Joomla! Discussion Forums



It is currently Tue Nov 24, 2009 3:38 pm (All times are UTC )

 


Forum rules

Forum Rules
Absolute Beginner's Guide to Joomla! <-- please read before posting, this means YOU.
Security Checklist
Forum Post Assistant - If you are serious about wanting help, you will use this tool to help you post.



Post new topic This topic is locked, you cannot edit posts or make further replies.  [ 51 posts ]  Go to page Previous  1, 2
Author Message
Posted: Wed Oct 29, 2008 6:06 pm 
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Fri Dec 21, 2007 3:34 pm
Posts: 5
Just wanted to add that I just saw the same user registration on an old 1.0.13 site I had forgotten about.


Top
   
 
Posted: Wed Oct 29, 2008 7:27 pm 
Joomla! Intern
Joomla! Intern
Offline

Joined: Tue Jun 13, 2006 3:20 am
Posts: 58
is there a way to check if new content has been placed on your page, or do you have to do it manually. six of my sites had margarittaes as a visitor. need to make sure they're ok.


Top
  E-mail  
 
Posted: Wed Oct 29, 2008 10:57 pm 
User avatar
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Thu Mar 23, 2006 12:35 pm
Posts: 15
Had the same user registration. I noticed index.php and index.html in the root had a load of html links added all about viagra! Not seen any other modified files yet.

_________________
Save your red cousin!


Top
  E-mail  
 
Posted: Thu Oct 30, 2008 12:57 am 
User avatar
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Wed Nov 21, 2007 9:24 pm
Posts: 20
Location: Massachusetts
I to got hit just now...

So far only one site of the few I have Running Joomla 1.0.15

One reason I like Joomla is this very community.

Amazingly I did a search for the user email address on Google and got one link ... to this forum post.

As many have mentioned ... it is all part of the game sadly. Still many thanks to all and bookmark those Security pages people.

_________________
'The facts ma'am..nothing but the facts.'

Joe Friday - Peace Officer


Top
  E-mail  
 
Posted: Thu Oct 30, 2008 2:30 am 
User avatar
Joomla! Explorer
Joomla! Explorer
Offline

Joined: Sat Apr 26, 2008 6:05 am
Posts: 275
Location: New Jersey
Install recaptcha and put the list from perishablepress to block spam bots. modsecurity with arguments block such as viagra etc would help as well. mod_spamhaus is doing a great job blocking spammers.


Top
  E-mail  
 
Posted: Thu Oct 30, 2008 4:20 pm 
Joomla! Fledgling
Joomla! Fledgling
Offline

Joined: Thu Nov 01, 2007 10:50 pm
Posts: 1
She is also going by Sienioritta. Apparently registering with sites all over the place. 6-7 of mine have been registered in the last 36 hours...

M.


Top
   
 
Posted: Thu Oct 30, 2008 5:16 pm 
Joomla! Fledgling
Joomla! Fledgling
Offline

Joined: Sun Jan 06, 2008 7:20 pm
Posts: 3
:eek: Yep margarittaes registered here too. No links in joomla index.php or template index.php here tho.


Top
  E-mail  
 
Posted: Thu Oct 30, 2008 5:20 pm 
User avatar
Joomla! Explorer
Joomla! Explorer
Offline

Joined: Sat Apr 26, 2008 6:05 am
Posts: 275
Location: New Jersey
If everyone will start posting the spam attempts we will flood the forum... :)


Top
  E-mail  
 
Posted: Thu Oct 30, 2008 6:03 pm 
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Wed May 10, 2006 5:22 pm
Posts: 7
Looks like this is targeting 1.0.14 or earlier sites. We have a few that haven't been updated to 1.0.15 and they're the only ones with registrations for Margaret and Sienioritta.

Looks like someone has written a script to access the default registration module as though it were published, but unless you've hacked the module to allow blind acceptance for newly registered users it will leave these new users disabled.


Top
  E-mail  
 
Posted: Thu Oct 30, 2008 8:36 pm 
User avatar
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Sun Jan 20, 2008 11:37 pm
Posts: 27
<deleted>


Last edited by IAAF on Thu Nov 06, 2008 5:52 am, edited 1 time in total.

Top
  E-mail  
 
Posted: Thu Oct 30, 2008 9:36 pm 
User avatar
Joomla! Guru
Joomla! Guru
Offline

Joined: Tue Jun 06, 2006 7:41 am
Posts: 808
Location: Third planet from Sol
Unless you've really messed up your server security settings, simply getting bogus registrations--validated or not--shouldn't expose your site's files to modification.

Unless you've really messed up your Joomla security settings and user permissions, even if this attack is able to create a usable Joomla account, the worst they should be able to do is add some junk to your content items. This content will be stored in the database, not the file server. If this is your situation, just look for recently modified content items.

If all they need to do is create a Joomla account in order to modify your index.php, template files, etc., then you really need to find a qualified person to help you secure your site. No site should be left so insecure, and none need to be.

_________________
Web Home: http://www.ronliskey.com
Support http://support.educationgrove.com


Top
  E-mail  
 
Posted: Fri Oct 31, 2008 4:46 am 
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Fri Mar 07, 2008 6:42 am
Posts: 25
Hi,

3 of my sites got visited by Margaret and Sienioritta. But on those 3 sites, user registration and frontend login were disabled from the global config in admin. Can anyone suggest, what should i do to protect the sites now?

I have many other sites using Joomla! 1.0.12 Stable. Please someone suggest me how do i protect other sites?

Waiting for some help urgently.

Thanks


Top
  E-mail  
 
Posted: Fri Oct 31, 2008 5:03 am 
User avatar
Joomla! Intern
Joomla! Intern
Offline

Joined: Wed Nov 21, 2007 7:31 pm
Posts: 51
Location: Pune
thewebxpert check response by adamos46

_________________
Do Something. Prioritize and focus

Have you checked out my blog today?.... No, do it now http://amiworks.co.in/talk/category/joomla

Join Joomla User Group Pune discussion group http://groups.google.com/group/jugpune


Top
   
 
Posted: Fri Oct 31, 2008 5:29 am 
User avatar
Joomla! Champion
Joomla! Champion
Offline

Joined: Sun Oct 22, 2006 4:42 am
Posts: 5286
Location: Queensland, Australia
@ALL

remorsless reporting of bogus attempts or successful registrations by a bot does not assist anyone.

Joomla! v1.0 users
- If you are below J! 1.0.15 - upgrade immediately

Joomla! v1.5 users
- If you are below J! 1.5.7 - upgrade immediately

- Install a CAPTCHA, RE-CAPCHA extension

- Ensure that registrations REQUIRE confirmation

_________________

** Moved to Queensland** still on/offline intermittantly, will be awhile yet.
Joomla! Tools Suite v2 Beta2 release available at http://joomlacode.org/gf/project/jts/


Top
   
 
Posted: Mon Nov 03, 2008 12:53 pm 
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Thu Oct 23, 2008 11:41 pm
Posts: 6
Hi

My question is linked to this issue... I want to 'approve' new members (in the back end) before they get access to the registered part of my site.

So the process is that they fill in the registration form, which sets them up but sends ME an email to alert me to their registration request - if i approve it then it sends the registration confirmation email to the user. Although I appreciate this is not practical for everyone it would solve this problem and would be a great security option for smaller community sites with private information!

Any ideas if this can be done or if there is an extension that will enable me to achieve something similar?

I have Joomla 1.5.7 installed.

Thanks :)


Top
  E-mail  
 
Posted: Tue Nov 04, 2008 1:48 am 
User avatar
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Sun Jan 20, 2008 11:37 pm
Posts: 27
I use Community Builder (website is http://www.joomlapolis.com/) along with and JUGA (website is http://www.dioscouri.com/juga/ ). The three work very well together for me and what needs we have for our site.


Top
  E-mail  
 
Posted: Tue Nov 04, 2008 12:03 pm 
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Thu Oct 23, 2008 11:41 pm
Posts: 6
I have looked at Community Builder, but it seems a bit like using a sledge hammer to crack a nut! I was hoping to find a smaller and simpler option as I don't need the rest of what it has to offer. Thanks for the suggestion though :-)


Top
  E-mail  
 
Posted: Wed Nov 05, 2008 11:07 pm 
User avatar
Joomla! Guru
Joomla! Guru
Offline

Joined: Tue Jun 06, 2006 7:41 am
Posts: 808
Location: Third planet from Sol
Quote:
I have many other sites using Joomla! 1.0.12 Stable. Please someone suggest me how do i protect other sites?

upgrade

_________________
Web Home: http://www.ronliskey.com
Support http://support.educationgrove.com


Top
  E-mail  
 
Posted: Thu Nov 06, 2008 1:24 am 
User avatar
Joomla! Guru
Joomla! Guru
Offline

Joined: Tue Jun 06, 2006 7:41 am
Posts: 808
Location: Third planet from Sol
Any chance forum moderators can delete all the useless forum posts about obsolete versions of some application getting 'hacked'?

Reporting that an obsolete application got compromised tells us absolutely nothing new. It does say something about the site maintainer, but who cares.

If you can't do that (out of politeness?), then how about at least moving such posts to a forum called, "Obsolete and Redundant Posts". That way we don't have to wade through that garbage when looking for real information.

_________________
Web Home: http://www.ronliskey.com
Support http://support.educationgrove.com


Top
  E-mail  
 
Posted: Thu Nov 06, 2008 2:15 am 
User avatar
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Thu Aug 10, 2006 12:46 am
Posts: 19
Location: Dallas, TX
rliskey wrote:
Any chance forum moderators can delete all the useless forum posts about obsolete versions of some application getting 'hacked'?

Reporting that an obsolete application got compromised tells us absolutely nothing new. It does say something about the site maintainer, but who cares.

If you can't do that (out of politeness?), then how about at least moving such posts to a forum called, "Obsolete and Redundant Posts". That way we don't have to wade through that garbage when looking for real information.


ROTFLOL! I l fell off my chair.

If these people would only read the security stickies before posting... but that's not gonna happen.

Even if they do read the stickies, I think that some posters may just want a "cup of tea and sympathy". Or are just so new to CMS systems that they just don't understand that updates really do need to be applied (the "if it ain't broke, don't fix it" mentality).

This very same mentality keeps me in the computer repair business because people can't be bothered to renew their antivirus programs! Even the FREE ones!

Others may be just so panicked that they just need reassurance and hand-holding.

So, even though I personally think that your idea has merit, the alienation factor would outweigh the benefits...

Not to mention that the moderators would probably have to clear out 75% of all posts, anywhere!!! :D

By the way, I have found a lot of your posts really helpful to me!

_________________
Consistently voted "Seriously Geeky Go-To Gal" by friends and family who use my expertise, but don't pay me. Does that count on a resume?


Top
   
 
Posted: Thu Nov 13, 2008 2:34 am 
User avatar
Joomla! Virtuoso
Joomla! Virtuoso
Offline

Joined: Mon Mar 20, 2006 1:56 am
Posts: 3688
Location: The Girly Side of Joomla in Sussex
Agreed with what stoney2you (great another geekette to add to the fold!) says, along with what RussW said a few posts above and also with what Brad is always saying.
Mods - official "Can we lock this topic now" post.
Thanks

_________________
HU2HY - GIGO - Poor questions = Poor answer
Un requested Help PM's will be added to the foe list and just deleted
http://community.joomla.org/ Connect Administrator
Avez-vous lu les instructions ? Avez-vous recherché ?


Top
   
 
Display posts from previous:  Sort by  
Post new topic This topic is locked, you cannot edit posts or make further replies.  [ 51 posts ]  Go to page Previous  1, 2

Quick reply

 



Who is online

Users browsing this forum: dynamicnet and 28 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group