Go Back  Bike Forums > Bike Forums > Classic & Vintage
Reload this Page >

Public Service Message - I was hacked !

Search
Notices
Classic & Vintage This forum is to discuss the many aspects of classic and vintage bicycles, including musclebikes, lightweights, middleweights, hi-wheelers, bone-shakers, safety bikes and much more.

Public Service Message - I was hacked !

Thread Tools
 
Search this Thread
 
Old 06-19-11 | 02:41 AM
  #1  
Sixty Fiver's Avatar
Thread Starter
Bicycle Repair Man !!!
 
Joined: Sep 2007
Posts: 27,266
Likes: 152
From: YEG

Bikes: See my sig...

Public Service Message - I was hacked !

My website got hacked the other day and a few people may have been getting warnings that ravingbikefiend.com is distributing malware or is rated as suspicious... this is dependent on your browser and I did note that IE did not seem to care while Google and Firefox flipped out.

The Girl says her Mac and Safari are not as finely tuned as Firefox and Chrome when it comes to threat detection.

There was no actual malware on my site but there were malicious scripts / re-directs and I have taken it offline until I repair the damage... the many hundreds of images I have posted here over the past years appear to be clean but as a precaution have taken those offline as it has caused issues for a few people.

Will be deleting all the uploaded images (there are thousands of them) and will rebuild the image database from secure back ups.

If you do encounter a warning about ravingbikefiend.com when you are browsing here, there should be no concern on your part as all the image links have been disabled... there should be no content from ravingbikefiend anywhere on Bike Forums at this time save for broken / disabled links.

Do hope this has not caused anyone distress and believe the warnings have only been triggered after an attempted visit to my site.

And the bigger question is, why would anyone hack a site like mine ?

There is nothing there except the ramblings of a guy who is mad about vintage bicycles and cycling who likes to take an inordinate number of pictures.
Sixty Fiver is offline  
Reply
Old 06-19-11 | 03:43 AM
  #2  
ftwelder's Avatar
Senior Member
 
Joined: Apr 2010
Posts: 3,081
Likes: 10
From: vermont

Bikes: Many

CF


'just a thought.
ftwelder is offline  
Reply
Old 06-19-11 | 03:58 AM
  #3  
pastorbobnlnh's Avatar
Freewheel Medic
Titanium Club Membership
Sheldon Brown Memorial - Titanium
20 Anniversary
 
Joined: Oct 2005
Posts: 13,569
Likes: 3,314
From: An Island on the Coast of GA!

Bikes: Snazzy* Schwinns, Classy Cannondales & a Super Pro Aero Lotus (* Ed.)

Originally Posted by ftwelder
CF


'just a thought.


...or maybe it is a plot from Shimano who wants everyone to be riding these by the end of 2012....

__________________
Bob
Enjoying the GA coast all year long!

Thanks for visiting my website: www.freewheelspa.com





pastorbobnlnh is offline  
Reply
Old 06-19-11 | 06:08 AM
  #4  
Senior Member
 
Joined: Apr 2010
Posts: 694
Likes: 1
From: Forked River, NJ

Bikes: 1973 Peugeot UE-8, 1985 Schwinn Voyageur, 2010 Trek 1.2, 2012 Bianchi Siempre

I heard the Segway Liberation Organization is taking credit.....
Beach Comber is offline  
Reply
Old 06-19-11 | 06:39 AM
  #5  
Amesja's Avatar
Cottered Crank
 
Joined: Aug 2010
Posts: 3,401
Likes: 15
From: Chicago

Bikes: 1954 Raleigh Sports 1974 Raleigh Competition 1969 Raleigh Twenty 1964 Raleigh LTD-3

Originally Posted by pastorbobnlnh


...or maybe it is a plot from Shimano who wants everyone to be riding these by the end of 2012....

It's a well-known fact that Shimano is behind 93.4% of all hacker activity online.
Amesja is offline  
Reply
Old 06-19-11 | 10:04 AM
  #6  
balindamood's Avatar
Wrench Savant
15 Anniversary
 
Joined: Mar 2006
Posts: 2,316
Likes: 113
From: 61 Degrees North

Bikes: Yes

It's a well-known fact that Shimano is behind 93.4% of all hacker activity online.
It is good to know that Suntour people are not capable of hacking...having never made it past throwing rocks and using clubs before their demise.
balindamood is offline  
Reply
Old 06-19-11 | 10:19 AM
  #7  
Sixty Fiver's Avatar
Thread Starter
Bicycle Repair Man !!!
 
Joined: Sep 2007
Posts: 27,266
Likes: 152
From: YEG

Bikes: See my sig...

I suspect the cat that lives downstairs...
Sixty Fiver is offline  
Reply
Old 06-19-11 | 10:29 AM
  #8  
Sixty Fiver's Avatar
Thread Starter
Bicycle Repair Man !!!
 
Joined: Sep 2007
Posts: 27,266
Likes: 152
From: YEG

Bikes: See my sig...

Now... I would normally post a picture of the suspected cat so that if he came around your place you'd be able to recognize him and take precautions but won't be able to do that for a little bit.

He's about 10 inches tall, grey and white, and goes by the name of Leo but may be using an alias.
Sixty Fiver is offline  
Reply
Old 06-19-11 | 10:30 AM
  #9  
Amesja's Avatar
Cottered Crank
 
Joined: Aug 2010
Posts: 3,401
Likes: 15
From: Chicago

Bikes: 1954 Raleigh Sports 1974 Raleigh Competition 1969 Raleigh Twenty 1964 Raleigh LTD-3

Was this cat named 5e?
Amesja is offline  
Reply
Old 06-19-11 | 11:09 AM
  #10  
Senior Member
 
Joined: Mar 2010
Posts: 337
Likes: 0
From: Southwest Washington

Bikes: '77 Traveller III '05 Rockhopper.

So that's what that was.
Running Chrome, I received the malware alert when opening a particular page in the "post pics of your commuter bike" thread. on BF.
Glad to hear you've got things under control.
Hackers can be a pain in the ASCII.
Scrockern8r is offline  
Reply
Old 06-19-11 | 11:24 PM
  #11  
Sixty Fiver's Avatar
Thread Starter
Bicycle Repair Man !!!
 
Joined: Sep 2007
Posts: 27,266
Likes: 152
From: YEG

Bikes: See my sig...

Originally Posted by Scrockern8r
So that's what that was.
Running Chrome, I received the malware alert when opening a particular page in the "post pics of your commuter bike" thread. on BF.
Glad to hear you've got things under control.
Hackers can be a pain in the ASCII.
I update my site on a nearly daily basis and usually upload and post a few images a day to various sites so knew right away that something was amiss.

IT department says things should be back online by tomorrow evening and then will need to clear Google's security protocols to get off their blacklist.
Sixty Fiver is offline  
Reply
Old 06-20-11 | 08:54 AM
  #12  
Senior Member
15 Anniversary
 
Joined: Jan 2008
Posts: 12,940
Likes: 363
65'er,
You just described my cat. Carl, perfectly. Maybe it is an international conspiracy! (If you like vintage Raleighs.)
qcpmsame is offline  
Reply
Old 06-20-11 | 09:11 AM
  #13  
Zaphod Beeblebrox's Avatar
PanGalacticGargleBlaster
 
Joined: Apr 2009
Posts: 7,531
Likes: 9
From: Smugglers Notch, Vermont

Bikes: Upright and Recumbent....too many to list, mostly Vintage.

Originally Posted by qcpmsame
an international conspiracy! (If you like vintage Raleighs.)
I see what you did there.
__________________
--Don't Panic.
Zaphod Beeblebrox is offline  
Reply
Old 06-20-11 | 09:14 AM
  #14  
Chainstay Brake Mafia
 
Joined: Mar 2011
Posts: 6,007
Likes: 19
From: California
there is no need to delete the images.. they can't be used to spread malware

chances are you got hacked so the hacker could spread their malware more easily. breaking into secure areas is also just something people do for fun. sorry to hear it happened though. protect your username and password and use a secure password at all times, just like you always use a secure lock when locking up your bike
frantik is offline  
Reply
Old 06-20-11 | 09:31 AM
  #15  
Zaphod Beeblebrox's Avatar
PanGalacticGargleBlaster
 
Joined: Apr 2009
Posts: 7,531
Likes: 9
From: Smugglers Notch, Vermont

Bikes: Upright and Recumbent....too many to list, mostly Vintage.

There's a lot of ways to get your site hacked regardless of how safe you are with your password and its strength.

For example If your site uses a SQL backend and you do not sanitize your database queries, unauthorized users can exploit that and use it to view privileged material. Regardless of the strength of your password or how careful with it you are.
__________________
--Don't Panic.
Zaphod Beeblebrox is offline  
Reply
Old 06-20-11 | 09:53 AM
  #16  
Chainstay Brake Mafia
 
Joined: Mar 2011
Posts: 6,007
Likes: 19
From: California
good point.. don't use poorly made locks or poorly made software either their flaws are known and will be exploited
frantik is offline  
Reply
Old 06-20-11 | 09:58 AM
  #17  
Sixty Fiver's Avatar
Thread Starter
Bicycle Repair Man !!!
 
Joined: Sep 2007
Posts: 27,266
Likes: 152
From: YEG

Bikes: See my sig...

Originally Posted by frantik
there is no need to delete the images.. they can't be used to spread malware

chances are you got hacked so the hacker could spread their malware more easily. breaking into secure areas is also just something people do for fun. sorry to hear it happened though. protect your username and password and use a secure password at all times, just like you always use a secure lock when locking up your bike
It is rather easy to exploit SQL vulnerabilities... much larger and more secure sites than mine have been hit (ie Google).

Things will be much tighter when things go back online but know that if someone is really interested in hacking my site they can do this.

My nephew handles my IT and works privately and for a large company handling all their security as well as all their core programming... there is no system that he cannot exploit (if he wanted to) and his his teens hacked into extremely secure sites just to see if it could be done.

My little blog seemed like a pretty unlikely target but I guess that as it started to see more traffic it started drawing flies.

Have scanned and re-scanned my image database and it comes up clean... hack was designed to affect WP files and add scripts so third parties could exploit my site to spread malware.
Sixty Fiver is offline  
Reply
Old 06-20-11 | 11:52 AM
  #18  
JohnDThompson's Avatar
Old fart
Titanium Club Membership
20 Anniversary
Community Builder
 
Joined: Nov 2004
Posts: 26,401
Likes: 5,333
From: Appleton WI

Bikes: Several, mostly not name brands.

A couple years ago I found the the comments on my Gallery pages were being used to spam pharmaceuticals and porn. I've since disabled comments on my site and that seems to have solved the problem. Not that they aren't trying -- the security logs for the web server show hundreds of attempts daily, but so far none have succeeded.
JohnDThompson is offline  
Reply
Old 06-20-11 | 12:05 PM
  #19  
Sixty Fiver's Avatar
Thread Starter
Bicycle Repair Man !!!
 
Joined: Sep 2007
Posts: 27,266
Likes: 152
From: YEG

Bikes: See my sig...

John - Will be eliminating the comments and user registration to frustrate the spambots.

Was allowing comments but these are few and far between... seems like people just stop by to read my ramblings.
Sixty Fiver is offline  
Reply
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
Rich Gibson
Fifty Plus (50+)
7
07-21-15 09:11 PM
PlanoFuji
Electronics, Lighting, & Gadgets
9
07-20-13 09:11 AM
67tony
Classic & Vintage
7
04-01-13 06:37 AM

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



Contact Us - Archive - Advertising - Cookie Policy - Privacy Statement - Terms of Service -

Copyright © 2026 MH Sub I, LLC dba Internet Brands. All rights reserved. Use of this site indicates your consent to the Terms of Use.