phpBB Site hacked
p2pnet.net News:- A group of “politically motivated hackers” cracked the server hosting the main site for the phpBB bulletin board, leaving the development team locked out of its primary server.
They used a vulnerability in a separate program, AWStats, which has also been used to hack several popular weblogs in recent days, says Netcraft, continuing that phpBB.com blames the intrusion on a group, “wishing to publicize an agenda”.
"While the group who did this say they changed only a single password, we have lost all access to the server," it quotes the phpBB.com team as saying.
"This means we cannot access the system even in single user mode."
The compromised server is being shipped from the project’s data center to its server manager, meaning the site is unlikely to be restored immediately, adds Netcraft.
In recent months phpBB has been in the news for security issues, including the defacing of numerous phpBB sites by the Santy worm and the release of code that can exploit weaknesses in PHP to steal administrative passwords for phpBB forums.
Something you think we should know? tips[at]p2pnet.net
===================
See:-
politically motivated – phpBB Site Cracked, Developers Locked Out, Netcraft, February 8, 2005
exploit weaknesses – New Anti-Santy worm, p2pnet, December 31, 2004





