posted simplistic messages ("O How nice" and "Wow that is cool").

FuntKlakow's post signatures have included links to proxy surfing and "traffic generator" services, raising the 
prospect that its goal may be spam rather than exploits. But as noted on a German site that issued an early warning 
about the bot's behavior, "the next time the phpBB announces a critical vulnerability, the bot would have everything 
ready (just a post click away) from attacking thousands of sites/forums." Google searches suggested the bot may have 
created accounts on as many as 33,000 forums.

[snip]

http://news.netcraft.com/archives/2006/03/20/bot_authors_targeting_phpbb_forums.html

- ferg 


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg () netzero net or fergdawg () sbcglobal net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: